Russian Hackers Using ClickFix Fake CAPTCHA to Deploy New LOSTKEYS Malware

The Russia-linked threat actor known as COLDRIVER has been observed distributing a new malware called LOSTKEYS as part of an espionage-focused campaign using ClickFix-like social engineering lures. “LOSTKEYS is capable of stealing files from a hard-coded list of extensions and directories, along with sending system information and running processes to the attacker,” the Google Threat Intelligence Group (GTIG) said. The […]

Continue reading


UK Government Warns Retail Attacks Must Serve as a “Wake-up Call”

The recent wave of cyber-attacks on UK retailers should serve as a “wake-up call” for businesses across the country, a senior government minister has warned. Chancellor of the Duchy of Lancaster Pat McFadden said that the recent incidents impacting household names like Marks & Spencer (M&S), the Co-op and Harrods, demonstrated that cybersecurity is not a luxury but an […]

Continue reading


JPMorgan Chase CISO warns software industry on supply chain security

The senior information security executive at JPMorgan Chase is urging the software industry to prioritize secure development practices over speed to market, warning that increasing supply-chain disruptions are weakening the global economic system. Patrick Opet, global CISO at JPMorgan Chase, warned in an open letter on Friday that global companies are dependent on interconnected technologies and warned […]

Continue reading


Why Our Industry Must Shift From Prevention to Cyber Resilience

COMMENTARY: Over the past year, cyber operations by foreign adversaries, including the People’s Republic of China (PRC), have moved away from traditional espionage and data theft to developing strategic plans that could infiltrate and cripple critical U.S. infrastructure. Moreover, the strategic exploitation of vulnerabilities by foreign adversaries at critical U.S. infrastructure locations could be remotely […]

Continue reading


Marks & Spencer Confirms Cybersecurity Incident Amid Ongoing Disruption

Retail giant Marks & Spencer has confirmed a cybersecurity incident, as customers report ongoing disruption and outages. The British-headquartered retailer on Tuesday told customers in a notice, which TechCrunch has seen, that the company has been “managing a cyber incident” over the last few days. The notice, signed by chief executive Stuart Machin, said it […]

Continue reading


The Impact of AI Regulations on Cybersecurity Strategy

Artificial Intelligence (AI) is transforming the cybersecurity landscape, offering both powerful tools for defense and new avenues for attack. As organizations increasingly adopt AI-driven solutions to detect threats, automate responses, and analyze vast amounts of data, governments and regulatory bodies are racing to create frameworks that ensure the responsible use of these technologies. AI regulations […]

Continue reading


Whistleblower org says DOGE may have caused ‘significant cyber breach’ at US labor watchdog

WASHINGTON, April 15 (Reuters) – A whistleblower complaint says that billionaire Elon Musk’s team of technologists may have been responsible for a “significant cybersecurity breach,” likely of sensitive case files, at America’s federal labor watchdog. The complaint, opens new tab, addressed to Republican Senate Intelligence Committee Chairman Tom Cotton and his Democratic counterpart Mark Warner […]

Continue reading


Chinese Hackers Exploit Ivanti VPN Vulnerabilities to Infiltrate Organizations

A China-linked advanced persistent threat (APT) group has exploited critical vulnerabilities in Ivanti Connect Secure VPN appliances to infiltrate organizations across 12 countries and 20 industries, cybersecurity firm TeamT5 revealed in a report shared with Cyber Security News. The campaign, active since late March 2025, leverages the CVE-2025-0282 and CVE-2025-22457 vulnerabilities both stack-based buffer overflow flaws with maximum CVSS […]

Continue reading


Poor cybersecurity practices cost SMBs £3.4 billion a year – and 28% risk going out of business after a single attack

Small businesses across the UK are losing £3.4 billion a year thanks to inadequate cybersecurity measures, according to new research. Cyber attacks against SMBs have surged in recent years, analysis from Vodafone Business shows, with more than a third experiencing a cyber incident last year alone. Meanwhile, 28% had between one and five attempted attacks, and 6% […]

Continue reading