โŒ

Normal view

There are new articles available, click to refresh the page.
Yesterday โ€” 5 December 2025Main stream

Beijing-linked hackers are hammering max-severity React bug, AWS warns

5 December 2025 at 09:10

State-backed attackers started poking flaw as soon as it dropped โ€“ anyone still unpatched is on borrowed time

Amazon has warned that China-nexus hacking crews began hammering the critical React "React2Shell" vulnerability within hours of disclosure, turning a theoretical CVSS-10 hole into a live-fire incident almost immediately.โ€ฆ

UK pushes ahead with facial recognition expansion despite civil liberties backlash

5 December 2025 at 06:14

Plan would create statutory powers for police use of biometrics, prompting warnings of mass surveillance

The UK government has kicked off plans to ramp up police use of facial recognition, undeterred by a mounting civil liberties backlash and fresh warnings that any expansion risks turning public spaces into biometric dragnets.โ€ฆ

Before yesterdayMain stream

University of Pennsylvania joins list of victims from Clop's Oracle EBS raid

2 December 2025 at 12:50

Ivy League school warns more than 1,400 people after attackers siphon data via zero-day

The University of Pennsylvania has become the latest victim of Clop's smash-and-grab spree against Oracle's E-Business Suite (EBS) customers, with the Ivy League school now warning more than a thousand individuals that their personal data was siphoned from its systems.โ€ฆ

South Korea's answer to Amazon admits breach exposed 33.7M customers

1 December 2025 at 08:15

Coupang confirms internationally routed intrusion compromised more than half of the country's population

South Korean retail behemoth Coupang has admitted to a data breach that exposed the personal details of 33.7 million customers, turning the company's famed "Rocket Delivery" logistics empire into an express shipment for personal information.โ€ฆ

PostHog admits Shai-Hulud 2.0 was its biggest ever security bungle

28 November 2025 at 11:22

Automation flaw in CI/CD workflow let a bad pull request unleash worm into npm

PostHog says the Shai-Hulud 2.0 npm worm compromise was "the largest and most impactful security incident" it's ever experienced after attackers slipped malicious releases into its JavaScript SDKs and tried to auto-loot developer credentials.โ€ฆ

OBR drags in cyber bigwig after Budget leak blunder

28 November 2025 at 07:02

Ex-NCSC chief Ciaran Martin asked to examine how forecast ended up online ahead of schedule

The Office for Budget Responsibility (OBR) has drafted in former National Cyber Security Centre (NCSC) chief Ciaran Martin to sniff out how its Budget day forecast wandered onto the open internet before the Chancellor had even reached the dispatch box.โ€ฆ

CISA warns spyware crews are breaking into Signal and WhatsApp accounts

25 November 2025 at 06:32

Attackers sidestep encryption with spoofed apps and zero-click exploits to compromise 'high-value' mobile users

CISA has warned that state-backed snoops and cyber-mercenaries are actively abusing commercial spyware to break into Signal and WhatsApp accounts, hijack devices, and quietly rummage through the phones of what the agency calls "high-value" users.โ€ฆ

Calls grow for inquiry into UK data watchdog after MoD leak

25 November 2025 at 04:44

ICO accused of backing off oversight as fallout from Afghan blunder widens

Civil society groups are urging MPs to launch a parliamentary inquiry into the Information Commissioner's Office (ICO), accusing the UK data watchdog of abandoning its enforcement duties after it declined to investigate a Ministry of Defence data leak linked to dozens of deaths.โ€ฆ

FCC guts post-Salt Typhoon telco rules despite ongoing espionage risk

24 November 2025 at 08:14

Months after China-linked spies burrowed into US networks, regulator tears up its own response

The Federal Communications Commission (FCC) has scrapped a set of telecom cybersecurity rules introduced after the Salt Typhoon espionage campaign, reversing course on measures designed to stop state-backed snoops from slipping back into America's networks.โ€ฆ

โŒ
โŒ