Cybersecurity
Trending
Over 20,000 WordPress Websites Infected by Malicious Plugins in Supply Chain Attack
A major cybersecurity incident has compromised more than 20,000 websites built on WordPress after several popular plugins were found to contain hidden backdoors used to distribute malicious…
Adobe Patches PDF Zero-Day That Hackers Exploited for Four Months
Adobe has patched a critical zero-day vulnerability in its PDF software that hackers exploited for months. The flaw allowed attackers to install malware and potentially…
GlassWorm Escapes JavaScript Sandbox to Silently Spread Across Developer Tools
A new GlassWorm variant hides inside a fake VS Code extension, uses a Zig-compiled binary to escape the JavaScript sandbox, and silently infects every IDE…
NCERT Sets New Strict Rules for Cybersecurity Audit Firms
National Cyber Emergency Response Team (NCERT) has decided that only registered cybersecurity audit firms will be authorised to conduct official audits of national IT infrastructure…
Booking.com Data Breach: What Information Was Exposed and What to Do Now
Booking.com confirmed unauthorized parties accessed customer reservation data including names, emails, addresses, and phone numbers. The company says the breach is under control but has…
Pakistani Food Delivery App FoodPapa Hit With Major Data Breach
A database linked to Pakistani food delivery app FoodPapa has reportedly been leaked online. The breach allegedly includes sensitive user and rider data such as…
Copy Link, Expose Yourself: How Shared URLs Leak Your Identity
Social media share links may contain hidden metadata that exposes user details such as usernames, IDs, and location. A new analysis shows how these links,…
NCERT Warns Pakistan on Foreign Cloud Risks
The National Cyber Emergency Response Team (NCERT) has issued a cybersecurity advisory highlighting growing risks from foreign cloud technology products widely used across government, business,…
Russian Military Hackers Hijack 18,000 Home Routers to Steal Passwords Worldwide
Russian military intelligence hackers known as Fancy Bear hijacked at least 18,000 home and office routers across 120 countries by exploiting vulnerabilities in TP-Link and…
This Botnet Deliberately Avoids Detection to Keep Its DDoS Business Running
Cybersecurity researchers have exposed Masjesu, a stealthy botnet that has been marketed on Telegram as a DDoS-for-hire service since 2023. The botnet targets IoT devices…
10 Petabytes of Classified Chinese Defense Data Allegedly Stolen by Single Hacker
A hacker has allegedly stolen more than 10 petabytes of sensitive data from China’s National Supercomputing Center in Tianjin, including classified defense documents, missile schematics…
China-Linked Storm-1175 Uses Zero Days To Deploy Medusa Ransomware
A China linked threat group known as Storm 1175 is using zero day vulnerabilities to deploy Medusa ransomware in rapid cyber attacks.