The CEVA Logistics data breach is having major knock-on effects across Europe – here’s what we know

CEVA Logistics, one of the biggest shipping and logistics companies in the world, has suffered a major cyberattack, the effects of which are trickling down to many of its clients. The details of the hack itself, however, are not yet Read More …

Attackers pick Levi’s pockets in social engineering attack

Levi Strauss is investigating a data breach after attackers used social engineering to access three employees’ work computers. In a regulatory filing, the jeans maker said the intruders accessed and exfiltrated what it described only as “certain corporate information.” Levi’s said Read More …

StopRansomware: Gunra Ransomware

Gunra is a ransomware-as-a-service (RaaS) used by affiliates to target government, critical infrastructure, and other organizations. The Gunra ransomware variant first appeared in 2025 and expanded to RaaS operations in 2026. The actors leverage a double-extortion model, both encrypting data Read More …

Top US hedge funds targeted by major vishing campaign

Some of the biggest US hedge funds and law firms have been targeted by a highly sophisticated data breach and extortion campaign, conducted by a group of criminals previously known as BlackFile, experts have warned. BlackFile (or Redact, as the Read More …

Ransomware gangs skip the CEO, head straight for the 40-something IT manager

Turns out the fastest way to get a company to consider paying a ransom isn’t calling the CEO – it’s targeting the 46-year-old IT manager. That’s according to Zscaler, whose ThreatLabz researchers tracked 351 victims across 334 organizations caught up in Read More …

Swiss government says SharePoint-linked data breach affected hundreds of accounts

Cybercriminals broke into the IT network of the Swiss government and stole data from roughly 200 accounts. As a result, the Swiss government disconnected some of its servers from the wider internet and launched an investigation. In an announcement, the Read More …

Anthropic’s Mythos AI used social engineering to target real people

Anthropic’s Mythos AI agent, tested by the UK AI Safety Institute (AISI), has reportedly attempted a real‑world social‑engineering style hack against GitHub maintainers by creating fake human profiles, pressuring them to accept malicious code, and then editing logs to hide its tracks Read More …

Token Jacking: Cybercriminals Could Be Stealing Your AI Resources

It’s three a.m., do you know what your AI agent is doing? Unit 42 has responded to a growing number of AI token jacking cases resulting in staggering financial losses. The financial loss comes from criminals gaining access to API Read More …