Spain to vet power plants’ cybersecurity for ‘great blackout’ cause

The Spanish government is gathering information on the cybersecurity measures of the country’s small electricity generating companies to assess whether malicious actors exploited them to take down the country’s electricity grid, according to Financial Times. The Spanish government has yet to determine the specific causes of the blackout that left the country without power for […]

Continue reading


VMware Tools Vulnerability Let Attackers Tamper Files to Trigger Malicious Operations

A moderate-severity vulnerability in VMware Tools could allow attackers with limited privileges to manipulate files and trigger insecure operations within virtual machines. The vulnerability, tracked as CVE-2025-22247, affects both Windows and Linux versions of VMware Tools 11.x.x and 12.x.x, with macOS versions confirmed to be unaffected. Since there are currently no workarounds and exploitation might compromise the […]

Continue reading


Russian Hackers Using ClickFix Fake CAPTCHA to Deploy New LOSTKEYS Malware

The Russia-linked threat actor known as COLDRIVER has been observed distributing a new malware called LOSTKEYS as part of an espionage-focused campaign using ClickFix-like social engineering lures. “LOSTKEYS is capable of stealing files from a hard-coded list of extensions and directories, along with sending system information and running processes to the attacker,” the Google Threat Intelligence Group (GTIG) said. The […]

Continue reading


UK Government Warns Retail Attacks Must Serve as a “Wake-up Call”

The recent wave of cyber-attacks on UK retailers should serve as a “wake-up call” for businesses across the country, a senior government minister has warned. Chancellor of the Duchy of Lancaster Pat McFadden said that the recent incidents impacting household names like Marks & Spencer (M&S), the Co-op and Harrods, demonstrated that cybersecurity is not a luxury but an […]

Continue reading


JPMorgan Chase CISO warns software industry on supply chain security

The senior information security executive at JPMorgan Chase is urging the software industry to prioritize secure development practices over speed to market, warning that increasing supply-chain disruptions are weakening the global economic system. Patrick Opet, global CISO at JPMorgan Chase, warned in an open letter on Friday that global companies are dependent on interconnected technologies and warned […]

Continue reading


Why Our Industry Must Shift From Prevention to Cyber Resilience

COMMENTARY: Over the past year, cyber operations by foreign adversaries, including the People’s Republic of China (PRC), have moved away from traditional espionage and data theft to developing strategic plans that could infiltrate and cripple critical U.S. infrastructure. Moreover, the strategic exploitation of vulnerabilities by foreign adversaries at critical U.S. infrastructure locations could be remotely […]

Continue reading


Marks & Spencer Confirms Cybersecurity Incident Amid Ongoing Disruption

Retail giant Marks & Spencer has confirmed a cybersecurity incident, as customers report ongoing disruption and outages. The British-headquartered retailer on Tuesday told customers in a notice, which TechCrunch has seen, that the company has been “managing a cyber incident” over the last few days. The notice, signed by chief executive Stuart Machin, said it […]

Continue reading


The Impact of AI Regulations on Cybersecurity Strategy

Artificial Intelligence (AI) is transforming the cybersecurity landscape, offering both powerful tools for defense and new avenues for attack. As organizations increasingly adopt AI-driven solutions to detect threats, automate responses, and analyze vast amounts of data, governments and regulatory bodies are racing to create frameworks that ensure the responsible use of these technologies. AI regulations […]

Continue reading


Whistleblower org says DOGE may have caused ‘significant cyber breach’ at US labor watchdog

WASHINGTON, April 15 (Reuters) – A whistleblower complaint says that billionaire Elon Musk’s team of technologists may have been responsible for a “significant cybersecurity breach,” likely of sensitive case files, at America’s federal labor watchdog. The complaint, opens new tab, addressed to Republican Senate Intelligence Committee Chairman Tom Cotton and his Democratic counterpart Mark Warner […]

Continue reading