NGate Malware Exploits HandyPay App to Steal Card Data via NFC

A new version of the NGate Android malware has recently been discovered, and it is more dangerous than earlier ones. This time, attackers are using a modified version of a real app called HandyPay. The goal of this malware is to steal users’ card details along with their PINs. Since HandyPay is originally a legitimate … Continued

Microsoft Releases Emergency Updates After Windows Server Failures and Reboot Issues

Microsoft recently released emergency updates to fix serious issues affecting Windows Server systems after its April 2026 security updates. These updates were released outside the normal schedule after multiple users and system administrators reported unexpected problems. The issue mainly impacted organizations that depend on Windows Server for handling networks and authentication. It quickly became a … Continued

NIST Overhauls CVE Analysis Strategy After 263% Surge in Vulnerability Submissions, Limits Enrichment to High-Risk Threats 

The National Institute of Standards and Technology (NIST) has made an important change in how it manages cybersecurity vulnerabilities. This decision comes after a huge increase in the number of reported vulnerabilities in recent years. Because of this growth, NIST will now limit the detailed analysis, also called enrichment, that it adds to CVEs. Earlier, … Continued

Operation PowerOFF Shuts Down 53 DDoS Domains, Exposes 3 Million Criminal Accounts 

A major global cybersecurity operation called Operation PowerOFF has recently taken down a large network of illegal DDoS-for-hire services. This operation was carried out by law enforcement agencies from multiple countries working together. The main goal was to stop cybercriminals who were offering attack services online. These services were widely used to disrupt websites and … Continued

Targeted Campaign Exploits Obsidian Plugins to Deliver Remote Access Trojan

A new cybersecurity threat has been discovered where attackers are misusing the note-taking app Obsidian to spread a malware known as PHANTOMPULSE RAT. This campaign mainly targets people working in the finance and cryptocurrency sectors, making it a serious concern. These users often deal with sensitive data, which increases the impact of such attacks. The … Continued

Salesforce Misconfiguration Leads to 13.5M Record Leak at McGraw Hill

A recent data breach at McGraw Hill has affected nearly 13.5 million accounts, making it a major cybersecurity incident in the education sector. McGraw Hill is a well-known global education company used by students, teachers, and institutions in many places. News reports say the exposed data was later posted online after a ransom demand was … Continued

OpenAI Introduces GPT-5.4-Cyber to Strengthen Modern Cybersecurity Defense

In April 2026, OpenAI introduced a new cybersecurity-focused AI model called GPT-5.4-Cyber. This launch came soon after Anthropic released its own cybersecurity model named Mythos. This clearly shows that competition in AI-based cybersecurity is growing very fast. Many companies are now focusing on building smarter tools to fight cyber threats. The main aim behind this … Continued

Newsletter line