Microsoft warns fake CAPTCHA attacks are tricking Windows users into running malware
Microsoft warns that attackers are using fake CAPTCHA prompts to persuade Windows users to execute malicious commands or software.
Cyber incidents, service outages and reported data exposure, explained through their concrete effects on users and organizations.
Ordered by reported development. Each article describes what was known at the time shown.
Microsoft warns that attackers are using fake CAPTCHA prompts to persuade Windows users to execute malicious commands or software.
Kaspersky reports new tactics by the Mirage Kitten group involving fraudulent recruitment through LinkedIn.
Denmark has accused the Kremlin of espionage targeting Danish defense companies.
The report discusses the implications of phishing involving artificial intelligence. No specific attack, breach, victim or operational disruption is identified.
Ukraine's military intelligence agency claimed that a targeted disinformation campaign was launched to discredit it. The supplied report provides no details on the campaign's scale or perpetrators.
Implats is responding to a cyber breach, though the supplied headline does not state its scope, affected systems or operational impact. The company is also discussing AI in its response or broader operations.
A hacker moved Bitcoin stolen in a Coldcard-related incident through the THORChain cross-chain network. The supplied report does not state the amount stolen or broader disruption.
Ukraine’s PrivatBank says it experienced attacks by Russian hackers using Ukrainian IP addresses.
A dispute involving Anthropic's model distillation efforts has turned toward the dark web, while concerns about China have grown. The supplied report does not establish a confirmed cyberattack or specific operational impact.
Hackers reportedly retained access to Romania's ANCPI systems for 86 hours before the intrusion was detected.
A report warns that 19 browser extensions steal users' money and access credentials and should be deleted immediately. The supplied headline does not quantify affected users or losses.
The United States, Romania, Bulgaria and Hungary reportedly neutralized the Sality botnet, which was linked to Russia. The FBI praised the long-running international partnership.
A phishing scam impersonating Booking is reportedly becoming more convincing, using personal booking information in WhatsApp messages.
A report describes a July cyberattack involving OpenAI bots and argues that it should prompt concern. The supplied information does not specify the victims, damage or scope.
A cybersecurity report says attackers are exploiting vulnerabilities in the education industry’s highly exposed networks.
A newly reported Android virus uses advertisements on Instagram and Facebook to compromise mobile phones. The supplied information does not specify its scale or affected users.
A report highlights LinkedIn as a possible gateway for cyber threats.
A malware campaign reportedly targets Windows systems by disabling Windows Update and Microsoft Defender. The supplied information does not specify the number of victims or affected organizations.
The Bank of Ghana warns the public against the “Daily Wealth Guide” cryptocurrency scam. The supplied report does not indicate the scale of losses or a wider system disruption.
A new direct communication channel reportedly links industry and Cyber Command. Further details about its scope or implementation are unavailable.
The supplied report says Iranian hackers are using fraudulent LinkedIn job postings to lure software developers. The scale and confirmed victims are not specified.
A report warns that cyberattacks could target Hungary’s critical infrastructure, including utility networks. It describes a risk assessment rather than a confirmed attack.
A report says attackers targeting Berlin are selling sensitive data on the dark web. The supplied information does not specify the affected organization, data volume or operational impact.
The report says automated ransomware attacks can cost as little as $4 per target while creating million-dollar risks for enterprises. It describes a significant cyber threat trend rather than a confirmed attack on a named organization.
A report says cyberattacks are increasing among African small and medium-sized businesses, with 82% of META firms affected.
A report says North Rhine-Westphalia Interior Minister Herbert Reul urged a change in approach after attacks on power networks, describing the infrastructure as extremely sensitive. The supplied information does not specify the attacks or their operational impact.
Romanian police participated in dismantling one of the world's oldest malware networks, with the United States highlighting the contribution of Romania's organized-crime directorate. The supplied information does not specify the network's size or disruption achieved.
Iranian-linked cyberattacks are reportedly targeting US energy and telecommunications infrastructure. The available information does not specify the scale or confirmed operational impact.
Utility executives and cybersecurity experts warned Pennsylvania lawmakers about increasing cyber threats affecting utilities. No specific attack or disruption was reported.
OpenAI is reportedly working on an automated shutdown feature for its AI systems following a breach involving Hugging Face.
Researchers or authorities have identified Chrome and Edge extensions that steal cryptocurrency and passwords.
University of New Mexico researchers published a study in Nature Communications examining intruder network attacks. The supplied report does not indicate a newly disclosed active attack or disruption.
A report describes a new scam in which a fraudster can make a payment despite the victim retaining their card. Technical details and the scale of exposure are not provided.
Data reportedly obtained in a hack of the U.S. Bureau of Alcohol, Tobacco, Firearms and Explosives has been released to the public.
Colombian President Gustavo Petro said Mexico is in danger from bot interference in its elections.
A Danish report says PET has uncovered concrete plans for Russian sabotage in Denmark.
Buckingham Palace is reportedly being required to make a major cybersecurity upgrade amid a stated Russian cyber threat.
Hackers linked to Iran are targeting US water and energy infrastructure, prompting heightened vigilance in Washington.
Federal authorities in San Diego seized domains reportedly used in efforts to disrupt hacking activity linked to China.
Yubico is expanding its OpenAI partnership to Australia as a hardware-backed passkey mandate begins for a trusted-access cyber program.