⚡ Weekly Recap: Drift Breach Chaos, Zero-Days Active, Patch Warnings, Smarter Threats & MoreThe Hacker News·Dec 6, 11:14 UTC · Dec 6, 2025Vulnerability in the wildCVE-2025-53690CVE-2025-38352CVE-2025-48543+25 CVEs160
Shai-Hulud worm returns stronger and more automated than ever beforeCyberScoop·Nov 24, 22:45 UTC · Nov 24, 2025Data breach in the wild60
AI chatbots are sliding toward a privacy crisisHelp Net Security·Oct 31, 00:00 UTC · Oct 31, 2025Policy & legal30
Salesloft Takes Drift Offline After OAuth Token Theft Hits Hundreds of OrganizationsThe Hacker News·Sep 15, 00:00 UTC · Sep 15, 2025Data breach57
The npm incident frightened everyone, but ended up being nothing to fret aboutCyberScoop·Sep 10, 14:35 UTC · Sep 10, 2025Exploit / PoC in the wild60
Open Source Community Thwarts Massive npm Supply Chain AttackInfosecurity Magazine·Sep 9, 13:30 UTC · Sep 9, 2025Vulnerability42
Zscaler, Palo Alto Networks, SpyCloud among the affected by Salesloft Drift breachHelp Net Security·Sep 8, 11:32 UTC · Sep 8, 2025Vulnerability30
Cloudflare confirms data breach linked to Salesloft Drift supply chain compromiseHelp Net Security·Sep 8, 11:32 UTC · Sep 8, 2025Data breach57
Qualys, Tenable Latest Victims of Salesloft Drift HackInfosecurity Magazine·Sep 8, 11:30 UTC · Sep 8, 2025Data breach57
Week in review: Several companies affected by the Salesloft Drift breach, Sitecore 0-day vulnerabilityHelp Net Security·Sep 7, 00:00 UTC · Sep 7, 2025Vulnerability in the wildCVE-2025-53690CVE-2025-24204CVE-2025-48543+2 CVEs60
AI can help track an ever-growing body of vulnerabilities, CISA official saysCyberScoop·Sep 4, 17:42 UTC · Sep 4, 2025Vulnerability in the wild60
Google Warns Salesloft Drift Breach Impacts All Drift Integrations Beyond SalesforceThe Hacker News·Sep 3, 19:02 UTC · Sep 3, 2025Data breach45
AI hallucinations and their risk to cybersecurity operationsHelp Net Security·May 19, 00:00 UTC · May 19, 2025Vulnerability55
When ransomware strikes, what’s your move?Help Net Security·Apr 18, 00:00 UTC · Apr 18, 2025Ransomware60
Microsoft’s new AI agents take on phishing, patching, alert fatigueHelp Net Security·Mar 25, 00:00 UTC · Mar 25, 2025Phishing & fraud55
Week in review: How QR code attacks work and how to protect yourself, 10 must-reads for CISOsHelp Net Security·Mar 9, 00:00 UTC · Mar 9, 2025Vulnerability42
Innovation vs. security: Managing shadow AI risksHelp Net Security·Mar 3, 00:00 UTC · Mar 3, 2025Data breach45
CISA’s AI cybersecurity playbook calls for greater collaboration, but trust is key to successful executionCyberScoop·Feb 26, 12:00 UTC · Feb 26, 2025Exploit / PoC in the wild60
Week in review: Exploitable flaws in corporate VPN clients, malware loader created with gaming engineHelp Net Security·Dec 1, 00:00 UTC · Dec 1, 2024MalwareCVE-2024-5921CVE-2024-29014CVE-2024-9680+1 CVEs60
Week in review: 0-days exploited in Palo Alto Networks firewalls, two unknown Linux backdoors identifiedHelp Net Security·Nov 24, 00:00 UTC · Nov 24, 2024Malware in the wildCVE-2024-0012CVE-2024-9474CVE-2024-44309+2 CVEs60
Cybersecurity jobs available right now: September 18, 2024Help Net Security·Nov 20, 09:57 UTC · Nov 20, 2024Vulnerability30
Ambitious cybersecurity regulations leave companies in compliance chaosHelp Net Security·Nov 12, 00:00 UTC · Nov 12, 2024Policy & legal30
Filigran raises $35 million to drive global expansionHelp Net Security·Oct 28, 00:00 UTC · Oct 28, 2024Industry55
Protecting academic assets: How higher education can enhance cybersecurityHelp Net Security·Oct 23, 09:08 UTC · Oct 23, 2024Vulnerability30
Attackers deploying red teaming tool for EDR evasionHelp Net Security·Oct 15, 00:00 UTC · Oct 15, 2024AI safety & security30
Hackers Abuse EDRSilencer Tool to Bypass Security and Hide Malicious ActivityThe Hacker News·Oct 15, 00:00 UTC · Oct 15, 2024Ransomware57
Week in review: PostgreSQL databases under attack, new Chrome zero-day actively exploitedHelp Net Security·Aug 25, 00:00 UTC · Aug 25, 2024Exploit / PoC in the wildCVE-2024-7971CVE-2024-6800CVE-2024-28987+2 CVEs60
Week in review: JetBrains GitHub plugin vulnerability, 20k FortiGate appliances compromisedHelp Net Security·Jun 16, 00:00 UTC · Jun 16, 2024VulnerabilityCVE-2024-37051CVE-2024-4577CVE-2024-30080+1 CVEs160
Six months of SEC's cyber disclosure rulesHelp Net Security·Jun 12, 00:00 UTC · Jun 12, 2024Policy & legal30
Understanding cyber risks beyond data breachesHelp Net Security·May 20, 00:00 UTC · May 20, 2024Data breach57
Week in review: Palo Alto firewalls mitigation ineffective, PuTTY client vulnerable to key recovery attackHelp Net Security·Apr 21, 00:00 UTC · Apr 21, 2024RansomwareCVE-2024-3400CVE-2024-31497CVE-2024-29204+1 CVEs60
Week in review: Cybersecurity job openings, hackers use 1-day flaws to drop custom Linux malwareHelp Net Security·Mar 17, 00:00 UTC · Mar 17, 2024Malware in the wildCVE-2024-0799CVE-2024-0800CVE-2023-4878860
Week in review: 10 cybersecurity frameworks you need to know, exploited Chrome zero-day fixedHelp Net Security·Jan 21, 00:00 UTC · Jan 21, 2024Exploit / PoC in the wildCVE-2023-36025CVE-2023-22527CVE-2024-0519+3 CVEs60
N. Korean Hackers Distribute Trojanized CyberLink Software in Supply Chain AttackThe Hacker News·Dec 1, 07:21 UTC · Dec 1, 2023MalwareCVE-2023-4279360
North Korea Blamed For CyberLink Supply Chain AttacksInfosecurity Magazine·Nov 23, 10:00 UTC · Nov 23, 2023Malware42
North Korean attack on CyberLink impacted devices around the world, Microsoft saysThe Record·Nov 22, 22:56 UTC · Nov 22, 2023Vulnerability42
GootBot Implant Heightens Risk of PostInfosecurity Magazine·Nov 7, 16:30 UTC · Nov 7, 2023Ransomware60
Cyber experts and officials raise alarms about exploits against Citrix and Apache productsThe Record·Nov 3, 18:13 UTC · Nov 3, 2023Ransomware in the wildCVE-2023-46604CVE-2023-496660
QR Codes Used in 22% of Phishing AttacksInfosecurity Magazine·Oct 19, 17:00 UTC · Oct 19, 2023Phishing & fraud55
Ransomware Targets Unpatched WS_FTP ServersInfosecurity Magazine·Oct 16, 16:30 UTC · Oct 16, 2023RansomwareCVE-2023-4004460