⚡ Weekly Recap: WSUS Exploited, LockBit 5.0 Returns, Telegram Backdoor, F5 Breach Widens

Security, trust, and stability — once the pillars of our digital world — are now the tools attackers turn against us. From stolen accounts to fake job offers, cybercriminals keep finding new ways to exploit both system flaws and human behavior.
Each new breach proves a harsh truth: in cybersecurity, feeling safe can be far more dangerous than being alert.
Here’s how that false sense of security

The Hacker News – ​Read More

New Firefox Extensions Required to Disclose Data Collection Practices

All new extensions will be required to declare their data collection practices in their manifest file using a specific key.

The post New Firefox Extensions Required to Disclose Data Collection Practices appeared first on SecurityWeek.

SecurityWeek – ​Read More

X to Retire Twitter.com, Users Must Re-Register Security Keys by Nov 10

X (formerly Twitter) is asking users with security keys to re-enroll by Nov 10 as it moves logins from twitter.com to x.com for continued 2FA access.

Hackread – Cybersecurity News, Data Breaches, Tech, AI, Crypto and More – ​Read More

Year-Old WordPress Plugin Flaws Exploited to Hack Websites

Roughly 9 million exploit attempts were observed this month as mass exploitation of the critical vulnerabilities recommenced.

The post Year-Old WordPress Plugin Flaws Exploited to Hack Websites appeared first on SecurityWeek.

SecurityWeek – ​Read More

Hundreds of People With ‘Top Secret’ Clearance Exposed by House Democrats’ Website

A database containing information on people who applied for jobs with Democrats in the US House of Representatives was left accessible on the open web.

Security Latest – ​Read More

Ransomware Payments Dropped in Q3 2025: Analysis

Coveware has attributed the drop to large enterprises increasingly refusing to pay up and smaller amounts paid by mid-market firms.

The post Ransomware Payments Dropped in Q3 2025: Analysis appeared first on SecurityWeek.

SecurityWeek – ​Read More

Chrome Zero-Day Exploitation Linked to Hacking Team Spyware

The threat actor behind Operation ForumTroll used the same toolset typically employed in Dante spyware attacks.

The post Chrome Zero-Day Exploitation Linked to Hacking Team Spyware appeared first on SecurityWeek.

SecurityWeek – ​Read More

Chatbots Are Pushing Sanctioned Russian Propaganda

ChatGPT, Gemini, DeepSeek, and Grok are serving users propaganda from Russian-backed media when asked about the invasion of Ukraine, new research finds.

Security Latest – ​Read More

I wore the Meta Ray-Bans’ successor for a month, and my buying verdict is two-fold

The second-generation smart glasses are better in every way, but so is its closest competitor.

Latest news – ​Read More

The best AI chatbots of 2025: I tested ChatGPT, Copilot, and others to find the top tools now

I pushed eight free AI chatbots to their limits, from writing stories to generating images, to build ZDNET’s chatbot-by-chatbot guide to help you decide which is right for you.

Latest news – ​Read More