Microsoft PowerToys adds Alt+Tab-style switching for an app’s windows

Microsoft PowerToys Gets a Boost with New Window Hopper Feature A recent update to Microsoft’s PowerToys toolset has brought a welcome addition for productivity enthusiasts and power users alike. The new “Window Hopper” feature, part of version 0.101.2362.0, allows users to quickly switch between windows of the currently focused application using an Alt+Tab-like interface. For … Read more

From Fake Workers to Account Recovery: The Growing Identity Verification Risk

Cybersecurity Risks Extend Beyond Passwords to Identity Verification A growing threat is emerging in the cybersecurity landscape, one that targets not just passwords or multi-factor authentication (MFA), but the very foundation of identity verification. While traditional security measures have become increasingly robust, attackers are now exploiting legitimate processes such as onboarding and account recovery to … Read more

Hospital operator Nutex Health says data stolen in cyberattack

A major US hospital operator has fallen victim to a cyberattack, with an unauthorized party breaching its servers and potentially stealing sensitive information. Nutex Health, which operates 28 facilities across 12 states, disclosed the incident in a filing with the US Securities and Exchange Commission (SEC), revealing that some of the stolen data may be … Read more

Hackers abuse npm mirrors to host phishing redirect pages

Cybersecurity Risks Escalate as Hackers Abuse npm Mirrors for Phishing Redirects In a disturbing trend that highlights the evolving tactics of cyber threat actors, hackers have been exploiting npm and its mirrors to host malicious HTML pages designed to impersonate Cloudflare CAPTCHAs. These phishing redirect pages are then used to divert visitors to attacker-controlled websites, … Read more

From Fake Workers to Account Recovery: The Growing Identity Verification Risk

Cybersecurity teams have made significant strides in strengthening authentication protocols, but a growing threat remains: identity verification risks during onboarding and recovery processes. Despite multi-factor authentication (MFA) and conditional access becoming increasingly common, attackers are exploiting weaknesses in these critical moments to gain unauthorized access. When employees join or leave an organization, account access is … Read more

AnonyMousKIT PhaaS uses voice AI agents to phish iPhone passcodes

Threat Actors Use Voice AI Agents to Phish iPhone Passcodes in Sophisticated Scheme A new phishing-as-a-service (PhaaS) platform called AnonyMousKIT has been uncovered, using voice artificial intelligence agents to trick victims into revealing their iPhone passcodes. This brazen scheme allows threat actors to unlock and resell stolen Apple devices, while also accessing sensitive data stored … Read more

Hackers abuse npm mirrors to host phishing redirect pages

Cybercriminals have discovered a new way to use the npm package manager to host phishing redirect pages, exploiting a weakness in the system that allows them to store malicious HTML files on legitimate domains. This technique has been spotted in at least 24 packages, which were found to contain identical code that impersonates Cloudflare CAPTCHAs … Read more

LACMA data breach last year exposed social security and medical data

A Major Cultural Institution’s Data Breach Exposes Sensitive Information of Thousands The Los Angeles County Museum of Art (LACMA) has revealed that a significant data breach occurred last year, compromising sensitive information of its employees and visitors. The incident, which was discovered on July 11, 2025, exposed not only personal details but also sensitive financial … Read more