Software

Novocure data breach affects more than 1,400 cancer patients

Healthtech company Novocure says the data of an undisclosed number of employees and more than 1,400 U.S. cancer patients has been exposed in a mid-August cyberattack. Novocure is a global oncology company with more than 1,300 employees and operations in North America, Europe, the Middle East, and Asia, known for inventing and commercializing Tumor Treating […]

Novocure data breach affects more than 1,400 cancer patients Read More »

Hackers push malicious Virtualizor update in BGP hijacking attack

Hackers delivered malicious updates to the Virtualizor VPS management software after hijacking BGP routing for its update infrastructure and redirecting update requests to malicious servers. Virtualizor is a legacy web control panel from Softaculous that hosting providers use to create, sell, and manage virtual private servers (VPS). An urgent notice from the vendor warns that

Hackers push malicious Virtualizor update in BGP hijacking attack Read More »

Critical Langflow flaw exploited to steal OpenAI and AWS keys

Threat actors are exploiting an unauthenticated remote code execution vulnerability (CVE-2026-0768) in Langflow, an open-source framework for building AI applications, to steal credentials, tokens, and keys. The security issue received a critical severity rating and resides in the code validator of Langflow’s custom component editor. Threat intelligence company VulnCheck detected the activity on its honeypots

Critical Langflow flaw exploited to steal OpenAI and AWS keys Read More »

Aesto Health says data breach affects over 9.5 million patients

Aesto LLC, operating as Aesto Health, disclosed that a data breach discovered recently affects more than 9.5 million individuals. The private technology company provides software-as-a-service solutions that help healthcare organizations migrate, archive, and access patient data when replacing electronic health record systems or acquiring medical practices. The company first informed the public of the attack

Aesto Health says data breach affects over 9.5 million patients Read More »

Hackers abuse Faronics Deploy admin tool to install ScreenConnect

Phishing actors are abusing the legitimate Faronics Deploy endpoint-management platform to gain remote administrative control over victim computers and install the ScreenConnect remote support software. In activity observed between July 21 and August 20, Faronics-themed lures reached more than 457 endpoints via emails disguised as invoices, tax documents, or other business files. Faronics Deploy is

Hackers abuse Faronics Deploy admin tool to install ScreenConnect Read More »

Linux manages to avoid the age verification apocalypse, but SteamOS isn’t in the clear yet

California’s Digital Age Assurance Act is due to take effect at the very start of 2027, bringing in sweeping age-verification checks by system providers. As part of it, operating systems will have to do age checks on users to lock down certain functions, which had led some Linux developers to go full crisis mode in

Linux manages to avoid the age verification apocalypse, but SteamOS isn’t in the clear yet Read More »

Nearly 22,000 Microsoft Exchange servers vulnerable to hijack attacks

Nearly 22,000 Microsoft Exchange servers exposed online remain unpatched against a high-severity authentication bypass vulnerability that allows attackers to hijack all user mailboxes. Tracked as CVE-2026-62911 and reported by DEVCORE Research Team’s Orange Tsai, this security flaw affects Exchange Server 2016, Exchange Server 2019, and Exchange Server Subscription Edition (SE) software. Threat actors with basic

Nearly 22,000 Microsoft Exchange servers vulnerable to hijack attacks Read More »

Five Venezuelans plead guilty to ATM jackpotting attacks in US

Five Venezuelan nationals pleaded guilty to attempting to empty automated teller machines (ATMs) using malware in a series of ATM jackpotting attacks. 27-year-old Luis Alberto Velasquez-Artigas, 29-year-oldRoyder Adrian Figuera-Perez, 27-year-old Javier Mejia, Jr, 33-year-old Gabriel Alexjandro Corales-Garcia, 33, and 26-year-old Italo Lizandro Corrales-Carrillo have all pleaded guilty to one count of conspiracy to commit bank

Five Venezuelans plead guilty to ATM jackpotting attacks in US Read More »

Recently patched PaperCut zero-days used in data theft attacks

Two security vulnerabilities in the PaperCut NG and MF print management software, patched last week after being exploited as zero-days, are now being abused in data theft attacks. According to PaperCut Software, the software is used by 100 million users across more than 70,000 organizations, including large companies, state agencies, and educational institutions. Tracked as

Recently patched PaperCut zero-days used in data theft attacks Read More »

File servers are here to stay. Here’s how to manage them securely

From soaring cloud costs to risk ownership, data sovereignty and legacy compatibility, there are many reasons why organizations continue to rely on file servers for inexpensive and abundant local storage. Yet no matter where your data lives, access governance is essential to keeping it in the right hands. Even firmly into the cloud era, countless

File servers are here to stay. Here’s how to manage them securely Read More »