SimpleHelp bug lets hackers create rogue remote support accounts
A vulnerability in the SimpleHelp remote management software allows unauthenticated attackers to create privileged technician accounts on s…
A vulnerability in the SimpleHelp remote management software allows unauthenticated attackers to create privileged technician accounts on s…
WordPress plugins OptinMonster, TrustPulse, and PushEngage have been compromised in a supply-chain attack impacting Awesome Motive-s conten…
Cisco has released security updates to address a vulnerability in the Catalyst SD-WAN Manager, tracked as CVE-2026-20262, that was exploite…
The Council of Europe, the continent's oldest intergovernmental body, is probing claims of a data breach made by the ShinyHunters extortion…
The U.S. Federal Bureau of Investigation (FBI) warned that criminals are using couriers to collect money from victims of cryptocurrency inv…
Employees are increasingly building automations, agents, and apps with AI tools outside traditional security oversight. Tines explores how …
A China-linked espionage campaign targeted exposed REDCap servers to deploy the InfiniteRed malware and steal sensitive data from a medical…
A critical vulnerability chain dubbed SearchLeak in Microsoft 365 Copilot Enterprise could allow attackers to steal sensitive data from a t…
The ShinyHunters extortion gang stole personal information from more than 137,000 school staff accounts in a Salesforce data theft attack t…
Modern phishing, BEC, and account takeover attacks increasingly bypass traditional email defenses and create operational strain for securit…
In a coordinated effort, the FBI, working with Google and Black Lotus Labs, has dismantled a massive Chinese phishing-as-a-service operatio…
A former IT employee at an Iowa school district was sentenced to 21 months in prison after conducting a prolonged cyberattack against the …
Chinese hackers took control of a target organization's authentication stack and maintained persistence for 10 years, with full visibility …
The US government has ordered Anthropic to block all foreign nationals from accessing Fable 5 and Mythos 5, forcing the company to suspend …
Maine has taken its public data breach reporting portal offline after fraudulent breach disclosures were published on the state's website, …
A 10-year-old authentication bypass vulnerability discovered in the phpBB forum software allows an attacker to log in as any user, includin…
A Ukrainian national extradited from Ireland to the United States last year has pleaded guilty to conspiracy charges tied to the Conti rans…
More than 400 packages in the Arch User Repository (AUR) are distributing a Linux rootkit and infostealer malware targeting credentials and…