Global Intelligence Search
Query the entire database for vulnerabilities, news articles, open-source security tools, and known threat actors.
WhatsApp adds stronger two-step verification, multiple passkeys
While the instant messaging service already allowed users to add passkeys for secure logins via fingerprint, Face ID, or screen lock code, it now lets them create separate ones for each platform. "More than a billion...
Hackers breached over 270 Zimbra servers in ongoing attacks
Threat actors have already compromised over 270 Zimbra instances in remote code execution attacks targeting a high-severity Zimbra Collaboration Suite (ZCS) vulnerability. The ZCS email and collaboration suite is used...
Hackers infecting Android car systems to build proxy botnet
Image: Dofun / Photo Mosh Hackers infecting Android car systems to build proxy botnet A new malware is being used to infect Android-based car systems, turning the devices into part of a botnet, researchers warned in a...
Indian man who fled US arrested on charges he helped scammers siphon $7.5 million from the elderly
Image: Tima Miroshnichenko / Pexels Indian man who fled US arrested on charges he helped scammers siphon $7.5 million from the elderly A Jersey City resident is facing charges for his alleged role as a money mule for...
The Vulnerability Gap: Why Discovery Is Outrunning Repair
COMMENTARY For decades, finding a serious vulnerability in widely used open source software was specialized work. It took a skilled researcher weeks, sometimes months, to trace a flaw and responsibly bring it to a...
ToxicPanda Banking Trojan Matures Into Enterprise Threat
An Android banking Trojan has resurfaced with a new variant that demonstrates a significant evolution toward full device compromise and persistent access, putting at risk not only mobile users but also the enterprise...
Tricky 'SynkLoader' Multitool May Herald Ransomware
A sophisticated malware family has emerged onto the cyberthreat scene that might foreshadow ransomware attacks that are more successful than usual. Marcus Hutchins and his colleagues at Expel that discovered it named...
Bipartisan Senate bill aims to prepare energy sector for Q-Day
A new bipartisan Senate bill would require federal regulators to prepare the U.S. electric grid for cybersecurity threats from quantum computers and create a technical sandbox to study how the technology could impact...
Treasury sanctions alleged Iranian hackers as part of ‘economic D-Day’
As part of its “economic D-Day” against Iran, the Treasury Department designated four Iranians for sanctions Monday stemming from their alleged role in hacking critical infrastructure targets and waging cybertheft...
Anthropic Expands Mythos 5 Access to More Defenders, Unveils $35M Open Source Fund
Anthropic is broadening access to the cybersecurity capabilities of its advanced AI models through a mix of partner integrations, an updated Claude Security offering, a new open source funding program, and plans to...
TikTok Reaches $400 Million Settlement With US Justice Department Over Children’s Privacy
TikTok has reached a $400 million settlement with the U.S. Department of Justice, ending a 2024 lawsuit alleging the company violated federal children’s privacy laws. The DOJ said Friday that TikTok will pay $300...
Iran-Linked Hackers Shut Down UK Power Plant for Four Days
Iran-linked hackers reportedly managed to shut down a British power plant for four days in July 2026. The story was broken by the Telegraph newspaper on August 22, 2026. That it took so long to become public knowledge...