Russia detects first SuperCard malware attacks skimming bank data via NFC

Malware detected previously in Italy has popped up in Russia, researchers said. Attackers use it to access devices’ near field communications (NFC) and steal payment card data.

The Record from Recorded Future News – ​Read More

Operation Endgame: Do Takedowns and Arrests Matter?

Cybercrime response needs more aggressive actions from those seeking to protect victims and pursue criminals.

darkreading – ​Read More

UK watchdog fines 23andMe over 2023 data breach

The ICO said over 150,000 U.K. residents had data stolen in the breach.

Security News | TechCrunch – ​Read More

Hackers Exploit Critical Langflow Flaw to Unleash Flodrix Botnet

A vulnerability in the popular Python-based tool for building AI agents and workflows is under active exploitation, allowing for full system compromise, DDoS attacks, and potential loss or theft of sensitive data

darkreading – ​Read More

US Insurance Industry Warned of Scattered Spider Attacks

Google is warning insurance companies that Scattered Spider appears to have shifted its focus from the retail sector. 

The post US Insurance Industry Warned of Scattered Spider Attacks appeared first on SecurityWeek.

SecurityWeek – ​Read More

Circumvent Raises $6 Million for Cloud Security Platform

Cloud security startup Circumvent has raised $6 million to develop a network of agents for autonomous prioritization and remediation.

The post Circumvent Raises $6 Million for Cloud Security Platform appeared first on SecurityWeek.

SecurityWeek – ​Read More

Pro-Israel hackers claim breach of Iranian bank amid military escalation

A group tracked as Predatory Sparrow said it was responsible for hacking Bank Sepah as the conflict between Israel and Iran intensified.

The Record from Recorded Future News – ​Read More

Zoomcar Data Breach Exposes Personal Info of 8.4 Million Users

Zoomcar confirms 2025 breach affecting 8.4M users, echoing its 2018 data leak. Personal info exposed, financial data safe, investigation ongoing.

Hackread – Latest Cybersecurity, Hacking News, Tech, AI & Crypto – ​Read More

New Flodrix Botnet Variant Exploits Langflow AI Server RCE Bug to Launch DDoS Attacks

Cybersecurity researchers have called attention to a new campaign that’s actively exploiting a recently disclosed critical security flaw in Langflow to deliver the Flodrix botnet malware.
“Attackers use the vulnerability to execute downloader scripts on compromised Langflow servers, which in turn fetch and install the Flodrix malware,” Trend Micro researchers Aliakbar Zahravi, Ahmed Mohamed

The Hacker News – ​Read More

Organizations Warned of Vulnerability Exploited Against Discontinued TP-Link Routers

CISA warns that a vulnerability impacting multiple discontinued TP-Link router models is exploited in the wild.

The post Organizations Warned of Vulnerability Exploited Against Discontinued TP-Link Routers appeared first on SecurityWeek.

SecurityWeek – ​Read More