Tag: data
-
Pro-Ukraine Hacking Cat group deploying new malware against Russian targets
The pro-Ukraine hacktivist group Hacking Cat has evolved from carrying out website defacements and data leaks to more sophisticated and destructive attacks on Russian targets, researchers said. First seen on therecord.media Jump to article: therecord.media/ukraine-malware-russia-ransomware
-
IT-Sicherheit und KI it-sa kind of Magic
Check Point Software wird in diesem Jahr auf der it-sa in Nürnberg vom 27. bis 29. Oktober in Halle 7A am Stand 212 ausstellen. Neben dem Sicherheitshersteller werden auch die Reseller NTT Data und Netuse auf der Fläche präsent sein und über die Sicherheitstechnologien informieren. Highlight des Messeauftritts wird ein Magier sein, der mit seinen…
-
SpiderSilk Hunts External Threats With AI-Based Scanner
The Dubai-based threat detection startup uses artificial intelligence tools to scan billions of IP addresses to find exposed assets, leaked data, and zero-day vulnerabilities. First seen on darkreading.com Jump to article: www.darkreading.com/endpoint-security/spidersilk-hunts-external-threats-ai-scanning
-
Cyber Threat Landscape: Real Attack Alerts and Recent Incidents
The Current Threat PictureThe supplied Seceon overview presents a clear picture of a modern enterprise threat landscape. Credential attacks, suspicious cloud authentication, VPN brute force, data-loss events, and major external campaigns can occur alongside one another. The most important operational… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/cyber-threat-landscape-real-attack-alerts-and-recent-incidents/
-
Revolut handed customer data to fraudsters using government email account
British fintech Revolut confirmed disclosing sensitive customer data to fraudsters who submitted emergency data requests from a legitimate government email account. First seen on therecord.media Jump to article: therecord.media/revolut-scam-crypto-impersonation
-
Security teams are adopting AI faster than they trust it
New survey data reveals a widening gap between AI adoption and AI trust. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/spons/security-teams-are-adopting-ai-faster-than-they-trust-it/829748/
-
Detecting OAuth consent phishing in Microsoft 365 audit logs
OAuth consent phishing is a practical identity attack that abuses the trust users place in application consent prompts. Instead of stealing a password directly, the attacker persuades a user to grant a malicious app access to mailbox data, profile information,… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/detecting-oauth-consent-phishing-in-microsoft-365-audit-logs/
-
Signed, Sealed, Secured: Newly Appointed CISOs to Watch
Five organisations named new security chiefs in July and August 2026: a hotel group, a physical security company, an AI data centre operator, a remittance firm, and a crypto exchange. The businesses have little in common. The CISOs they hired… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/signed-sealed-secured-newly-appointed-cisos-to-watch/
-
Revolut discloses data breach exposing financial info, passports
Fintech company Revolut has disclosed a data breach after sharing data from an undisclosed number of customers with a threat actor impersonating a government agency. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/revolut-discloses-data-breach-exposing-financial-info-passports/
-
What we know about the Revolut data breach so far
Someone impersonating a government agency, using an email address on that agency’s domain, obtained sensitive customer records from Revolut. The bank confirmed the … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/09/14/revolut-data-breach-privacy/
-
Revolut confirms customer data breach through fake government requests
Revolut said it notified affected customers and alerted the relevant government agency, law enforcement, and financial regulators. First seen on techcrunch.com Jump to article: techcrunch.com/2026/09/12/revolut-confirms-customer-data-breach-through-fake-government-requests/
-
Detecting commandcontrol traffic at the network layer
Command-and-control traffic, often shortened to C2, is the communication path an attacker uses to control a compromised system after initial access. Once malware or a hands-on operator has a foothold, C2 is how they issue commands, move data, stage tools,… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/detecting-command-and-control-traffic-at-the-network-layer/
-
Threat Actors Use Claude AI Agents to Automate Cyberattacks and Steal Sensitive Data
Threat actors are increasingly using Claude-based AI workflows to automate cyberattacks, accelerate data theft, and reduce the technical expertise needed to run complex intrusions. Anthropic’s report details cyber espionage, financially motivated extortion, supply-chain compromise, and hacktivist activity disrupted between December 2025 and August 2026. Rather than using an AI chatbot only for occasional coding assistance,…
-
Cybersecurity Budgets Hold Up as AI Costs Force IT Spending Cuts
Cybersecurity spending is holding up better than many other areas of enterprise IT as organizations redirect spending toward artificial intelligence, according to recent survey data from Enterprise Technology Research. ETR’s Summer 2026 Macro Views Survey found that security software spending was expected to grow 7.8%, the fastest rate among the software categories it tracks. Overall..…
-
Cylake Gets $245M to Build Cloud-Free Cybersecurity Platform
Nir Zuk’s Startup Targets Firms Unable to Send Sensitive Security Data to the Cloud. Cylake, led by Palo Alto Networks founder Nir Zuk, raised $245 million to build an on-premises cybersecurity system combining hardware, storage, security software and local AI for regulated organizations that can’t send sensitive data to external clouds. First seen on govinfosecurity.com…
-
Ukrainian Conti Ransomware Developer Gets 4 Years in US Prison
Lytvynenko Admitted Developing Malware and Stealing Data for Conti. A U.S. court sentenced Ukrainian national Oleksii Lytvynenko to four years in prison after he admitted developing malware and stealing data for Conti, the ransomware operation blamed for more than 1,000 victims and $150 million in payments. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/ukrainian-conti-ransomware-developer-gets-4-years-in-us-prison-a-32805
-
ID Verification Firm IDScan.net Confirms Data Breach
IDScan.net Confirms Breach – But Leaves Victim Count and Point of Entry Unanswered. A Louisiana identity verification company has confirmed a breach reportedly tied to the darkweb sale of more than 153 million U.S. and Canadian driver’s licenses, but its notice does not say how many people were affected or how attackers got in. First…
-
Florida says motor vehicle data breach tied to credentials stolen from officer’s personal device
The Florida Department of Motor Vehicles confirmed a data breach claimed by the cybercrime group ShinyHunters, saying it originated with the theft of credentials stored on a police officer’s personal device. First seen on therecord.media Jump to article: therecord.media/florida-shiny-hunters-motor-vehicle
-
Florida confirms DMV database breached via stolen police account
The Florida Department of Highway Safety and Motor Vehicles (FLHSMV) has confirmed that its DAVID driver database suffered a data breach, saying the attackers gained access using credentials belonging to a police department employee. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/florida-confirms-dmv-database-breached-via-stolen-police-account/
-
Florida confirms DMV database breached via stolen police account
The Florida Department of Highway Safety and Motor Vehicles (FLHSMV) has confirmed that its DAVID driver database suffered a data breach, saying the attackers gained access using credentials belonging to a police department employee. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/florida-confirms-dmv-database-breached-via-stolen-police-account/
-
Surface SaaS and AI Threats
Surface SaaS and AI Threats Know who has access to your data before attackers do. CHALLENGE Threat actors target new attack vectors every day. Every SaaS and AI app your organization adopts expands your attack surface. Threats such as stolen… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/surface-saas-and-ai-threats/
-
Meta Sued Over Training Data for Its AI and Face-Recognition Systems
The proposed class action alleges Meta illegally harvested people’s Facebook and Instagram photos to train its AI image-generation models and to build its unreleased “NameTag” face recognition feature. First seen on wired.com Jump to article: www.wired.com/story/meta-sued-over-training-data-for-its-ai-and-face-recognition-systems/
-
Novo Nordisk Data Breach Tied to Stolen GitHub Access Tokens
Tags: access, breach, cloud, credentials, cyber, data, data-breach, defense, exploit, extortion, github, group, infrastructureCyber Extortion Group Continues to Target Exposed Cloud-Based Data Over Endpoints. Cyber extortion group FulcrumSec continues to find hardcoded credentials in public-facing IT infrastructure and exploit them as part of what it’s dubbed a Hardcoded Horrorshow that counts Ozempic maker Novo Nordisk among its victims. Here are defenses organizations need to put in place now.…
-
Claude Used to Automate Exploitation and Data Theft Across Multiple Victims
Anthropic has warned that cybercriminals and state-sponsored hackers alike are using its Claude models for cyber attacks, weapons design, propaganda, and mass surveillance between December 2025 and August 2026.The threat actors, which the artificial intelligence (AI) company has branded Generative Threat Groups (GTGs), span state-sponsored groups, financially motivated criminals, commercial First seen on thehackernews.com Jump…

