Monroe University Confirms 2024 Data Breach Impacting Over 320,000 Individuals

Monroe University has confirmed that a major data breach in December 2024 affected 320,973 individuals. The incident occurred when unauthorized attackers gained access to the university’s internal systems. The intrusion lasted for nearly two weeks, from December 9 to December 23, 2024, during which files were copied from the network. After discovering the cyberattack, Monroe … Continued

PLUGGYAPE Malware Campaign Targets Ukrainian Defense Forces via Signal and WhatsApp

In late 2025, Ukrainian cybersecurity authorities uncovered a new malware campaign that targeted members of Ukraine’s defense forces. The attackers used trusted messaging platforms like Signal and WhatsApp to spread the infection. This made the attack more dangerous because victims did not expect threats from these secure apps. The campaign was active between October and … Continued

New Malware Campaign Delivers Remcos RAT via Multi-Stage Windows Attack

A new malware campaign has been identified by cybersecurity researchers that targets Windows systems using a multi-stage attack method. The attackers are spreading a dangerous remote access malware known as Remcos RAT. This campaign uses advanced techniques to avoid detection and gain full control over infected computers. Security experts confirm that the threat is active … Continued

CISA Reports Active Exploitation of High-Severity Gogs Vulnerability

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical Gogs vulnerability to its Known Exploited Vulnerabilities (KEV) catalog, confirming it is being actively exploited in the wild. The flaw, CVE-2025-8110 (CVSS 8.7), impacts Gogs and arises from a path traversal issue in the repository file editor. Improper handling of symbolic links in … Continued

BreachForums Database Leak Exposes Threat Actors Operating in the Shadows

BreachForums, a well-known underground hacking forum, has suffered a major database leak that exposed information linked to its own users. The incident has surprised many in the cybersecurity community. A platform known for trading stolen data has now become a victim itself. Researchers say this leak changes the usual balance between attackers and defenders. BreachForums … Continued

Researchers Identify Service Providers Powering Industrial-Scale Pig Butchering Scams

Cybersecurity researchers have uncovered a major reason behind the rapid growth of pig butchering scams worldwide. Their findings show that these scams are no longer run by small, isolated groups. Instead, they are supported by professional service providers that supply ready-made tools to criminals. This has turned online fraud into a large-scale business operation. Pig … Continued

Researchers Expose NodeCordRAT Malware Hidden in Bitcoin-Themed npm Packages

Security researchers have uncovered a new malware campaign targeting developers through the npm ecosystem. The threat involves a previously undocumented remote access trojan called NodeCordRAT, hidden inside Bitcoin-themed packages. These packages appeared legitimate and useful, making them easy for developers to trust. In reality, they were designed to silently infect systems after installation. The discovery … Continued

CISA Warns of Active Exploitation in Microsoft Office and HPE OneView Vulnerabilities

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a serious warning about two software vulnerabilities that are currently being exploited by attackers. These flaws affect Microsoft Office and HPE OneView, two widely used enterprise technologies. Because there is confirmed evidence of active attacks, CISA has added both issues to its Known Exploited Vulnerabilities … Continued

Newsletter line