St. Paul cyberattack shut down city online systems, prompting officials to refuse ransom and launch a comprehensive recovery—Operation Secure St. Paul. The city brought in the National Guard and the FBI to secure its digital infrastructure. The Attack and Immediate Response The cyberattack started on July 25, when suspicious activity disrupted payment systems, public Wi‑Fi, and internal city…
The Pacific HealthWorks ransomware incident has escalated into a serious health data breach. The Everest gang has published sensitive files from at least 50 partner medical practices—including data from both Pacific HealthWorks and its sister company, La Perouse—exposing a wide swath of patient and operational records. Scope of the Data Exposure Everest posted hundreds of sample…
The UK’s data watchdog has advised retailers to avoid sharing shoplifter photos in public areas, citing GDPR concerns. With theft on the rise, many shopkeepers feel compelled to act—but the Information Commissioner’s Office (ICO) emphasizes that privacy rules still apply. ICO Guidance on Privacy and Proportion The ICO warns that posting suspected shoplifter images in…
A New South Wales court has introduced a highly unusual ankle monitor selfie rule for bail supervision. This comes after the sudden collapse of the private company that provided electronic ankle monitoring services across the state, forcing officials to create new oversight methods almost overnight. From Ankle Monitor to Hourly Photos For months, murder suspect…
Attackers are actively exploiting a newly uncovered WinRAR zero-day flaw to deliver multiple malware strains. The attacks, linked to the Russia-aligned RomCom group, used specially crafted RAR archives to plant malicious files in sensitive system locations. How the Exploit Worked The vulnerability, tracked as CVE-2025-8088, is a path traversal flaw in WinRAR for Windows. Attackers…
The Microsoft Exchange servers unprotected situation has taken a critical turn. Nearly 29,000 servers remain unpatched even as CISA’s emergency deadline fast approaches. Widespread Risk Before Deadline As of early Monday, public scans detected approximately 29,000 unpatched Microsoft Exchange servers exposed to the internet. These servers are vulnerable to a severe flaw—CVE‑2025‑53786—that could allow attackers…
The U.S. Federal Judiciary cyberattack has triggered urgent security measures across the nation’s court system. Officials confirmed the attack targeted critical digital infrastructure, prompting a rapid review of security protocols and the deployment of enhanced protective systems. Attack Disrupts Court Operations The cyberattack disrupted several internal systems used to manage case filings, court schedules, and…
The Emerson Guevara TikTok threats case has sparked serious concern about the role of social media in spreading violent rhetoric. U.S. federal prosecutors have charged Guevara with making explicit threats against public officials through a series of TikTok videos. Violent Messages Posted Online According to court filings, Guevara used TikTok to post multiple videos targeting…
Researchers uncovered a large-scale RubyGems credential-stealing campaign targeting developers with malicious packages disguised as useful automation tools. Attackers achieved over 275,000 downloads since the campaign began in March 2023, exposing thousands of users to serious data theft risks. Sixty Malicious Gems Discovered Security researchers identified sixty malicious RubyGems packages uploaded by threat actors using aliases…
Google Finance AI upgrades are rolling out in the U.S., turning the traditional financial dashboard into a dynamic AI-powered platform. Users can now ask detailed finance questions, explore technical charts, and stay updated with real-time market news—all while toggling between the new and classic interfaces. Conversational AI Answers Your Financial Research With these Google Finance…