Italy fines US data broker Lusha €2 million over unlawful data collection.
Israel Spending Millions to Manipulate AI Chatbots Like ChatGPT and Claude
Israeli regime is paying former Trump campaign manager Brad Parscale $46.5 million to run an influence operation designed to manipulate AI chatbots like ChatGPT and Claude.
Israeli regime is paying former Trump campaign manager Brad Parscale $46.5 million to run an influence operation designed to manipulate AI chatbots like ChatGPT and Claude.
Hacker on the Altenen cybercrime forum is distributing a 17 GB SQL database claimed to have been stolen from SplitVPN, formerly known as NotVPN, a Russian VPN marketed for bypassing internet censorship. Mysterium’s research team obtained a copy, verified it against the raw dump, and confirmed the numbers: roughly 23.4 million user records, 13.6 million device records, 2.6 million payment records, and 58 million connection logs. A VPN that promised zero logs kept tens of millions of them.
PhantomEnigma Infects Organizations with Malware via Hijacked Government Websites.
Claude AI Just Cracked a Post-Quantum Test Scheme and Found a Faster 7-Round AES Attack.
Cisco is warning that a high-severity Secure Firewall Management Center (FMC) static credential vulnerability, tracked as CVE-2026-20316, was actively exploited in zero-day attacks to gain unauthorized access to vulnerable devices.
The vulnerability is caused by static credentials for a low-privilege account built into Cisco Secure FMC Software.
The vulnerability is caused by static credentials for a low-privilege account built into Cisco Secure FMC Software.
The Russian state-sponsored hacking group Laundry Bear, also known as Void Blizzard, is exploiting an Exchange Outlook Web Access vulnerability in email campaigns to deliver a sophisticated backdoor called OWAReaper.
Email security company Proofpoint spotted the activity a week ago targeting various organizations, including government entities in the U.S. and Europe, and companies in the telecommunications, financial, hospitality, and aerospace sectors.
Laundry Bear exploited CVE-2026-42897, a cross-site scripting (XSS) vulnerability that allows executing arbitrary JavaScript in the browser context when users open a specially crafted email in the Outlook Web Access (OWA) app.
Email security company Proofpoint spotted the activity a week ago targeting various organizations, including government entities in the U.S. and Europe, and companies in the telecommunications, financial, hospitality, and aerospace sectors.
Laundry Bear exploited CVE-2026-42897, a cross-site scripting (XSS) vulnerability that allows executing arbitrary JavaScript in the browser context when users open a specially crafted email in the Outlook Web Access (OWA) app.
The source code for the Flying Eagle Android remote access trojan (RAT) framework is being shared on criminal Telegram channels. Researchers from Hunt.io and NetAskari have identified 170 internet servers linked to matching control panels and certificates.
CVE-2026-63077: Critical unauthenticated remote code execution in JetBrains TeamCity.
EU to Crack Down on AI Deepfakes, Illicit Imagery and Hacking With New Team in Brussels.
Cyber Dispatch™️
Cyberattack on Minnesota water systems.
A coordinated cyberattack struck more than 30 municipal water systems across Minnesota over the weekend, disrupting automated controls at treatment plants and water towers in communities including Braham, Plymouth, Maple Plain, and South St. Paul. State.
Cyber Dispatch™️
Cyberattack on Minnesota water systems.
Federal officials say the intrusions targeted operational technology such as programmable logic controllers and supervisory systems that manage pumps and monitoring, forcing some utilities to switch to manual operations.
Cyber Dispatch™️
Federal officials say the intrusions targeted operational technology such as programmable logic controllers and supervisory systems that manage pumps and monitoring, forcing some utilities to switch to manual operations.
John Israel, Minnesota’s chief information security officer, said hackers targeted roughly 36 systems as part of a breach first detected on Sunday.