Medtronic notifies customers impacted by ShinyHunters data breach

Medtronic Hit by ShinyHunters Data Breach, Exposing Sensitive Customer Information to Hackers Medical device firm Medtronic has notified customers that their personal data was compromised in a recent data breach attributed to the notorious hacking group ShinyHunters. The company’s IT systems were breached between April 13 and April 19, allowing hackers to access sensitive customer … Read more

SharePoint RCE CVE-2026-45659 Added to CISA KEV After Active Exploitation

A Critical SharePoint Vulnerability Has Been Actively Exploited, Leaving Thousands of Organizations Exposed The US Cybersecurity and Infrastructure Security Agency (CISA) has added a newly disclosed vulnerability, CVE-2026-45659, to its Known Exploitable Vulnerabilities catalog. This remote code execution (RCE) flaw affects SharePoint, a widely used collaboration platform, and has already been exploited by attackers in … Read more

New ChocoPoC RAT Targets Vulnerability Researchers via Fake PoC Exploit Repos

A new and highly sophisticated malware strain, dubbed ChocoPoC RAT, has been discovered preying on vulnerability researchers who use Proof of Concept (PoC) exploit repositories online. The attackers behind this malicious campaign are targeting researchers who work with vulnerable software, luring them into downloading fake PoC exploits that secretly install the ChocoPoC Remote Access Trojan … Read more

Safe Events Start With Threat Intel and Digital Security

**Major Events Face Unseen Cyber Threats Before the First Guest Arrives** The summer of 2026 is packed with high-profile events that will draw global audiences and intense scrutiny. But behind the scenes, security teams are working tirelessly to prevent potential cyber threats from turning these gatherings into disaster scenarios. The threat landscape around major events … Read more

‘Phantom Squatting’: An Emerging AI-Driven Supply Chain Threat

A New AI-Driven Threat Emerges in Software Supply Chain: ‘Phantom Squatting’ Cybercriminals have discovered a novel way to compromise software supply chains using large language models (LLMs) that “hallucinate” fictional web domains for legitimate brands. This emerging threat, dubbed “phantom squatting,” allows attackers to register nonexistent domains linked to well-known companies and use them to … Read more

Medtronic notifies customers impacted by ShinyHunters data breach

Medtronic Data Breach Exposes Sensitive Customer Information to Unauthorized Hackers Healthcare device company Medtronic has notified customers that their personal data was compromised in a recent data breach attributed to the notorious hacking group ShinyHunters. The incident, which occurred between April 13 and 19, exposed sensitive information from approximately 9 million customer records, including full … Read more

SharePoint RCE CVE-2026-45659 Added to CISA KEV After Active Exploitation

A newly discovered vulnerability in Microsoft’s SharePoint software, CVE-2026-45659, has been added to the US Cybersecurity and Infrastructure Security Agency (CISA) Known Exploited Vulnerabilities (KEV) list after being actively exploited by attackers. This development highlights the ongoing threat posed by AI-generated vulnerabilities and emphasizes the need for organizations to prioritize proactive security measures. The vulnerability, … Read more

New ChocoPoC RAT Targets Vulnerability Researchers via Fake PoC Exploit Repos

A new and sophisticated remote access Trojan (RAT) has been discovered, targeting vulnerability researchers who use proof-of-concept (PoC) exploit repositories to identify and test software vulnerabilities. The ChocoPoC RAT, as it’s called, exploits a known vulnerability in popular PoC exploit repository platforms, allowing attackers to secretly install malware on researchers’ systems. The ChocoPoC RAT is … Read more

And the Winner in Dominant Malware Delivery? ClickFix

Cybercrime’s New Favorite: ClickFix Malware Delivery Technique Dominates Threat Landscape In just two years, ClickFix has evolved from a niche social engineering tactic to the go-to method for malware attacks. According to research by ReliaQuest, this highly effective technique is no longer an exception, but the rule, dominating initial access and defense-evasion categories in recent … Read more

Crafty Phishing Campaigns Auto-Adapt to Victim’s Device, OS

Phishing Campaigns Get Smarter, Delivering OS-Specific Payloads to Boost Compromise Rates A new wave of sophisticated phishing campaigns is spreading like wildfire across the globe, with attackers adapting their tactics to target specific devices and operating systems. According to a recent study by anti-phishing security vendor Cofense, these advanced campaigns are able to automatically detect … Read more