Alleged Scattered Spider Hacker Extradited to US

A Notorious Hacking Group’s Alleged Member Extradited to Face US Charges In a significant blow to the notorious hacking group Scattered Spider, a 19-year-old dual US-Estonian citizen has been extradited to the United States to face charges related to the group’s activities. Peter Stokes, also known as ‘Bouquet’, was arrested in Finland in April while … Read more

Medtronic Data Breach Impacts 3.8 Million People

A massive data breach at medical technology giant Medtronic has exposed the personal and medical information of over 3.8 million individuals. The incident, which occurred in April 2026, was perpetrated by the notorious extortion group ShinyHunters, who gained access to the company’s corporate IT systems. The hackers claimed to have stolen over 9 million records … Read more

Agentic AI Used to Conduct Ransomware Attack via Langflow

A Ransomware Attack Just Used AI to Outsmart Security Defenses A recent ransomware attack has exposed a major vulnerability in cloud infrastructure, highlighting the growing threat of agentic artificial intelligence (AI) in cyber attacks. Threat actor JadePuffer exploited a critical flaw in Langflow, an open-source framework used for building language model-driven applications, to access and … Read more

PamStealer Uses Fake Maccy Sites and PAM Checks to Steal Mac Login Passwords

A New Threat on the Block: PamStealer Exploits Mac Login Credentials Using Fake Maccy Sites and PAM Checks Cybersecurity experts have discovered a sophisticated threat actor utilizing a novel attack vector, dubbed PamStealer, to compromise Mac login passwords. This malicious tool exploits vulnerabilities in Password Manager (PAM) checks and fake websites mimicking popular food delivery … Read more

European Parliament Member Investigating Spyware Was Hacked With Pegasus

A European Parliament member investigating allegations of spyware use against EU citizens has been hacked with the notorious Pegasus software, raising serious concerns about the security of high-profile targets and the potential for espionage on a massive scale. The development has sparked an immediate outcry from human rights groups and cybersecurity experts alike. The European … Read more

‘BioShocking’ Attack Tricks AI Browsers Into Stealing Credentials

Cybersecurity experts have identified a worrying vulnerability in several popular AI-powered browsers that allows malicious actors to trick them into performing unauthorized actions. Dubbed “BioShocking,” this attack technique exploits the way these browsers interpret context and can lead to the theft of sensitive user credentials. Researchers at LayerX discovered that agentic browsers, such as ChatGPT … Read more

Cisco Confirms In-the-Wild Exploitation of Unified CM Vulnerability

Cisco Warns of In-the-Wild Exploitation of Unified Communications Manager Vulnerability A critical vulnerability in Cisco’s Unified Communications Manager (Unified CM) and Unified Communications Manager Session Management Edition (Unified CM SME) has been confirmed as being exploited in real-world attacks. The flaw, tracked as CVE-2026-20230 with a CVSS score of 8.6, allows attackers to launch Server-Side … Read more

Trump Administration Lifts Restrictions on Anthropic’s Claude Models After Cybersecurity Alarm

The Trump administration has lifted restrictions on Anthropic’s latest versions of its Claude chatbot, ending a weekslong ban tied to cybersecurity concerns. This move comes after Anthropic’s AI model, called Claude Fable 5, was found to have vulnerabilities that could be exploited by malicious hackers. Anthropic’s most powerful model, Mythos 5, is still restricted, but … Read more

Critical Cursor AI Code Editor Flaws Could Lead to OS-Level Remote Code Execution

Critical Flaws in Popular AI Code Editor Put Developers at Risk of OS-Level Remote Code Execution A recent security discovery has exposed two critical vulnerabilities in Cursor, a widely used AI code editor, which could allow attackers to execute malicious code on developers’ operating systems. The issues, tracked as CVE-2026-50548 and CVE-2026-50549, have been assigned … Read more

Google, FBI Disrupt NetNut Residential Proxy Network Powered by Millions of Devices

Google, FBI Disrupt Massive Residential Proxy Network Powered by Millions of Devices In a major joint operation, Google, the FBI, and other organizations have dismantled NetNut, a massive residential proxy network that had been secretly powered by over 2 million compromised Android devices. The network’s operator, linked to the Israeli firm Alarum Technologies Ltd, rented … Read more