Latest stories — Page 53

ScamBuster Turns Phishing Emails Into Intelligence by Pretending to Be the Victim
A French engineer built an AI system that replies to scam emails, plays along long enough to extract bank details and phone numbers, then hands the data to investigators.

From Prison to Cybersecurity Advocate: The Jesse McGraw Story
Once known online as GhostExodus, Jesse McGraw hacked hospital systems as a teenager, went to federal prison, and came out the other side trying to help defenders. His story is a rare look at what radicalises young hackers and what, sometimes, pulls them back.

Lidl Customers in Three Countries Warned After Supplier Breach Exposes Personal Data
The German discount chain says a file at an outside IT provider was raided, spilling names, phone numbers and dates of birth for online shoppers in Germany, Belgium and the Netherlands.

Varonis Launches Free Entra ID Training Game to Teach Cloud Identity Attacks
Breach at the Beach is a browser-based challenge that walks defenders through the kind of Microsoft Entra ID attacks Varonis researchers say they see in real customer environments.

Forg365: A $400-a-Month Kit That Hijacks Microsoft 365 Logins
A new subscription phishing service uses device codes, session theft and AI-written lures to break into corporate email accounts.

Five Londoners Charged Over Russian Coms, the Scam-Call Platform Behind 1.8 Million Fake Calls
The UK's National Crime Agency says the platform helped criminals impersonate banks and police, costing an estimated 170,000 victims tens of millions of pounds.

37 Cybersecurity Deals in One Month: What June 2026's M&A Surge Tells Us
From a $4 billion Accenture mega-deal to a $70 million automated-patching pickup, June was a busy month for security industry consolidation. Here is what moved and why it matters.

Attacker Uses AI-Written PowerShell Script to Map a Company's Network
Researchers say an unknown intruder ran a script that looks machine-generated to catalogue users, computers and domain controllers inside a Windows network.

The Two-Speed SOC: Why Autonomous AI and Analyst Copilots Need Different Guardrails
A design question inside a Fortune 50 security team points to a bigger governance gap for AI in the security operations centre.

Meta's Patent Bid: An AI That Listens All Day and Guesses Your Mood
A newly filed Meta patent describes software that would listen to a user's voice, infer their emotional state, and log it against time, location, and phone activity.

A Hidden Door in RabbitMQ Left Company Systems Wide Open for Two Years
A flaw in the popular messaging software handed anyone on the network a master key to company data. Patches are out. Use them now.

Two Security Flaws in RabbitMQ Could Let Attackers Steal Login Secrets and Take Over Corporate Messaging Systems
A widely used software tool that moves data between business applications has patched two vulnerabilities, one of which could hand criminals full control over the system without a password.

EU and UK Hit Russian Spy Hackers With Joint Sanctions
Brussels and London name GRU and FSB officers behind years of cyberattacks on European power grids, government networks and elections.

Ransomware group claims attack on Els for Autism Foundation
A criminal group called cmdorganization has listed the Florida-based autism charity on a dark-web extortion site. The foundation has not confirmed any incident, and the claim could not be independently verified.

Your dashboards are not your defence: why 'visibility' is not the same as surviving an attack
Security teams can monitor everything and still lose everything. A quietly influential argument making the rounds says the industry has confused watching a system with being able to keep it running, and the gap is getting harder to ignore.

EU Sanctions Russian Intelligence Officers Over Years-Long Cyber Spying and Sabotage Campaign
Brussels has placed travel bans and asset freezes on individuals tied to a Russian-linked network accused of spying on European governments and attacking critical infrastructure.

Russian FSB hackers are quietly hijacking routers at hospitals, power firms and banks, nine countries warn
A joint advisory from the US, UK, Australia and six allies names FSB Centre 16 as the group scanning the internet for routers with weak passwords and old Cisco flaws.

Hackers Are Breaking Into Websites Through Two Popular Joomla Add-Ons
Two widely used plugins for the Joomla website-building platform have critical security flaws that let criminals take full control of a site without needing a password. Patches exist, but attacks started before most site owners knew there was a problem.

A Phishing Crew Forgot to Lock Its Own Front Door
A single sloppy command in a shell history file handed French researchers the full toolkit behind three live Microsoft 365 phishing operations.

Half a Million Patients' Data Stolen From New Jersey Lab Company
A criminal group called WorldLeaks broke into Centers Laboratory's systems last August and walked off with records covering 542,377 people, including Social Security numbers and medical details.

AI Is Making Rich Organisations Even Safer. What Happens to Everyone Else?
A growing body of security leaders says artificial intelligence is deepening a divide that has existed for years between well-resourced organisations and those just trying to keep the lights on.