News
Nissan Discloses Employee Data Breach Linked to Oracle Zero-Day
8+ hour, 27+ min ago (289+ words) Nissan has disclosed a data breach affecting current and former employees after threat actors exploited an Oracle People Soft vulnerability in data theft attacks linked to the Shiny Hunters extortion group. Nissan Americas uses Oracle People Soft software to manage…...
Daktronics Controller Flaws Expose Highway Signs to Remote Hacking
7+ hour, 12+ min ago (176+ words) Critical and high-severity vulnerabilities in several Daktronics controllers could allow attackers to tamper with highway signs and billboards, according to the researcher who discovered them. CISA warned that successful exploitation "could provide an unauthenticated user with complete root-level access and…...
Microsoft Removes 119 Stego Ad Edge Extensions Hiding Malware
1+ day, 7+ hour ago (336+ words) Microsoft has removed 119 Edge browser extensions that concealed malware payloads inside image and font files, part of a campaign tracked as Stego Ad. The extensions used steganography to embed malicious payloads within image and font files. The operators also relied…...
Cyber Job Moves: Senior Cybersecurity Leaders Make Career Moves | Week of June 28-July 4
1+ day, 13+ hour ago (126+ words) Ben Trowbridge - Nexus IT Ashley Dreier - Nexus IT Derek Kan - Fortinet Greg Deisher - Veea Mark Tubinis - Veea Thomas Latiolais - Veea Torrell Funderburk - Token Mark Carter - Socure Mark Cravotta - Spektrum Labs Meital Shandler - Reclaim Security. Arad Offer - Novee Security Vishwa Pandagle…...
Before You Trust Mullvad, Read What I Found About its Logging Practices in its Audits and Legal Records
3+ day, 4+ hour ago (1662+ words) Mullvad caught my attention for a different reason. In April 2023, Swedish police showed up at their office with a search and seizure warrant for customer data. Six officers. A valid warrant. The kind of situation most VPN providers only face…...
Why SAP Access Governance Needs Business Context, Besides Automation
3+ day, 3+ hour ago (466+ words) Question: Which SAP security and compliance tasks could be automated? Once automated, how should organizations approach monitoring those processes for visibility and risk control?" Chris Radkowski, SAP GRC Expert at Pathlock SAP environments have never been more complex or more…...
Canada's TD Bank Deploys Worki Q Surveillance Software Amid Privacy Gaps
4+ day, 9+ hour ago (299+ words) TD Bank, Canada's second-largest company by market cap, has told some employees it will deploy Worki Q software to track work activity, reigniting debate over consent and privacy in workplace surveillance. Several TD employees posted anonymously on social media, expressing…...
Adblock for You Tube Chrome Extension Hides Dormant Java Script Injection
4+ day, 11+ hour ago (297+ words) Dormant Java Script injection capabilities inside Adblock for You Tube, a popular Chrome extension with over 10 million installs were discovered. The finding highlights how widely trusted browser add-ons can quietly carry the means to execute unauthorized code on millions of…...
Anthropic Accuses Alibaba of Largest Claude AI Distillation Attack
5+ day, 9+ hour ago (290+ words) Anthropic has accused Alibaba and its AI lab Alibaba Qwen of carrying out the largest known model distillation attack against the company, illicitly extracting capabilities from its Claude AI model. The accusation appears in a letter dated June 10, sent to…...
Klue Supply Chain Breach: Icarus Steals Salesforce Data From Huntress
1+ week, 4+ day ago (308+ words) Huntress has disclosed that it was among many organizations affected by a supply chain attack on Klue, a market intelligence platform. In a report published June 18, 2026, the cybersecurity firm detailed how a threat actor compromised Klue's backend and exfiltrated CRM…...