News · 158 articles

News

Latest cybersecurity news — hacks, breaches, vulnerabilities, regulatory moves

News

Kudankulam Nuclear Power Plant Cyberattack 2019 — DTrack Malware in India’s Critical Infrastructure: Anatomy of the Lazarus-Linked Intrusion

In October 2019, malware later attributed to North Korea's Lazarus Group was found in administrative networks at Kudankulam Nuclear Power Plant in…

Apr 19, 2026 · 13 min read
News

3CX Supply Chain Attack 2023 — How North Korea Compromised a VoIP Vendor to Compromise 600,000 Customers: First Confirmed Double Supply-Chain Attack

A backdoored installer of 3CX VoIP software — itself compromised because 3CX engineers ran a backdoored Trading Technologies financial-trading app on company…

Apr 18, 2026 · 13 min read
News

LastPass Breach Chain 2022 — How a Compromised Engineer’s Plex Server Cost Customers Their Encrypted Vaults: Anatomy & Lessons

Two breaches separated by months. The second compromised a senior engineer's home Plex server, then his keylogger-captured master password — exfiltrating LastPass's…

Apr 17, 2026 · 13 min read
News

Microsoft Storm-0558 Attack 2023 — How a Stolen MSA Signing Key Gave China Read-Access to US State Department Email: Anatomy & Lessons

Chinese state-aligned threat actor Storm-0558 obtained a Microsoft consumer signing key, used a flaw in Microsoft's token validation to forge enterprise tokens,…

Apr 16, 2026 · 13 min read
News

Okta Support System Breach 2023 — How Cookies Stolen from Customer-Service Sessions Led to BeyondTrust, Cloudflare, 1Password Compromises

A stolen Okta employee credential gave attackers access to Okta's customer support system. From there they harvested HAR files containing valid session…

Apr 15, 2026 · 11 min read
News

23andMe Genetic Data Breach 2023 — How Credential Stuffing Plus DNA Relatives Feature Exposed 6.9 Million Profiles: Anatomy & Privacy Implications

Credential stuffing succeeded on 14,000 23andMe accounts — but the DNA Relatives feature meant attackers harvested the genetic data of approximately 6.9…

Apr 14, 2026 · 13 min read
News

MediBank Australia Ransomware 2022 — How a Refusal to Pay Set the Australian Precedent: 9.7M Records Leaked, $1.7B Cost, BlogXX Sanctions

Australian health insurer MediBank refused to pay attackers' ransom demand for 9.7M customer records; attackers progressively leaked the data including extracted medical…

Apr 13, 2026 · 13 min read
News

Microsoft Midnight Blizzard 2024 — How APT29 Used Password Spraying to Read Microsoft Senior Executive Email: Anatomy of the Russian SVR Intrusion

Russian SVR-aligned APT29 used password spraying on a legacy non-MFA Microsoft test tenant, then OAuth-abused a malicious application to read months of…

Apr 12, 2026 · 14 min read
News

Heartbleed (CVE-2014-0160) — How a 64KB Memory Leak in OpenSSL Compromised 17% of the Internet: The Vulnerability That Changed TLS Forever

A simple bounds-check error in OpenSSL's heartbeat extension allowed unauthenticated attackers to read 64KB of server memory at a time — exposing…

Apr 11, 2026 · 13 min read
News

Log4Shell (CVE-2021-44228) — How a JNDI Lookup Feature in Log4j Became “the Bug of the Century”: Anatomy of the Worst Java Vulnerability

A logging library feature for JNDI lookups, intended to make config lookups easier, became the worst Java vulnerability in history when attackers…

Apr 10, 2026 · 13 min read