Sanctioned spyware maker Intellexa had direct access to government espionage victims, researchers say

Spyware maker Intellexa had remote access to some of its government customers’ surveillance systems, giving company staffers the ability to see the personal data of people whose phones had been hacked with its Predator spyware, according to new evidence published Read More …

UK: Information Commissioner’s Office reprimands Post Office for data breach

The Information Commissioner’s Office (ICO) has issued a reprimand to the Post Office following a data breach that resulted in the unauthorised disclosure of personal information belonging to hundreds of postmasters involved in the Horizon IT scandal. The breach occurred Read More …

India pulls mandate to preinstall government app on smartphones

India has backed away from its plan to force smartphone makers to preinstall a government app on all devices, following backlash and mounting concerns that the mandate would expand state access to users’ devices and weaken privacy protections. On Wednesday, Read More …

FTC cracks down on education tech company after massive student data breach

The Federal Trade Commission took action against Illuminate Education on December 1, 2025, after the Wisconsin-based company suffered a massive data breach that exposed personal information of more than 10 million students. In late December 2021, a hacker used login Read More …

OpenAI Data Breach Exposes User Data

A few days ago, on November 26th, right before Thanksgiving, OpenAI, the maker of ChatGPT, confirmed a recent security breach incident that started towards the beginning of November, which impacted its users, specifically those connected through OpenAI’s APIs. What caused Read More …

South Korea cyber crisis deepens as Coupang data leak exposes national vulnerabilities

An investigation is under way into the cause of the breach. The leak raised concerns about phishing attempts targeting customers. Telecom, payments and crypto firms also reported recent breaches. A major data breach at South Korea’s biggest e-retailer has intensified concerns Read More …

The Golden Scale: ‘Tis the Season for Unwanted Gifts

In October 2025, we published two Insights blogs on threat activity affiliated with the cybercriminal alliance known as Scattered LAPSUS$ Hunters (SLSH). After a few weeks of apparent inactivity, the threat actors have returned with a vengeance based on open-source Read More …

Bug in jury systems used by several US states exposed sensitive personal data

Several public websites designed to allow courts across the United States and Canada to manage the personal information of potential jurors had a simple security flaw that easily exposed their sensitive data, including names and home addresses, TechCrunch has exclusively Read More …

WhatsApp security flaw lets experts scrape 3.5 billion user numbers

WhatsApp users may need to take extra steps to protect their account information following a potentially concerning discovery. A study by researchers at the University of Vienna revealed the app’s contact-discovery system enabled the collection of extensive WhatsApp user data Read More …