France’s data protection authority (CNIL) has fined Hôpital privé de la Loire €500,000 ($580,000) for not properly protecting the data of patients and their families. The French agency says that security problems caused a data leak in the summer of 2025. This exposed sensitive information about 524,867 patients and 202,246 other …
Read More »
Crack 85 Accounts and Steal 2,500+ Records
8-Agent AI Framework Used to Compromise Gov’t Entities in Asia
A cyberattack using open-source AI tools almost ran on its own. It affected government systems in Asia, compromised into 85 employee accounts, and took over 2,500 personal records, as per a study from Dream. The campaign shows how AI agents can work together to carry out big chunks of a …
Read More »After BDJobs, Directorate of Secondary and Higher Education 390k data surfaced online
A group of hackers named “Madarax” claims they have stolen and are offering to sell the personal information of about six million job seekers in Bangladesh. They claim to have taken this data from Bdjobs, the top online job website in the country. The claim appeared on the dark web …
Read More »US Bank investigates LockBit’s Data Breach Claims
US Bank is looking into LockBit’s claims about a breach and stolen data. The ransomware group says they will share the supposed stolen files on September 3 if a secret ransom is not paid. Lee Henderson, US Bank vice president of public affairs, confirmed that the company is aware of the …
Read More »T-Mobile Cuts Cables to Remove Chiness Salt Typhoon Hackers from Network
T-Mobile’s cybersecurity team reportedly physically cut a network cable connecting compromised infrastructure to the outside world. According to Bloomberg, the move followed months of investigation into activity linked to Salt Typhoon, the China-associated espionage group accused of infiltrating telecommunications and internet providers worldwide. The event shows how serious the campaign is …
Read More »“Zombie Card” attack revels expired Visa card may be used for contactless payments
Security experts have shown that expired credit cards can still be used. A study from the University of Massachusetts Amherst, shared at the 35th USENIX Security Symposium, presents a new NFC relay attack called “Zombie Card” that can make expired Visa contactless cards work again, letting them make real purchases …
Read More »
Operation CameraSwarm
A single hacker compromise 1400+ Dahua camera worldwide
Operation CameraSwarm compromised 14,500+ Dahua IP cameras mostly in Ukraine and Russia. The operation lasted for at least 35 days from June 17 to July 22. It took control of devices by finding weak spots, guessing passwords, and using offline recovery codes from serial numbers for cloud-connected cameras. Researchers at …
Read More »Cl0p Ransomware Listed 40+ Victims of PTC Windchill Campaign
The Cl0p ransomware group has listed over 40 organizations that they say they targeted in a recent attack. This attack used a weakness in PTC’s product lifecycle management (PLM) tools, Windchill and FlexPLM. The vulnerability and its exploitation The exploitation of the vulnerability, tracked as CVE-2026-12569, was discovered in June …
Read More »PATCHCORD Backdoor Targets Telecom and CII In South Asia
A previously undocumented backdoor called PATCHCORD actively target telecom and critical information infrastructure (CII) in South Asia. According to Acronis Threat Research Unit (TRU), the backdoor is a C/C++ code that gets into systems using specific tricks, like fake VPN installers pretending to be Afghan Telecom (AFTEL) and telecom management …
Read More »
CVE-2026-20349, CVE-2026-68820
Cisco and Windows patched zero days exploited in attack
Cisco warns customers that it has fixed a serious security hole in firewalls using Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) software. The flaw tracked as CVE-2026-20349, is related to the processing of HTTP requests. An attacker can make a device restart and make a …
Read More »
InfoSecBulletin Cybersecurity for mankind