Ransomware Attack Puts a Chill On Japanese Frozen-Food Chain

A devastating ransomware attack has struck Japanese frozen-food supplier and logistics firm Nichirei, disrupting the supply chain for thousands of clients, including major franchises like Kentucky Fried Chicken. The cyberattack, attributed to Russia-linked group RansomHouse, has left a trail of shortages and warnings from affected businesses. Nichirei’s operations were severely impacted by the attack, which … Read more

When Identity Verification Fails: Lessons from a Real-World SIM Swap and Near Account Takeover

A recent attack on my own wireless services account has left me shaken and serves as a stark reminder of the limitations of traditional identity verification methods. The incident involved a combination of social engineering, identity impersonation, stolen personal information, SIM swapping, session hijacking, and unauthorized account changes. Although the attackers ultimately failed to achieve … Read more

Flaw in Adobe Extension With 300M Installs Enabled WhatsApp Data Theft

A Vulnerability in Adobe’s Chrome Extension Exposed 300 Million Users to WhatsApp Data Theft A critical vulnerability in a widely used Chrome extension has been patched by Adobe after researchers discovered it could be exploited to steal users’ WhatsApp chats, contacts, and account details. The flaw, known as HermeticReader, affected the Adobe Acrobat Chrome extension, … Read more

Palo Alto Networks to Acquire Observability Platform Provider Embrace

Palo Alto Networks Embarks on Major Observability Expansion with Embrace Acquisition In a significant move to bolster its Observability platform, Palo Alto Networks has announced plans to acquire Embrace, a provider of user-focused observability solutions. This acquisition marks the latest development in the company’s ambitious efforts to deliver a unified view of digital experiences across … Read more

Suno, Paidwork Data Breaches Affect Tens of Millions of Accounts

Tens of millions of users of two popular online platforms have had their personal data exposed in massive data breaches. Suno, an artificial intelligence music generator, and Paidwork, a gig-work platform, have both been targeted by hackers who stole sensitive information from their databases. The breach is believed to have occurred in November 2025 for … Read more

Ransomware Attack Puts a Chill On Japanese Frozen-Food Chain

A Japanese Frozen-Food Chain’s Supply Disrupted by Ransomware Attack A ransomware attack on Nichirei, a leading frozen-food supplier and logistics firm in Japan, has sent shockwaves through the country’s food supply chain. The cyberattack, which is believed to have been carried out by Russia-linked group RansomHouse, disrupted operations at Nichirei’s 141 logistics centers and warehouses, … Read more

EU Financial Institutions Leak Data Through Cookie Trackers

Financial institutions in Europe and the US are inadvertently exposing sensitive customer information to third-party advertising, analytics, and personalization platforms via cookie tracking technology. This alarming trend raises serious concerns about compliance, security, and data privacy. Jscrambler’s latest research has shed light on this pattern of behavior among financial services companies. The study found that … Read more

Fake Bahrain Alert App Deploys Android Surveillance Malware

A malicious Android application has been discovered distributing a devastating four-stage surveillance platform that can harvest sensitive user data, run banking-app overlays, and take full control of infected devices. Dubbed “BH Alert,” this fake emergency alert app is masquerading as an official Bahraini civil-defense application, preying on users’ trust during times of crisis. Developed by … Read more

Attackers Are Learning to Live Off the AI Toolchain

As attackers continue to evolve and adapt their tactics, a disturbing trend has emerged in the world of cybersecurity. Threat actors are learning to exploit trusted AI toolchains and workflows, making malicious activity increasingly difficult to detect. This emerging threat is exemplified by Sandworm_Mode, a self-propagating worm that spreads through malicious npm packages and leverages … Read more

Upbound says hack caused $13 million in fraudulent Acima leases

A major fintech company, Upbound Group, has revealed that a sophisticated cyberattack has resulted in $13 million worth of fraudulent lease-to-own agreements through its Acima platform. The attack, which compromised sensitive customer information and documents, allowed threat actors to obtain goods under fake leases, leaving the company to foot the bill for unpaid merchandise. Upbound … Read more