LATEST POST
ASEC warns of expanding Gentlemen ransomware campaigns hitting manufacturing and healthcare
Industrial Cyber reports: Researchers from ASEC detailed Gentlemen, a newly identified ransomware group, which first emerged around August 2025. […] “During the breach, the group employs typical tactics seen in advanced ransomware groups, such as Group Policy Objects (GPO) manipulation and Bring Your Own Vulnerable Driver (BYOVD). As of now, there is no clear evidence […]
NHS cyber breach exposes 169,000 files, including records linked to King Charles’s home
Geo News reports: Russian hackers have sent shockwaves through Britain’s health system after gaining access to hundreds of thousands of sensitive NHS documents some of them linked to the Royal Household. The cyber breach, blamed on a ransomware gang exploiting a flaw in NHS software, has resulted in around 169,000 confidential files being dumped on […]
More than 340,000 impacted by cyberattack on library in large Washington county
The Record reports: A cyberattack on the library system of Pierce County, Washington exposed the information of more than 340,000 people. The Pierce County Library System published breach notifications this week on its website and with regulators in several states. The letters concern a cybersecurity incident that was first discovered on April 21 and required the library system to shut down […]
Cleveland County Sheriff’s Office hit with ransomware attack, hackers demand bitcoin
Fox25 in Oklahoma reports: The Cleveland County Sheriff’s Office (CCSO) is the victim of a cybersecurity attack, and now a hacking group claiming to be responsible is demanding a hefty ransom. On November 20, CCSO made a post on social media saying it was recently impacted by a ransomware attack. The group Rhysida is taking […]
Half of exposed React servers remain unpatched amid active exploitation
The Register reports: Half of the internet-facing systems vulnerable to a fast-moving React remote code execution flaw remain unpatched, even as exploitation has exploded into more than a dozen active attack clusters ranging from bargain-basement cryptominers to state-linked intrusion tooling. That’s the assessment from Alon Schindel, VP of AI and Threat Research at Wiz, who says CVE-2025-55182 […]
Defense Bill Would Require New Cyber Requirements for Some DoD Telecom Contracts
VitalLaw reports: The Department of Defense would have to add new cybersecurity requirements to its contracts for telecom services when those services are used for “sensitive national security functions” under legislation released yesterday by the House Armed Services Committee. The committee released a compromise version of the National Defense Authorization Act (NDAA) for Fiscal Year […]
Ukrainian hacker charged with helping Russian hacktivist groups
Bleeping Computer reports: U.S. prosecutors have charged a Ukrainian national for her role in cyberattacks targeting critical infrastructure worldwide, including U.S. water systems, election systems, and nuclear facilities, on behalf of Russian state-backed hacktivist groups. On Tuesday, 33-year-old Victoria Eduardovna Dubranova (also known as Vika, Tory, and SovaSonya) was arraigned on charges related to her […]
Romanian National Sentenced in Louisiana to One Year in Prison for Access Device Fraud
The United States Attorney’s Office for Eastern District of Louisiana issued a press release about the sentencing of a Romanian national who was arrested one week after installing skimming devices at three locations in Louisiana: Acting U.S. Attorney Michael M. Simpson announced that ANDREI FAGARAS (“FAGARAS”), age 35, a Romanian national, was sentenced on December 2, 2025 […]
