News & Updates

How Interlock Ransomware Infects Healthcare Organizations

Ransomware attacks have reached an unprecedented scale in the healthcare sector, exposing vulnerabilities that put millions at risk. Recently, UnitedHealth revealed that 190 million Americans had their personal and healthcare data stolen during the Change Healthcare ransomware attack, a figure that nearly doubles the previously disclosed total. 
This breach shows just how deeply ransomware
News & Updates

Identity Theft Awareness Week: Why Protecting Your Identity Matters More Than Ever

If there’s something that demands your attention this end of January, it’s Identity Theft Awareness Week, a time packed with events and resources to educate the public about one of the most pervasive threats millions of consumers face.

With billions of personal records exposed in data breaches each year and countless individuals falling victim to phishing scams, protecting your identity has never been more important.

While organizations like the Federal Trade Commission (FTC) and the Better Bu

News & Updates

Critical Cacti Security Flaw (CVE-2025-22604) Enables Remote Code Execution

A critical security flaw has been disclosed in the Cacti open-source network monitoring and fault management framework that could allow an authenticated attacker to achieve remote code execution on susceptible instances.
The flaw, tracked as CVE-2025-22604, carries a CVSS score of 9.1 out of a maximum of 10.0.
“Due to a flaw in the multi-line SNMP result parser, authenticated users can inject
News & Updates

Attackers actively exploit a critical zero-day in Zyxel CPE Series devices

Experts warn that threat actors are actively exploiting critical zero-day vulnerability, tracked as CVE-2024-40891, in Zyxel CPE Series devices. GreyNoise researchers are observing active exploitation attempts targeting a zero-day, tracked as CVE-2024-40891, in Zyxel CPE Series devices. The vulnerability is a command injection issue that remains unpatched and has not yet been publicly disclosed. Attackers can exploit […]
News & Updates

The Truth About TikTok Bans and VPN Workarounds

As the TikTok saga unfolds, captivating the attention of cybersecurity experts and governments, its users are left to grapple with the implications of the app’s US ban.

The evolution of the TikTok ban controversy

TikTok, a massively popular short-form video-hosting service renowned for its viral trends, recently suffered a nationwide ban in the United States.

Although the app’s ban was fueled by government concerns over potential data harvesting and influence peddling by TikTok’s parent comp

News & Updates

Ex-worker arrested after ‘shutdown’ of British Museum computer systems

London’s world-famous British Museum was forced to partially close its doors at the end of last week, following a serious security breach involving a former IT contractor.

As The Guardian reports, police were called to the museum on Friday after a recently dismissed worker allegedly trespassed onto the museum site and was able to shut down various systems, including the museum’s ticketing platform.

As a consequence, visitors faced significant disruptions, with many unable to access galleries a

News & Updates

Attackers exploit SimpleHelp RMM Software flaws for initial access

Threat actors exploit recently fixed SimpleHelp RMM software vulnerabilities to breach targeted networks, experts warn. Horizon3 researchers discovered three vulnerabilities, tracked as CVE-2024-57726, CVE-2024-57727, and CVE-2024-57728, that could be used to compromise a SimpleHelp server, as well as clients machines being managed by SimpleHelp. The first vulnerability, CVE-2024-57727 (CVSS score of 7.5), is an unauthenticated […]
News & Updates

UAC-0063 Expands Cyber Attacks to European Embassies Using Stolen Documents

The advanced persistent threat (APT) group known as UAC-0063 has been observed leveraging legitimate documents obtained by infiltrating one victim to attack another target with the goal of delivering a known malware dubbed HATVIBE.
“This research focuses on completing the picture of UAC-0063’s operations, particularly documenting their expansion beyond their initial focus on Central Asia,
News & Updates

Broadcom Warns of High-Severity SQL Injection Flaw in VMware Avi Load Balancer

Broadcom has alerted of a high-severity security flaw in VMware Avi Load Balancer that could be weaponized by malicious actors to gain entrenched database access.
The vulnerability, tracked as CVE-2025-22217 (CVSS score: 8.6), has been described as an unauthenticated blind SQL injection.
“A malicious user with network access may be able to use specially crafted SQL queries to gain database
Scroll to Top