Beacon, a CRM provider for charities and nonprofits, says an AWS access key "potentially exposed in public JavaScript build artifacts" is the leading suspect in its July breach.
China-linked Jewelbug uses XG-Web for espionage and crypto fraud, stealing over 580,000 browser cookies and thousands of ...
A spoofed CCleaner download site is spreading a multi-stage malware that hijacks Chrome to steal credentials, cookies, and authentication tokens while recording keystrokes and screenshots.
CRM provider Beacon has revealed that a compromised AWS access key was the likely root cause of the breach of 1500 UK charities’ data ...
A massive supply chain attack on the Node Package Manager (npm) registry has infected over 400 packages with over 2 billion downloads with the ...
An Exton digital health startup focused on the use of weight-loss drugs has signed up several large employers this year, resulting in about 10,000 downloads of its app.
Bettr, a leading provider of inclusive and embedded finance and fintech solutions under Ant International, today announced ...
Kaspersky data shows 75 million cyberattacks blocked across APAC in the first half of 2026, including 3.4 million backdoor attacks, 2.4 million password stealers and 250,000 ransomware incident ...
BdThemes' compromised JSON feed exploits XSS in seven WordPress plugins, creating rogue admins and installing a PHP web shell without plugin updates.
Laundry Bear exploits security flaw in unpatched Zimbra servers, stealing 90 days of emails and authentication data without ...
Questions continue to surface about the buzzy dating app Goose. The latest round of suspicion was triggered by a Pop Crave post. In recent weeks, the mega-popular account has curiously mixed in posts ...
I self-hosted dozens of apps on my homelab — these are the ones that stayed ...