Data BreachThe Register·1 week ago

French tax authority admits data heist after crook touts 2M records

The French tax authority has acknowledged a data breach affecting approximately 2 million records after a threat actor publicly advertised the stolen information. While investigators assess the full scope of the incident, government officials have disputed claims that the attacker maintains ongoing access to their systems.

MalwareInfosecurity Magazine·1 week ago

New Mirai-Based Linux Botnet ‘Evooo1Bot’ Turns Victims Into Proxies

A newly discovered Linux botnet called Evooo1Bot leverages the Mirai framework while incorporating advanced capabilities beyond the original malware's scope. The botnet specifically abuses compromised edge devices by converting them into persistent proxies, expanding the attack surface for threat actors seeking to mask their infrastructure and activities.

Nation-StateMalwarebytes Labs·1 week ago

Apple now uses iPhone alerts for targets of mercenary spyware

Apple has implemented Threat Notifications to alert iPhone users who are targeted by mercenary spyware, providing users with direct notification when they may be under attack. The feature represents Apple's approach to protecting high-risk individuals and journalists from sophisticated targeted surveillance threats.

OtherWiz Blog·1 week ago

Securing Data in the AI era

AI is changing the context around data risk, making it critical to understand what’s connected, what’s exposed, and why.

Policy & LegalDark Reading·1 week ago

Cyera's Oasis Security Buy Is All About AI Agent Control

Cyera's $1 billion acquisition of Oasis Security seeks to unify data security and identity management into a consolidated control plane designed specifically for AI agents. The deal reframes privileged access management by shifting from traditional static role-based controls to a context-aware model grounded in business requirements.

OtherKrebs on Security·1 week ago

Who’s Tracking You? Use This New Service to Find Out

A new free service called DecryptAds aggregates publicly available adtech data to help users identify who is tracking them across websites and mobile apps. The tool addresses the longstanding challenge of determining which advertising platforms and data brokers are responsible for targeted ads and data collection, information that was previously difficult for consumers to access and understand. DecryptAds simplifies this process by scraping and correlating adtech data, making transparency in digital tracking more accessible to the general public.

OtherThe Cyber Express·1 week ago

The Cyber Express Weekly Roundup: Corporate Cyberattacks, AI Security Risks, Zero-Days, and Data Theft

Recent cybersecurity incidents spanning corporate networks, supply chains, and personal accounts reveal an expanding threat landscape where attackers exploit social engineering, software vulnerabilities, and AI-powered reconnaissance alongside traditional attack methods. Notable breaches include a social engineering attack on Levi Strauss resulting in corporate file access, a CEVA Logistics cyberattack disrupting eight European warehouses, and cybercriminals targeting explicit content from social media accounts for extortion and harassment. Microsoft's August 2026 Patch Tuesday addressed over 400 vulnerabilities including three zero-days, while security experts increasingly view AI as a tool to automate repetitive defensive tasks rather than replace security professionals.

MalwareInfosecurity Magazine·1 week ago

Novel macOS Infostealer AmnesiaStealer Spread via ClickFix

A newly discovered macOS infostealer called AmnesiaStealer is being distributed through ClickFix campaigns, employing novel techniques to compromise infected systems. The malware enables attackers to gain remote control over victims' browsers specifically to exfiltrate cookie data, expanding its capabilities beyond typical information-stealing functionality.

Supply ChainThe Register·1 week ago

Crypto wallet maker Trezor confirms 13,000 customers' details exposed in logistics breach

Trezor has confirmed that a logistics breach compromised the personal details of approximately 13,000 customers, highlighting how supply chain vulnerabilities can undermine the security posture of hardware wallet manufacturers. The incident demonstrates that even companies offering advanced security features remain exposed to third-party operational failures beyond their direct control.

Nation-StateKaspersky Securelist·1 week ago

APT group HoneyMyte upgrades CoolClient: the backdoor gets a kernel-level Windows rootkit

APT group HoneyMyte has enhanced its CoolClient backdoor with a kernel-mode rootkit driver, significantly expanding its stealth capabilities. The upgraded malware can now hide malicious processes, files, and network connections from security tools and forensic analysis, making detection and investigation considerably more difficult for defenders.

Nation-StateInfosecurity Magazine·1 week ago

Researchers Link 'Jewelbug' Chinese APT to Hack-for-Hire Operations

Broadcom threat intelligence researchers have connected a known Chinese APT group to a lucrative crypto fraud operation, suggesting the group may be engaged in hack-for-hire activities. The findings indicate that the "Jewelbug" APT has expanded beyond traditional espionage to monetize its capabilities through criminal schemes targeting cryptocurrency.

Load more