Cybersecurity

Microsoft Disrupts Major Ransomware-Signing Operation

Microsoft disrupted Fox Tempest, a malware-signing-as-a-service that weaponized its Artifact Signing system to legitimize ransomware and other malware.The service sold for between $5,000 and...

Microsoft Mitigates BitLocker Bypass Flaw

Microsoft has released a mitigation for a critical BitLocker bypass flaw called "YellowKey" (CVE-2026-45585).The vulnerability allows attackers with physical access to circumvent device encryption...

GitHub Probes Internal Repo Theft

GitHub is investigating unauthorized access to its internal repositories after a threat actor listed its source code for sale.The attack involved a compromised employee...

Android “Trapdoor” Ad Fraud Scheme Uncovered

Trapdoor campaign funneled malvertising into ad fraud using 455 malicious Android apps and 183 C2 domains.The operation generated 659 million daily bid requests at...

Drupal Urges Emergency Update by May 20

Drupal will release a critical security fix for its CMS on May 20, 2026, warning that exploits could appear "within hours or days."Patches will...

Four Malicious npm Packages Steal Data, Spread Botnet

Four malicious npm packages discovered distributing information-stealing malware and a DDoS botnet.One package contains a clone of the open-source Shai-Hulud worm leaked by TeamPCP.Attackers...

NGINX Under Active Attack After Patch Release

A critical heap buffer overflow vulnerability (CVE-2026-42945) in NGINX is being actively exploited in the wild, allowing for denial-of-service or potential remote code execution.Exploitation...

Grafana Code Breach & Extortion Attempt Revealed

Grafana disclosed a data breach where an unauthorized party accessed its GitHub and downloaded its codebase.The cybercrime group CoinbaseCartel has claimed responsibility for the...

Latest news

Burry Warns AI Boom Temporary; NVDA Underperforms

Investor Michael Burry argues the current surge in AI demand is temporary and driven by a phase of benchmarking...

Kelp DAO Recovers $293M in rsETH After Lazarus Hack

The Kelp DAO protocol has completed a five-week recovery of its restaked Ether (rsETH) token following a $293 million...

BitMine to Join Russell 1000, Spurring ETF Buying Wave

BitMine Immersion Technologies is set to join the large-cap Russell 1000 Index on June 26 after its reconstitution.The company's...