Microsoft announced that Windows 11 23H2 will reach its end of support for Home and Pro editions on November 11, 2025. After this date, affected systems will no longer receive monthly security or quality updates. The company confirmed that users still running this version should upgrade as soon as possible to maintain protection and system…
Cybersecurity researchers have uncovered an active Gladinet zero-day exploit targeting CentreStack and Triofox file-sharing software. The vulnerability allows unauthenticated attackers to read sensitive system files and execute remote code. The flaw, tracked as CVE-2025-11371, poses a critical threat to organizations using Gladinet’s enterprise file-access products. Attackers began exploiting the issue in late September 2025, prompting…
Google is rolling out a new Chrome update that automatically revokes notification permissions for inactive websites. The change aims to reduce spam alerts and improve browser security. Many users enable notifications and later stop visiting those sites. Over time, this creates alert fatigue as old sites continue sending irrelevant updates. With the new update, Chrome…
Apple updated its security rewards and now offers up to $2,000,000 for zero-click remote code execution exploits. The company funds larger prizes for the most dangerous exploit classes. The move aims to steer top researchers toward responsible disclosure. Bigger base payouts and stacked bonuses Apple raised base payouts across several exploit types. It lists one-click…
Poland has accused Russia of orchestrating a wave of cyberattacks targeting its critical infrastructure. Authorities report a sharp increase in attempted breaches, claiming Russian intelligence agencies are behind a sustained campaign of digital aggression. According to Poland’s national cybersecurity center, the country now faces between 2,000 and 4,000 attacks daily, with up to 1,000 posing…
LockBit, Qilin, and DragonForce have officially joined forces, forming a new ransomware cartel that could reshape the global cybercrime landscape. The alliance was first announced on DragonForce’s leak site, marking a rare collaboration between rival ransomware groups. The new LockBit ransomware cartel aims to pool resources, increase extortion power, and share technical infrastructure. Security analysts…
DC Comics has officially declared war on artificial intelligence in art and storytelling. During New York Comic Con, Chief Creative Officer Jim Lee stated that the publisher will never allow AI-generated content under his leadership. “We’re not doing AI art. Not now, not ever,” Lee said, reaffirming DC’s commitment to authentic creativity. The statement comes…
A new report reveals that Texas police used surveillance technology to track a woman who self-managed an abortion. The investigation, conducted by Johnson County authorities, involved license plate readers and large-scale data searches. The Electronic Frontier Foundation (EFF) uncovered evidence showing that police labeled the case as an abortion search, not a welfare check. The…
SonicWall confirmed that attackers stole every firewall backup stored in its MySonicWall cloud. The company first claimed fewer than 5% of backups were affected but later admitted the breach reached all customers using the cloud backup feature. Full Scope of the Attack Hackers breached the MySonicWall portal and stole every firewall backup file in the…
The Oracle zero-day vulnerability (CVE-2025-61882) was exploited by the Cl0p ransomware group months before Oracle released a patch. The attackers used stealthy, fileless Java malware to infiltrate Oracle’s E-Business Suite systems and launch a large-scale extortion campaign. Security researchers say the operation went undetected for months, exposing organizations to serious risks. How Cl0p Exploited the…