Latest Cybersecurity News and Articles


560,000 People Impacted Across Four Healthcare Data Breaches

10 March 2025
Several healthcare organizations in different US states have disclosed data breaches affecting 100,000-200,000 individuals.  The post 560,000 People Impacted Across Four Healthcare Data Breaches appeared first on SecurityWeek.

⚡ THN Weekly Recap: New Attacks, Old Tricks, Bigger Impact

10 March 2025
Cyber threats today don't just evolve—they mutate rapidly, testing the resilience of everything from global financial systems to critical infrastructure. As cybersecurity confronts new battlegrounds—ranging from nation-state espionage and ransomware to manipulated AI chatbots—the landscape becomes increasingly complex, prompting vital questions: How secure are our cloud environments? Can our

CyberFirst Girls triumph in national cyber competition at iconic Jodrell Bank

10 March 2025
Teams from across the UK have been crowned CyberFirst Girls Competition champions.

Typosquatted packages delivering malware to Linux and macOS systems

10 March 2025
Research has identified a typosquatting campaign delivering malware to Linux and macOS systems. 

Industry Moves for the week of March 10, 2025 - SecurityWeek

10 March 2025
Explore industry moves and significant changes in the industry for the week of March 10, 2025. Stay updated with the latest industry trends and shifts.

SilentCryptoMiner Infects 2,000 Russian Users via Fake VPN and DPI Bypass Tools

10 March 2025
A new mass malware campaign is infecting users with a cryptocurrency miner named SilentCryptoMiner by masquerading it as a tool designed to circumvent internet blocks and restrictions around online services. Russian cybersecurity company Kaspersky said the activity is part of a larger trend where cybercriminals are increasingly leveraging Windows Packet Divert (WPD) tools to distribute malware

Feds Link $150M Cyberheist to 2022 LastPass Hacks

07 March 2025
In September 2023, KrebsOnSecurity published findings from security researchers who concluded that a series of six-figure cyberheists across dozens of victims resulted from thieves cracking master passwords stolen from the password manager service LastPass in 2022. In a court filing this week, U.S. federal agents investigating a spectacular $150 million cryptocurrency heist said they had reached the same conclusion.

US Seize Garantex in Cryptocurrency Money Laundering Bust

07 March 2025
Two men linked to Garantex are accused of facilitating multi-billion dollar money laundering and sanctions violations. The post US Seize Garantex in Cryptocurrency Money Laundering Bust appeared first on SecurityWeek.

In Other News: EntrySign AMD Flaw, Massive Attack Targets ISPs, ENISA Report

07 March 2025
Noteworthy stories that might have slipped under the radar: Google discloses AMD CPU flaw named EntrySign, ISPs in the US and China targeted in massive attack, ENISA report on NIS2 Directive. The post In Other News: EntrySign AMD Flaw, Massive Attack Targets ISPs, ENISA Report appeared first on SecurityWeek.

Cybersecurity experts discuss the YouTube CEO deepfake

07 March 2025
Cybersecurity experts share their insights on the YouTube CEO deepfake scam.

FIN7, FIN8, and Others Use Ragnar Loader for Persistent Access and Ransomware Operations

07 March 2025
Threat hunters have shed light on a "sophisticated and evolving malware toolkit" called Ragnar Loader that's used by various cybercrime and ransomware groups like Ragnar Locker (aka Monstrous Mantis), FIN7, FIN8, and Ruthless Mantis (ex-REvil). "Ragnar Loader plays a key role in keeping access to compromised systems, helping attackers stay in networks for long-term operations," Swiss

FBI: Fake Ransomware Attack Claims Sent to US Executives via Snail Mail 

07 March 2025
An extortion group has been sending physical mail to corporate executives, threatening to leak their data unless a ransom is paid. The post FBI: Fake Ransomware Attack Claims Sent to US Executives via Snail Mail  appeared first on SecurityWeek.

Microsoft Says One Million Devices Impacted by Infostealer Campaign 

07 March 2025
Microsoft has uncovered a malvertising campaign that redirected users to information stealers hosted on GitHub. The post Microsoft Says One Million Devices Impacted by Infostealer Campaign  appeared first on SecurityWeek.

Cyberattack Disrupts National Presto Industries Operations

07 March 2025
National Presto Industries says a cyberattack has resulted in a system outage and operational disruptions. The post Cyberattack Disrupts National Presto Industries Operations appeared first on SecurityWeek.

Microsoft Warns of Malvertising Campaign Infecting Over 1 Million Devices Worldwide

07 March 2025
Microsoft has disclosed details of a large-scale malvertising campaign that's estimated to have impacted over one million devices globally as part of what it said is an opportunistic attack designed to steal sensitive information. The tech giant, which detected the activity in early December 2024, is tracking it under the broader umbrella Storm-0408, a moniker used for a set of threat actors

A Chinese espionage group is targeting the IT supply chain

07 March 2025
Silk Typhoon, Chinese espionage group, is targeting common IT solutions. 

18,000 Organizations Impacted by NTT Com Data Breach

07 March 2025
NTT Communications Corporation has disclosed a data breach impacting the information of nearly 18,000 customer organizations. The post 18,000 Organizations Impacted by NTT Com Data Breach appeared first on SecurityWeek.

Many Schools Report Data Breach After Retirement Services Firm Hit by Ransomware

07 March 2025
Dozens of schools and thousands of individuals are impacted by a data breach resulting from a ransomware attack on Carruth Compliance Consulting. The post Many Schools Report Data Breach After Retirement Services Firm Hit by Ransomware appeared first on SecurityWeek.

Webinar: Learn How ASPM Transforms Application Security from Reactive to Proactive

07 March 2025
Are you tired of dealing with outdated security tools that never seem to give you the full picture? You’re not alone. Many organizations struggle with piecing together scattered information, leaving your apps vulnerable to modern threats. That’s why we’re excited to introduce a smarter, unified approach: Application Security Posture Management (ASPM). ASPM brings together the best of both

New AI Protection from Google Cloud Tackles AI Risks, Threats, and Compliance

07 March 2025
Google Cloud’s AI Protection helps discover AI inventory, secure AI assets, and manage threats with detect, investigate, and respond capabilities. The post New AI Protection from Google Cloud Tackles AI Risks, Threats, and Compliance appeared first on SecurityWeek.