Cyber Security

Cyber Security
Cyber Security

Betterment Data Breach Exposes 1.4 million Customers Personal Details

betterment-data-breach-exposes-1.4-million-customers-personal-details

Betterment Data Breach Betterment has disclosed a social engineering–driven data breach that exposed personal information for approximately 1.4 million customer accounts, significantly expanding the fallout from a January 2026 security incident tied to fraudulent crypto scam messages. In early January 2026, Betterment, a leading automated investment and robo‑advisory platform, detected unauthorized access to systems used […]

Attackers Mimic RTO Challan Notifications to Deliver Android Malware

attackers-mimic-rto-challan-notifications-to-deliver-android-malware

A sophisticated Android malware campaign targeting Indian users has emerged, disguising itself as legitimate Regional Transport Office (RTO) challan notifications. The malicious applications are distributed outside the Google Play Store, primarily through WhatsApp and similar messaging platforms, exploiting user trust in government services. Threat actors send fake traffic violation alerts to victims, instructing them to […]

Beware of Weaponized Voicemail Messages that Allows Hackers to Remote Access to Your System

beware-of-weaponized-voicemail-messages-that-allows-hackers-to-remote-access-to-your-system

Cybercriminals are increasingly shifting tactics toward social engineering to bypass traditional security defenses, catching many users off guard. A sophisticated new campaign dubbed “Voicemail Trap” explicitly targets users with fake voicemail notifications designed to look like routine business communications. These messages often appear to come from trusted financial entities and use convincing German-language lures to […]

SystemBC Botnet Hijacked 10,000 Devices Worldwide to Use for DDoS Attacks

systembc-botnet-hijacked-10,000-devices-worldwide-to-use-for-ddos-attacks

The SystemBC malware family, a persistent threat first documented in 2019, has evolved into a massive botnet infrastructure controlling over 10,000 hijacked devices globally. Functioning primarily as a SOCKS5 proxy and a backdoor, this malware enables threat actors to mask their malicious traffic and maintain long-term access to compromised networks. By converting infected systems into […]

Chrome Vulnerabilities Let Attackers Execute Arbitrary Code and Crash System

chrome-vulnerabilities-let-attackers-execute-arbitrary-code-and-crash-system

Chrome Vulnerabilities Arbitrary Code Google has released a critical security update for the Chrome Stable channel, addressing two high-severity vulnerabilities that expose users to potential arbitrary code execution (ACE) and denial-of-service (DoS) attacks. The update pushes the browser version to 144.0.7559.132/.133 for Windows and macOS, and 144.0.7559.132 for Linux. The technology giant confirmed that the […]

GlassWorm Infiltrated VSX Extensions with More than 22,000 Downloads to Attack Developers

glassworm-infiltrated-vsx-extensions-with-more-than-22,000-downloads-to-attack-developers

GlassWorm has emerged as a serious threat to developers using the Open VSX Registry, where popular VSX extensions were silently turned into delivery vehicles for malware. Threat actors compromised a trusted publisher account and pushed poisoned updates that looked like routine releases but actually carried a staged loader. These extensions, which had more than 22,000 […]

Stronger Incident Prevention Takes Just One CISO Decision

stronger-incident-prevention-takes-just-one-ciso-decision

There is a comforting illusion in cybersecurity leadership: when things get noisy, you add more people. More analysts. More shifts. More headcount. It feels decisive. It looks responsible. It even photographs well for internal reports.  But SOC inefficiency is rarely a staffing problem. It is a signal problem.  When More People Don’t Mean Better Security  Across industries, security […]

Malicious App on The Google Play with 50K+ Downloads Deploy Anatsa Banking Malware

malicious-app-on-the-google-play-with-50k+-downloads-deploy-anatsa-banking-malware

A dangerous banking malware called Anatsa has been discovered spreading through the Google Play Store, reaching more than fifty thousand downloads before detection. The malicious application was cleverly hidden as a document reader, making it appear harmless to unsuspecting users searching for legitimate file management tools. This discovery highlights how cybercriminals continue to exploit official […]

DynoWiper Data-Wiping Malware Attacking Energy Companies to Destroy Data

dynowiper-data-wiping-malware-attacking-energy-companies-to-destroy-data

A dangerous new data-wiping malware known as DynoWiper has emerged, targeting energy companies in Poland with destructive attacks designed to permanently erase critical data. The malware surfaced in December 2025 when security researchers detected its deployment at a Polish energy firm. Unlike typical ransomware that encrypts files for monetary gain, DynoWiper operates with a single […]

New Punishing Owl Hacker Group Targeting Networks of Russian Government Security Agency

new-punishing-owl-hacker-group-targeting-networks-of-russian-government-security-agency

A previously unknown hacktivist group called Punishing Owl has emerged with sophisticated cyberattacks targeting Russian government security agencies. The group first surfaced on December 12, 2025, when it announced the successful breach of a Russian government security agency’s network. The attackers published stolen internal documents on a data leak site and duplicated the files on […]