Thursday , September 10 2026

Cyber Attack

(CVE-2025-25256)
Fortinet Warns About FortiSIEM Vuln With In-the-Wild Exploit Code

FortiSIEM

Fortinet warns customers of a critical security flaw in FortiSIEM which it said there exists an exploit in the wild. CVE-2025-25256 is a critical vulnerability with a CVSS score of 9.8 out of 10. “An improper neutralization of special elements used in an OS command (‘OS Command Injection’) vulnerability [CWE-78] …

Read More »

Biometric Clone: ₹5.58 crore loss, 251 accounts in 17 districts

₹5.58 crore

A sophisticated cyber fraud has stolen over ₹5.58 crore from many bank accounts, highlighting serious concerns about digital payment security. This scam involved cloning biometric data and affected 251 accounts in 17 districts. Authorities are working hard to contain the situation and catch those responsible. The Modus Operandi: A Digital …

Read More »

Google Confirms Data Breach: Notifying Affected Users

Data Breach

Google confirmed that a recent data breach in one of its Salesforce CRM systems exposed information about potential Google Ads customers. “We’re writing to let you know about an event that affected a limited set of data in one of Google’s corporate Salesforce instances used to communicate with prospective Ads …

Read More »

28,000+ Microsoft Exchange Servers Exposed Online for CVE-2025-53786

Microsoft

More than 28,000 unpatched Microsoft Exchange servers are publicly accessible and vulnerable to the critical security flaw CVE-2025-53786, as reported by The Shadowserver Foundation on August 7, 2025. CISA’s Emergency Directive 25-02 on August 7 requires federal agencies to fix a critical vulnerability in Microsoft Exchange hybrid setups by 9:00 …

Read More »

Cyberattack hits France’s third-largest mobile operator, affecting millions

mobile operator

Bouygues Telecom, a major telecom company in France and the third-largest mobile operator, announced on Wednesday that it suffered a cyberattack affecting millions of customers’ data. The nature of the attack was not disclosed, and the company said the “situation was resolved as quickly as possible” by its technical teams, …

Read More »

DataCenter Exposes 38GB of PII Including Emails and Phone Numbers

38 GB

Cybersecurity researcher Jeremiah Fowler discovered an unencrypted database with 38 GB of CSV and PDF files and reported it to Website Planet. The exposed data included hundreds of thousands of names, addresses, phone numbers, emails, and other sensitive information. The publicly exposed database was not password-protected or encrypted. It contained …

Read More »

CVE-2025-54948
Trend Micro alerts of Apex One zero-day exploited in attacks

Apex One

Trend Micro warned customers to quickly secure their systems due to a remote code execution vulnerability in its Apex One endpoint security platform that is currently being exploited. Apex One is an endpoint security platform designed to automatically detect and respond to threats, including malicious tools, malware, and vulnerabilities. The …

Read More »

Cloud intrusions surged 136% H1 of 2025

Cloud intrusions

Cloud intrusions increased significantly in the first half of 2025, rising 136% compared to all of 2024, as reported by CrowdStrike’s 2025 Threat Hunting Report. Researchers noted that the data shows more attackers are learning to target cloud environments by exploiting misconfigurations, maintaining access, and moving laterally. The explosion in …

Read More »