Ransomware activity is still very high in 2026, with attackers targeting various organizations, according to recent victim statistics. This year for the month of January, there have been 796 confirmed ransomware victims from 315 different groups, showing a fragmented but aggressive threat landscape targeting businesses globally. Top Ransomware Groups by Number …
Read More »Aisuru botnet hits record 31.4 Tbps DDoS attack breaks new world record
The Aisuru/Kimwolf botnet launched the largest known DDoS attack, reaching a peak of 31.4 terabits per second (Tbps). The massive attack known as “The Night Before Christmas” began on December 19, 2025, hitting Cloudflare’s infrastructure and customers with high-volume DDoS attacks. It featured record bandwidth Layer 4 attacks and HTTP …
Read More »
Cloudflare Report
Bangladesh Ranked #1 in Global DDoS Attack Traffic Source
Cloudflare’s Q4 2025 report shows that Bangladesh has become the largest source of DDoS attacks, moving up two spots from the previous quarter. The report indicates a trend of increased DDoS traffic originating from Asia and South America, primarily due to compromised infrastructure, not the location of the attackers. After …
Read More »Attackers Hijack Canadian Digital Services, Threatening Millions
Canadian citizens are increasingly targeted by phishing scams that prey on their use of digital services for taxes, travel, packages, and fines. CloudSek researchers found fraud networks imitating government websites like the CRA, Canada Post, Air Canada, and PayBC. These campaigns collect personal data and credentials on a large scale, …
Read More »US indicts 31 in major ATM malware heist draining bank funds
A federal grand jury in Nebraska has indicted 31 individuals for their involvement in a Ploutus malware scheme that resulted in the theft of millions from ATMs throughout the United States. This sophisticated “ATM jackpotting” operation is connected to the Tren de Aragua (TdA) gang, classified as a foreign terrorist …
Read More »WinRAR Vuln Exploited in the wild to Gain Control Over Windows System
A serious security flaw in WinRAR, a popular file compression tool for Windows, is being exploited by attackers to gain unauthorized access to systems. CVE-2025-8088 is a vulnerability that lets attackers insert harmful files into sensitive system folders unnoticed, giving them control over Windows computers. The security flaw was first …
Read More »149M Data Exposed across Facebook, Gmail, Outlook and others
Cybersecurity researcher Jeremiah Fowler discovered a data leak containing 149 million logins and passwords. The database was publicly accessible without password protection or encryption, holding 149,404,754 unique credentials totaling 96 GB. The leaked records contained usernames and passwords from victims worldwide, covering various online services and accounts. These included social …
Read More »Hacker breach 76 zero-days for $1,047,000
Pwn2Own Automotive 2026 concluded with security researchers earning $1,047,000 for exploiting 76 zero-day vulnerabilities from January 21 to January 23. The Pwn2Own Automotive hacking competition focused on car technologies and occurred this week in Tokyo, Japan, during the Automotive World conference. Hackers focused on fully updated in-vehicle infotainment systems, electric …
Read More »Fake PNB MetLife Payment Gateway Stealing Customer Details:Direct to UPI Payments
Hackers are targeting PNB MetLife insurance customers by using fake payment gateways to steal personal information and redirect victims to fraudulent UPI transactions. The scam takes advantage of PNB MetLife’s trusted image by creating fake mobile payment sites that look like real premium payment services. Malicious pages collect policy numbers …
Read More »Fortinet admins report patched FortiGate firewalls getting hacked
Fortinet customers are observing attackers exploiting a patch bypass for a previously fixed critical FortiGate authentication vulnerability (CVE-2025-59718) to hack patched firewalls. One affected admins said that Fortinet has allegedly confirmed that the latest FortiOS version (7.4.10) didn’t fully address this authentication bypass vulnerability, which should’ve been patched in early …
Read More »
InfoSecBulletin Cybersecurity for mankind