CIMB refutes claims of data breach involving 1.2 million records

CIMB Group Holdings Bhd has given assurance that claims circulating online about a data breach involving its customers are false and that customer data continues to be protected. The financial services provider said on social media platform X that its Read More …

Europol, Microsoft, TrendAI and Collaborators Halt Tycoon 2FA Operations

Researchers from TrendAI have been tracking the infrastructure, as well as the campaigns and operator behaviors that can be linked to Tycoon 2FA to build a clearer picture of how its services was being used at scale. By November 2025, Read More …

Hacktivists may have just cracked open ICE and exposed over 6,000 companies working with the DHS

A hacktivist group has claimed to have broken into systems belonging to the US Department of Homeland Security (DHS) and exposed sensitive files online. The group, with the self-awarded name “The Department of Peace”, stole data from the Office of Read More …

Fooling AI Agents: Web-Based Indirect Prompt Injection Observed in the Wild

Large language models (LLMs) and AI agents are becoming deeply integrated into web browsers, search engines and automated content-processing pipelines. While these integrations can expand functionality, they also introduce a new and largely underexplored attack surface. One particularly concerning class Read More …

LexisNexis hacked, 2 GB of structured data allegedly exposed

The hacker group FulcrumSec is taking responsibility for a data breach of information from LexisNexis. The group claims to have hacked into the LexisNexis servers on Feb. 24. It posted about the hack and alleged it got access to over Read More …

Scammers try to SIM-swap Dubai citizens hours after Iranian missile strikes

Scammers targeted Dubai citizens mere hours after missiles struck the city, attempting to gain access to their bank accounts, police have warned. Financially motivated cybercriminals are contacting citizens under the guise of Dubai Crisis Management, a fictitious department ostensibly tied Read More …

Russia: Over 200 people involved in SIM box operations detained since September 2025

The Federal Security Service (FSB), the Interior Ministry, and the Investigative Committee of Russia have uncovered and disrupted 100 illegal communication channels used by Ukrainian intelligence services to involve Russians in sabotage and terrorism since September 1, 2025, with over Read More …

New Android malware can hack every top phone maker’s security, and costs less than a second-hand iPhone

Oblivion is a newly observed Android Remote Access Trojan which reportedly targets a range of popular devices running Android 8 through 16. Security researchers at Certo have examined the tool, which is sold on a subscription basis starting at $300, Read More …

15 million French citizens affected by massive data breach following cyberattack on medical software

A massive data breach concerning the data of 15 million people in France has been revealed after a cyberattack targeted 1,500 doctors using medical software. The administrative data of around 15 million French citizens, along with notes written by their Read More …