Ransomware Hits Colombian Justice Ministry Days Before Presidential Transition

A devastating ransomware attack has hit Colombia’s Ministry of Justice just five days before the country’s presidential transition. The assault, which compromised part of its technology infrastructure, disrupted several public-facing services and raised concerns about the safety of sensitive information. The attack occurred on August 2, with hackers encrypting some files and rendering them inaccessible … Read more

SharePoint Vulnerability Exploited Shortly After PoC Release

A recently patched SharePoint vulnerability is being actively exploited by attackers, just weeks after a proof-of-concept (PoC) exploit was released. The weakness, tracked as CVE-2026-55040, allows an unauthenticated attacker to bypass security features and gain access to sensitive data on vulnerable servers. Microsoft had already addressed the issue with its July Patch Tuesday updates, describing … Read more

Gunra Ransomware Gang Exploits Fortinet Flaws, Bypasses MFA

Critical Infrastructure Under Siege: Gunra Ransomware Gang Exploits Fortinet Flaws, Bypasses MFA A sophisticated ransomware-as-a-service (RaaS) operation is wreaking havoc on critical infrastructure and government organizations worldwide. The Gunra gang, which emerged in 2025, has been exploiting known vulnerabilities in firewall and VPN appliances to gain initial access and evade multifactor authentication (MFA). This brazen … Read more

Microsoft’s Patch Tuesday Deluge Continues With August Updates

A massive wave of security updates from Microsoft is crashing onto the shores of IT departments worldwide, with this week’s Patch Tuesday releasing fixes for 421 unique Common Vulnerabilities and Exposures (CVEs). Among these, two zero-day vulnerabilities have been identified as particularly concerning, and experts warn that prioritization should be the top focus for organizations … Read more

Walmart Leaders Transform Security Operations Without Going Bananas

Walmart’s bold approach to cybersecurity has yielded impressive results, demonstrating that trust, innovation, and effective communication can be potent allies in the fight against cyber threats. As one of the world’s largest retailers, Walmart is no stranger to high-stakes security operations. With a massive network of employees, customers, and supply chains spread across 19 countries, … Read more

Ransomware Hits Colombian Justice Ministry Days Before Presidential Transition

Colombian Justice Ministry Hit by Ransomware Attack Just Days Before Presidential Transition A devastating ransomware attack struck Colombia’s Ministry of Justice on August 2, crippling several public-facing services and raising concerns about the country’s ability to protect its critical infrastructure. The attack, which occurred just five days before the presidential handover, is the latest in … Read more

Walmart’s "Trusted Agent" Approach to Purple Teaming

Walmart Revolutionizes Purple Teaming with “Trusted Agent” Approach In a bold move to shake up traditional cybersecurity practices, Walmart has abandoned the siloed approach of separate red and blue teams, instead embracing a collaborative culture that fosters trust, learning, and mutual growth. By co-locating teams, adopting a “trusted agent” observation model, and prioritizing organizational improvement … Read more

Long-running Data Theft Campaign Targeting Salesforce, ServiceNow

A Long-Running Data Theft Campaign Targets Salesforce and ServiceNow Users Worldwide A sophisticated threat actor has been using custom-built tools to steal sensitive data from organizations that use Salesforce and ServiceNow platforms. The campaign, dubbed “City-Forum” by researchers at AI cybersecurity firm Reco, has been active since at least March 2025 and has targeted multiple … Read more

Hackers exploit critical Adobe Commerce flaw to hijack customer accounts

A critical vulnerability has been discovered in Adobe’s Commerce and Magento e-commerce platforms, potentially allowing hackers to hijack customer accounts. This flaw, identified as CVE-2026-71362, is just one of seven issues addressed by Adobe in a recent security update. Despite the software vendor’s claim that it is not aware of exploits in the wild for … Read more

Android malware combo takes out loans and relays victims’ credit cards

A New Android Malware Combo Steals Credit Cards and Takes Out Loans via Phone Calls Cyber attackers have devised a sophisticated scheme to steal credit card information and take out loans using a combination of malware tools on Android devices. The malicious operation involves phone calls, social engineering, and the exploitation of Accessibility Services permissions … Read more