Booking.com has confirmed unauthorized access to its systems resulting in the exposure of reservation and user data, prompting a reset of reservation PINs for affected users.
China-supported APT41 targets cloud environments including AWS, Google, Azure, and Alibaba using typosquatting techniques to hide command-and-control traffic.
The new 'Storm' infostealer bypasses local data decryption by sending browser information to attacker-controlled servers, enabling session hijacking that circumvents passwords and multifactor authentication.
OpenAI is rotating macOS code-signing certificates after a supply chain attack involving a malicious Axios package was detected in a GitHub Actions workflow.
The FBI Atlanta Field Office and Indonesian authorities have dismantled the global W3LL phishing platform, seizing infrastructure and arresting its alleged developer in a coordinated enforcement...
Rockstar Games has experienced a data breach associated with a recent Anodot security incident, with the ShinyHunters extortion gang publicly releasing the stolen analytics data.
Anthropic restricted access to its Mythos Preview AI model following its autonomous discovery and exploitation of zero-day vulnerabilities in major operating systems and browsers. Security experts...
The FBI and Indonesian National Police have taken down the infrastructure of the W3LL phishing operation responsible for stealing thousands of credentials and attempting over $20...
A critical zero-day vulnerability hidden in PDF files and state-sponsored attacks on infrastructure have been recently uncovered, highlighting emerging threats in cybersecurity.