U.S. Charges Yemeni Hacker Behind Widespread Black Kingdom Ransomware Attacks

WASHINGTON, D.C. — The U.S. Department of Justice (DoJ) has charged a Yemeni national with orchestrating a global ransomware campaign that compromised roughly 1,500 computer systems, including critical infrastructure in the United States. Rami Khaled Ahmed, 36, of Sana’a, Yemen, faces federal charges including conspiracy, intentional damage to a protected computer, and threatening to damage […]

Commvault Confirms Zero-Day Exploit Used in Azure Breach by Nation-State Hackers

Enterprise data backup provider Commvault has confirmed that a nation-state threat actor exploited a zero-day vulnerability—CVE-2025-3928—to breach its Microsoft Azure environment. However, the company stressed that there is no evidence of any unauthorized access to customer backup data. “This activity impacted a small number of customers that we share with Microsoft,” Commvault stated in an […]

Microsoft Makes Passkeys the Default for New Accounts, Enabling Passwordless Login for 15 Billion Users

A year after introducing passkey support for consumer accounts, Microsoft is taking a major step toward a passwordless future by setting passkeys as the default sign-in method for all new accounts. “From now on, brand-new Microsoft accounts will be passwordless by default,” announced Microsoft executives Joy Chik and Vasu Jakkal. “New users will have multiple […]

Trojanized WhatsApp and Telegram Found Pre-Installed on Budget Chinese Android Phones to Target Crypto Users

A new supply chain attack targeting budget Android smartphones has been uncovered, involving pre-installed, trojanized versions of WhatsApp and Telegram designed to hijack cryptocurrency transactions. According to cybersecurity researchers at Russian antivirus firm Doctor Web, the campaign—active since June 2024—involves Chinese-manufactured Android devices shipped with malicious apps disguised as popular messengers, containing crypto-clipping malware to […]

CISA Warns of Active Exploitation of SonicWall SMA Vulnerability

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a security vulnerability affecting SonicWall Secure Mobile Access (SMA) 100 Series devices to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The flaw, tracked as CVE-2021-20035 and carrying a CVSS score of 7.2, is a high-severity command injection vulnerability. It allows remote, […]

New Report Finds Most Browser Extensions Pose a Risk to Enterprise Data

Browser extensions have become an integral part of employees’ daily workflows—ranging from spell checkers to AI productivity tools. However, a new report from LayerX highlights a growing blind spot in enterprise security: the vast majority of these extensions come with excessive permissions that could expose sensitive organizational data. Released today, the Enterprise Browser Extension Security […]