Former ransomware negotiator gets 4 years for BlackCat attacks

A former employee of cybersecurity incident response company DigitalMint has been sentenced to four years in prison for his role in orchestrating BlackCat (ALPHV) ransomware attacks that targeted US companies, resulting in significant financial losses and compromising sensitive data. Angelo Martino, 41, was part of a group that collected at least $300 million in ransom … Read more

Ransomware Negotiator Gets 70 Months in Prison for Aiding BlackCat Attacks

A notorious ransomware negotiator has been sentenced to 70 months in prison for his role in facilitating BlackCat attacks on unsuspecting victims. The sentencing of this individual serves as a stark reminder of the escalating threat posed by ransomware, and the need for organizations to prioritize cybersecurity measures. The convicted individual acted as a middleman … Read more

Attackers Exploit ‘Ill Bloom’ Vulnerability to Drain $3.1 Million From Cryptocurrency Wallets

A massive cryptocurrency heist has unfolded, with attackers exploiting a previously unknown vulnerability in popular software tools used by wallet providers to drain an estimated $3.1 million from unsuspecting users’ digital wallets. The “Ill Bloom” vulnerability, as it’s come to be known, highlights the increasingly sophisticated tactics employed by cybercriminals and underscores the urgent need … Read more

15-Year-Old Linux Vulnerability ‘GhostLock’ Earns Researchers $92k From Google

A 15-year-old Linux vulnerability has finally been patched, but not before it earned its discoverers a significant bug bounty reward. The flaw, tracked as CVE-2026-43499 and dubbed “GhostLock,” affects all major Linux distributions since 2011. Nebula Security’s technical analysis reveals that the issue lies in a helper function designed to clean up after a task … Read more

12 Million Impacted by Data Breach at Japanese Telco KDDI

A massive data breach at Japanese telco KDDI has compromised the sensitive information of over 12 million individuals. The incident occurred on June 17 when hackers exploited a zero-day vulnerability in software used by five internet service providers (ISPs) that rely on KDDI’s email infrastructure. The affected ISPs include STNet, JCOM, Chubu Telecommunications, NIFTY, and … Read more

Palo Alto Networks Patches 13 Vulnerabilities

Palo Alto Networks has issued patches to address 13 vulnerabilities affecting its products, including some that could allow attackers to execute arbitrary code or cause a denial-of-service (DoS) condition. The most severe of these flaws, CVE-2026-0288, is a high-severity issue in the PAN-OS software used by Palo Alto’s firewalls. According to security firm Palo Alto … Read more

UK Government Rolls Out Agentic AI Defense Plan Alongside Industry Pledge

The UK government has unveiled a bold plan to bolster the country’s cybersecurity defenses with the introduction of agentic AI-powered defense capabilities. Dubbed “Cyber Shield”, this ambitious project aims to harness cutting-edge artificial intelligence to identify, mitigate, and resolve national cyber risks at machine speed. At the heart of Cyber Shield is the concept of … Read more

Network of 200 GitHub Repositories Used for Malware Infection

A Sophisticated Malware Campaign Exploits GitHub Repositories A threat actor has built a network of over 200 GitHub repositories designed to deliver Windows malware, according to cybersecurity firm Socket. Dubbed “Operation Muck and Load,” this campaign involves 222 lure repositories across 190 accounts that contain a Go module intended to trigger the infection chain. The … Read more

15-Year-Old Linux Vulnerability ‘GhostLock’ Earns Researchers $92k From Google

A 15-Year-Old Linux Vulnerability Finally Exposed: What You Need to Know About GhostLock In a stunning revelation that has left cybersecurity experts and Linux users alike scrambling for answers, researchers at Nebula Security have unearthed a long-dormant vulnerability in the Linux kernel that has been quietly lurking since 2011. Dubbed “GhostLock,” this critical flaw has … Read more

12 Million Impacted by Data Breach at Japanese Telco KDDI

A massive data breach at Japanese telecom giant KDDI has compromised the personal information of over 12 million people. The incident occurred on June 17 when hackers exploited a zero-day vulnerability in software used by five internet service providers (ISPs) that are customers of KDDI. The affected ISPs, which include STNet, JCOM, Chubu Telecommunications, NIFTY, … Read more