Security Week

Subscribe to Security Week feed Security Week
Cybersecurity News, Insights & Analysis
Updated: 21 min 22 sec ago

Misconfigured HMIs Expose US Water Systems to Anyone with a Browser

Thu, 06/05/2025 - 3:34pm

Censys researchers follow some clues and find hundreds of control-room dashboards for US water utilities on the public internet.

The post Misconfigured HMIs Expose US Water Systems to Anyone with a Browser appeared first on SecurityWeek.

Categories: SecurityWeek

Backdoored Open Source Malware Repositories Target Novice Cybercriminals

Thu, 06/05/2025 - 9:31am

A threat actor has been creating backdoored open source malware repositories to target novice cybercriminals and game cheaters.

The post Backdoored Open Source Malware Repositories Target Novice Cybercriminals appeared first on SecurityWeek.

Categories: SecurityWeek

Controversial Firms Cellebrite and Corellium Announce $200 Million Acquisition Deal

Thu, 06/05/2025 - 8:35am

Cellebrite and Corellium, whose names have been mentioned in spyware stories, are joining forces to provide advanced investigative solutions.

The post Controversial Firms Cellebrite and Corellium Announce $200 Million Acquisition Deal appeared first on SecurityWeek.

Categories: SecurityWeek

Men Who Hacked Law Enforcement Database for Doxing Sentenced to Prison

Thu, 06/05/2025 - 7:56am

Sagar Steven Singh and Nicholas Ceraolo, members of the Vile group, get prison sentences for identity theft and hacking.

The post Men Who Hacked Law Enforcement Database for Doxing Sentenced to Prison appeared first on SecurityWeek.

Categories: SecurityWeek

ClickFix Attack Exploits Fake Cloudflare Turnstile to Deliver Malware

Thu, 06/05/2025 - 7:46am

Researchers have discovered and analyzed a ClickFix attack that uses a fake Cloudflare ‘humanness’ check.

The post ClickFix Attack Exploits Fake Cloudflare Turnstile to Deliver Malware appeared first on SecurityWeek.

Categories: SecurityWeek

FBI Aware of 900 Organizations Hit by Play Ransomware

Thu, 06/05/2025 - 7:16am

Play ransomware attacks have hit roughly 900 organizations and recently involved the exploitation of SimpleHelp vulnerabilities.

The post FBI Aware of 900 Organizations Hit by Play Ransomware appeared first on SecurityWeek.

Categories: SecurityWeek

Carding Marketplace BidenCash Shut Down by Authorities 

Thu, 06/05/2025 - 6:17am

Authorities seized 145 domains associated with BidenCash, a marketplace for stolen credit cards and personal information.

The post Carding Marketplace BidenCash Shut Down by Authorities  appeared first on SecurityWeek.

Categories: SecurityWeek

Lee Enterprises Says 40,000 Hit by Ransomware-Caused Data Breach

Thu, 06/05/2025 - 5:49am

Lee Enterprises has completed its investigation into the recent ransomware attack and confirmed that a data breach occurred.

The post Lee Enterprises Says 40,000 Hit by Ransomware-Caused Data Breach appeared first on SecurityWeek.

Categories: SecurityWeek

Ransomware Gang Leaks Alleged Kettering Health Data

Thu, 06/05/2025 - 5:21am

The Interlock ransomware group has leaked data allegedly stolen from Kettering Health in a recent cyberattack.

The post Ransomware Gang Leaks Alleged Kettering Health Data appeared first on SecurityWeek.

Categories: SecurityWeek

China Issues Warrants for Alleged Taiwanese Hackers and Bans a Business for Pro-Independence Links

Thu, 06/05/2025 - 4:38am

China issued warrants for 20 Taiwanese people it said carried out hacking missions in the Chinese mainland on behalf of the island’s ruling party.

The post China Issues Warrants for Alleged Taiwanese Hackers and Bans a Business for Pro-Independence Links appeared first on SecurityWeek.

Categories: SecurityWeek

Vodafone Germany Fined $51 Million Over Privacy, Security Failures

Thu, 06/05/2025 - 2:49am

Germany fined Vodafone $51 million for failing to protect user data from partners and unauthorized third-parties.

The post Vodafone Germany Fined $51 Million Over Privacy, Security Failures appeared first on SecurityWeek.

Categories: SecurityWeek

Google Warns of Vishing, Extortion Campaign Targeting Salesforce Customers

Wed, 06/04/2025 - 10:00am

A financially motivated threat actor employing vishing to compromise Salesforce customers, and extort them.

The post Google Warns of Vishing, Extortion Campaign Targeting Salesforce Customers appeared first on SecurityWeek.

Categories: SecurityWeek

Going Into the Deep End: Social Engineering and the AI Flood

Wed, 06/04/2025 - 9:05am

AI is transforming the cybersecurity landscape—empowering attackers with powerful new tools while offering defenders a chance to fight back. But without stronger awareness and strategy, organizations risk falling behind.

The post Going Into the Deep End: Social Engineering and the AI Flood appeared first on SecurityWeek.

Categories: SecurityWeek

Compyl Raises $12 Million for GRC Platform

Wed, 06/04/2025 - 7:38am

Compyl has raised $12 million in a Series A funding round that will be invested in go-to-market initiatives, hirings, and GRC platform expansion.

The post Compyl Raises $12 Million for GRC Platform appeared first on SecurityWeek.

Categories: SecurityWeek

Ramnit Malware Infections Spike in OT as Evidence Suggests ICS Shift

Wed, 06/04/2025 - 7:04am

Industrial giant Honeywell has published its 2025 Cybersecurity Threat Report with information on the latest trends.

The post Ramnit Malware Infections Spike in OT as Evidence Suggests ICS Shift appeared first on SecurityWeek.

Categories: SecurityWeek

Webinar Today: Redefining Vulnerability Management With Exposure Validation

Wed, 06/04/2025 - 7:00am

Learn why your security controls matter more than theoretical risk scores and how exposure validation helps slash massive patch lists down to the few vulnerabilities that truly demand action.

The post Webinar Today: Redefining Vulnerability Management With Exposure Validation appeared first on SecurityWeek.

Categories: SecurityWeek

ThreatSpike Raises $14 Million in Series A Funding

Wed, 06/04/2025 - 6:49am

End-to-end cybersecurity provider ThreatSpike has raised $14 million in a Series A funding round led by Expedition Growth Capital, after being bootstrapped for 14 years. Founded in 2011, the London-based firm provides real-time detection and response and penetration testing capabilities in a single, unified platform that delivers enterprise-grade cybersecurity to mid-sized businesses. According to ThreatSpike, […]

The post ThreatSpike Raises $14 Million in Series A Funding appeared first on SecurityWeek.

Categories: SecurityWeek

Victoria’s Secret Says It Will Postpone Earnings Report After Recent Security Breach

Wed, 06/04/2025 - 6:18am

Victoria’s Secret is postponing the release of its quarterly earnings following a security breach that disrupted the popular lingerie brand’s corporate operations.

The post Victoria’s Secret Says It Will Postpone Earnings Report After Recent Security Breach appeared first on SecurityWeek.

Categories: SecurityWeek

Thousands Hit by The North Face Credential Stuffing Attack

Wed, 06/04/2025 - 5:53am

Threat actors steal personal information from thenorthface.com user accounts in a recent credential stuffing campaign.

The post Thousands Hit by The North Face Credential Stuffing Attack appeared first on SecurityWeek.

Categories: SecurityWeek

35,000 Solar Power Systems Exposed to Internet

Wed, 06/04/2025 - 4:03am

Researchers from Forescout have analyzed the prevalence of internet-exposed solar power devices and shared a list of the top vendors and devices.

The post 35,000 Solar Power Systems Exposed to Internet appeared first on SecurityWeek.

Categories: SecurityWeek

Pages