Cybersecurity researchers have uncovered a large malware campaign that has turned nearly 2,000 hacked WordPress websites into tools for cybercriminals. The campaign, which researchers have called StopAndProtect, uses legitimate websites that have been compromised to help distribute malicious software, communicate with infected computers, and collect information from victims. The campaign is particularly concerning because the […]
Security researchers have discovered serious weaknesses in software used to help operators communicate with spacecraft and scientific instruments. The vulnerabilities affect AIT-GUI, a web-based control interface associated with NASA and the Jet Propulsion Laboratory’s open-source AMMOS Instrument Toolkit. Researchers warn that, under certain circumstances, an attacker who does not have a username or password could […]
Cybersecurity researchers have identified significant updates to two Android banking trojans, ToxicPanda and GoldDigger, highlighting the growing sophistication of mobile malware targeting financial information. ToxicPanda, also known as TgToxic, has received a major upgrade that expands its capabilities and dramatically increases the number of financial institutions it can target. Researchers from Zimperium’s zLabs team say […]
Cybersecurity researchers have uncovered a large-scale hacking campaign that compromised more than 14,500 Dahua surveillance cameras and other devices. The campaign, dubbed Operation CameraSwarm by researchers at Hunt.io, was active between June 17 and July 22, 2026, and primarily affected devices located in Ukraine and Russia. Investigators discovered evidence of the operation after finding an […]
A new phishing campaign known as Kali365 is targeting businesses by abusing a legitimate Microsoft login process to steal access to company accounts. Instead of creating a fake login page, attackers trick employees into approving a real Microsoft authentication request, allowing criminals to gain access to email accounts, documents, and other cloud resources. The attack […]
OpenAI has shut down a network of accounts that used ChatGPT to help run a large-scale online scam operation based in Southeast Asia. The group, believed to be operating from the Cambodian city of Poipet, used artificial intelligence to create fake identities, write convincing messages, translate conversations, and manage daily operations for a variety of […]
A Canadian man has pleaded guilty for his role in a series of cyberattacks that compromised customer accounts on the cloud platform Snowflake in 2024. The attacks affected more than 165 organizations and exposed the personal information of at least 100 million people. Prosecutors say 26-year-old Connor Riley Moucka earned nearly $500,000 by demanding ransom […]
Researchers recently discovered security weaknesses in artificial intelligence (AI) systems used by Amazon Web Services (AWS), Google, and Vercel. These flaws could allow attackers to make an AI agent perform actions without first getting approval from the AI model itself. Normally, an AI reviews a request, decides whether an action is safe, and then carries […]
A lawsuit against OpenAI has raised concerns about the risks of using artificial intelligence tools like ChatGPT for medical guidance. The case involves allegations that ChatGPT provided harmful health advice that caused a user to delay seeking professional medical care for a serious condition. The lawsuit argues that the chatbot appeared to provide medical opinions […]
Fairlife, a dairy company owned by The Coca-Cola Company, experienced a ransomware attack that temporarily disrupted its production operations across the United States. The cyberattack involved unauthorized access to systems connected to the company’s manufacturing processes, forcing Fairlife to suspend production while it worked to contain the incident. Despite the disruption, the company stated that […]





