Wednesday , September 30 2026

Cyber Attack

“Zombie Card” attack revels expired Visa card may be used for contactless payments

card

Security experts have shown that expired credit cards can still be used. A study from the University of Massachusetts Amherst, shared at the 35th USENIX Security Symposium, presents a new NFC relay attack called “Zombie Card” that can make expired Visa contactless cards work again, letting them make real purchases …

Read More »

Operation CameraSwarm
A single hacker compromise 1400+ Dahua camera worldwide 

Operation CameraSwarm

Operation CameraSwarm compromised 14,500+ Dahua IP cameras mostly in Ukraine and Russia. The operation lasted for at least 35 days from June 17 to July 22. It took control of devices by finding weak spots, guessing passwords, and using offline recovery codes from serial numbers for cloud-connected cameras. Researchers at …

Read More »

Cl0p Ransomware Listed 40+ Victims of PTC Windchill Campaign

The Cl0p ransomware group has listed over 40 organizations that they say they targeted in a recent attack. This attack used a weakness in PTC’s product lifecycle management (PLM) tools, Windchill and FlexPLM. The vulnerability and its exploitation The exploitation of the vulnerability, tracked as CVE-2026-12569, was discovered in June …

Read More »

PATCHCORD Backdoor Targets Telecom and CII In South Asia

PATCHCORD

A previously undocumented backdoor called PATCHCORD actively target telecom and critical information infrastructure (CII) in South Asia. According to Acronis Threat Research Unit (TRU), the backdoor is a C/C++ code that gets into systems using specific tricks, like fake VPN installers pretending to be Afghan Telecom (AFTEL) and telecom management …

Read More »

CVE-2026-20349, CVE-2026-68820
Cisco and Windows patched zero days exploited in attack

Cisco

Cisco warns customers that it has fixed a serious security hole in firewalls using Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) software. The flaw tracked as CVE-2026-20349, is related to the processing of HTTP requests. An attacker can make a device restart and make a …

Read More »

Gunra Ransomware Leverage Fortinet VPN Flaws to Evade MFA Obtaining Enterprise Data

gunra ransomware

A joint warning from the FBI, CISA, the Department of Defense Cyber Crime Center, the NSA, the U.S. Secret Service, and South Korea’s National Police Agency has revealed a serious new attack from the Gunra ransomware group. They are using known Fortinet VPN flaws to get past multi-factor authentication and …

Read More »

ExfilSquad releases info of over 100,000 UK police officers, staff

police

A cyberattack on the U.K.’s Police National Legal Database (PNLD) has put the contact information of over 100,000 police officers and other justice workers at risk. The hack was detected on Sunday, July 26, and the ExfilSquad group calimed they took 135,000 contact records. PNLD is an online legal resource service …

Read More »

Massive customer data from India’s Bank of Baroda surfaced online

Bank of Baroda

India’s leading state-owned lender Bank of Baroda acknowledged Monday a security incident after reports that approximately 1 terabyte of customer and internal data surfaced online. The incident stemmed from the “compromise of an employee’s email account, resulting in unauthorized access to certain data,” Bank of Baroda said in a post …

Read More »