IT Information Security

How threat actors breached a U.S. federal civilian agency by exploiting a GeoServer flawHow threat actors breached a U.S. federal civilian agency by exploiting a GeoServer flaw

How threat actors breached a U.S. federal civilian agency by exploiting a GeoServer flaw

US CISA revealed that threat actors exploited an unpatched vulnerability in GeoServer to breach a U.S. federal civilian agency’s network.…

2 weeks ago
Cloudflare mitigates largest-ever DDoS attack at 22.2 TbpsCloudflare mitigates largest-ever DDoS attack at 22.2 Tbps

Cloudflare mitigates largest-ever DDoS attack at 22.2 Tbps

Cloudflare blocked a new record-breaking DDoS attack peaking at 22.2 Tbps and 10.6 billion packets per second. Cloudflare announced it…

2 weeks ago
U.S. CISA adds Google Chromium flaw to its Known Exploited Vulnerabilities catalogU.S. CISA adds Google Chromium flaw to its Known Exploited Vulnerabilities catalog

U.S. CISA adds Google Chromium flaw to its Known Exploited Vulnerabilities catalog

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Google Chromium flaw to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and…

2 weeks ago
US Secret Service dismantled covert communications network near the U.N. in New YorkUS Secret Service dismantled covert communications network near the U.N. in New York

US Secret Service dismantled covert communications network near the U.N. in New York

Secret Service seizes a covert communications network near U.N. composed of sophisticated equipment, including 100K SIMs and 300 servers The…

2 weeks ago
A suspected Scattered Spider member suspect detained for casino network attacksA suspected Scattered Spider member suspect detained for casino network attacks

A suspected Scattered Spider member suspect detained for casino network attacks

A suspected Scattered Spider member linked to cyber attacks on Las Vegas casinos was arrested on September 17. The Las…

2 weeks ago
$150K awarded for L1TF Reloaded exploit that bypasses cloud mitigations$150K awarded for L1TF Reloaded exploit that bypasses cloud mitigations

$150K awarded for L1TF Reloaded exploit that bypasses cloud mitigations

Researchers earned $150K for “L1TF Reloaded,” combining L1TF and half-Spectre to leak VM memory from public clouds despite mitigations. Researchers…

2 weeks ago
Canada’s RCMP closes TradeOgre, seizes $40M in country’s largest crypto bustCanada’s RCMP closes TradeOgre, seizes $40M in country’s largest crypto bust

Canada’s RCMP closes TradeOgre, seizes $40M in country’s largest crypto bust

RCMP shuts down TradeOgre, seizing $40M from crime, the first crypto exchange closure and largest asset seizure in Canada’s history.…

2 weeks ago
Stellantis probes data breach linked to third-party providerStellantis probes data breach linked to third-party provider

Stellantis probes data breach linked to third-party provider

Stellantis is investigating a data breach after unauthorized access to a third-party provider’s platform potentially exposed customer data. Car maker…

2 weeks ago
EU agency ENISA says ransomware attack behind airport disruptionsEU agency ENISA says ransomware attack behind airport disruptions

EU agency ENISA says ransomware attack behind airport disruptions

The EU cybersecurity agency ENISA confirmed that airport check-in disruptions were caused by a cyberattack, and law enforcement is investigating.…

2 weeks ago
Researchers expose MalTerminal, an LLM-enabled malware pioneerResearchers expose MalTerminal, an LLM-enabled malware pioneer

Researchers expose MalTerminal, an LLM-enabled malware pioneer

SentinelOne uncovered MalTerminal, the earliest known malware with built-in LLM capabilities, and presented it at LABScon 2025. SentinelLABS researchers discovered…

2 weeks ago