
China-linked hackers exploit Roundcube flaw for academic espionage
A sophisticated threat group is leveraging a known Roundcube vulnerability to compromise university email servers, stealing credentials and deploying malware.
Five shifts. Five minutes. No noise.
No spam. Unsubscribe anytime. Powered by Beehiiv.
The U.S. Treasury Department has sanctioned the 'a/I Collective' for allegedly aiding Iran's ballistic missile program, raising concerns about dual-use AI technologies.
Authorities nab two suspects in a global operation targeting TeamPCP, a prolific group behind over 1,000 supply chain compromises.
Platform identifies coordinated campaign spreading disinformation on AI infrastructure, energy policy, and pricing.

A sophisticated threat group is leveraging a known Roundcube vulnerability to compromise university email servers, stealing credentials and deploying malware.

Pentagon scrambles for affordable alternatives following significant MQ-9 Reaper losses.

New biometric reCAPTCHA requiring hand scans can be bypassed with simple photos, raising privacy and security concerns.

A critical privacy flaw in Apple's Hide My Email service, known for a year, continues to expose users' real email addresses.

Export controls on powerful AI models are lifted, allowing Anthropic to re-enable its most capable model globally.

A dual US-Estonian citizen faces charges in Las Vegas for alleged involvement with the notorious Scattered Spider hacking group.

Hackers accessed Kubota's network systems for over 30 days, exposing sensitive data.

Privacy advocates urge FTC to reject X's bid to end federal monitoring, citing serious risks to American data.

New phishing tactics exploit OAuth consent and MFA prompts to steal Microsoft 365 tokens within three seconds.

A large-scale credential theft campaign, dubbed FortiBleed, has been tied to the INC and Lynx ransomware operations, indicating stolen access is used for future attacks.