Authorities have confirmed TfL cyberattack arrests, charging two teenagers linked to the Scattered Spider hacking group. The suspects allegedly breached Transport for London (TfL) systems in 2024, compromising customer records and raising new concerns about cyberattacks on public infrastructure. Who Was Arrested Police named Thalha Jubair, 19, from East London, and Owen Flowers, 18, from…
Researchers have uncovered iOS malicious deepfakes that target jailbroken iPhones. The technique hijacks live video feeds and replaces them with AI-generated footage. This method poses serious risks for Apple users and banks, enabling identity theft and large-scale fraud. How iOS Malicious Deepfakes Work The attack requires a jailbroken iPhone running iOS 15 or later. Jailbreaking…
SystemBC proxy malware is infecting virtual private servers (VPS) worldwide. The malware transforms compromised systems into large proxy networks that cybercriminals use to conceal their operations. With stability, scale, and simple infection methods, it poses a growing threat to global security. How SystemBC Proxy Malware Works SystemBC first appeared in 2019 and quickly became popular…
BMW ransomware attack by Everest has raised serious concerns in the automotive sector. The group claims it stole sensitive audit files and is now pressuring the luxury automaker with strict deadlines. The incident underscores how high-profile manufacturers are becoming prime ransomware targets. What Everest claims to have stolen Everest, a well-known ransomware group, added BMW…
AI GPU rentals are reshaping the security landscape by giving attackers unprecedented power. Once considered secure, bcrypt password hashing now struggles to withstand the brute-force potential of modern rented GPUs. The rise of affordable cloud computing has turned what was once an expensive endeavor into a serious threat for both organizations and individuals. How AI…
Liverpool City Council has disclosed repeated cyberattacks from a Russian-state-linked group over the past two years. These attacks aimed to disrupt municipal systems and services using large botnets. They demonstrate increasing cyberwarfare risk in UK local government. Who is behind the attacks The attacks come from Noname057(16), a pro-Russian hacktivist group. They typically target Western…
Android ad fraud has been uncovered on a massive scale. Security researchers found 224 apps involved in a scheme that tricked advertisers while affecting millions of users. These apps, downloaded more than 38 million times, secretly generated fake ad views and impressions. How the SlopAds scheme worked The campaign, known as SlopAds, hid its malicious…
Scattered Spider cyberattacks have returned with renewed focus, this time targeting financial services. Despite announcing they had ceased operations, the group remains active. Their latest activity shows how adaptable and persistent they are, especially when exploiting human and technical weaknesses in high-value sectors. How the attacks unfold The group continues to use social engineering as…
The vibe coding contaminated content problem highlights growing risks for developers. AI code assistants can unknowingly pull poisoned data from external sources. When this happens, generated code may contain malware, hidden backdoors, or serious vulnerabilities. Developers who trust AI too much risk damaging their projects and exposing sensitive data. How Contaminated Content Slips In AI…
The BreachForums founder resentenced case has ended with a three-year prison term for Conor Brian Fitzpatrick. Known online as “Pompompurin,” Fitzpatrick created one of the largest hacker forums for stolen data. His resentencing follows an appeal that overturned his earlier, much lighter sentence. Background of the Case Fitzpatrick originally pleaded guilty in 2023. Charges included…