Microsoft pushes fix for Windows 11 update 0x80240069 errors
Microsoft has fixed a known issue preventing Windows 11 24H2 feature updates from being delivered via Windows Server Update Services (WSUS) after installing the April 2025 security updates.
Luna Moth extortion hackers pose as IT help desks to breach US firms
The data-theft extortion group known as Luna Moth, aka Silent Ransom Group, has ramped up callback phishing campaigns in attacks on legal and financial institutions in the United States.
New "Bring Your Own Installer" EDR bypass used in ransomware attack
A new "Bring Your Own Installer" EDR bypass technique is exploited in attacks to bypass SentinelOne's tamper protection feature, allowing threat actors to disable endpoint detection and response (EDR) agents to install the Babuk ransomware.
Darcula PhaaS steals 884,000 credit cards via phishing texts
The Darcula phishing-as-a-service (PhaaS) platform stole 884,000 credit cards from 13 million clicks on malicious links sent via text messages to targets worldwide.
Unofficial Signal app used by Trump officials investigates hack
TeleMessage, an Israeli company that sells an unofficial Signal message archiving tool used by some U.S. government officials, has suspended all services after reportedly being hacked.
Microsoft finds default Kubernetes Helm charts can expose data
Microsoft warns about the security risks posed by default configurations in Kubernetes deployments, particularly those using out-of-the-box Helm charts, which could publicly expose sensitive data.
Federal prosecutors indict alleged head of Black Kingdom ransomware | CyberScoop
A man believed to be living in Yemen is accused of developing the ransomware and infecting about 1,500 computer systems in the U.S. and elsewhere between March 2021 and June 2023.
INTRODUCING: LastWatchdog strategic LinkedIN reels – insights from the ground floor at RSAC 2025
Every year at RSAC, the cybersecurity conversation swells with new terms, emerging threats, and fresh takes on familiar problems. What exactly is 'agentic AI?' At RSAC 2025, the volume knob turned to AI — its potential, its peril, and its increasingly complex role in enterprise defense. But behind the keynote gloss, what often resonates most
Darcula PhaaS steals 884,000 credit cards via SMS phishing texts
The Darcula phishing-as-a-service (PhaaS) platform stole 884,000 credit cards from 13 million clicks on malicious links sent via text messages to targets worldwide.
Myanmar militia leader sanctioned by US over cyber scam connections
The U.S. government sanctioned the Karen National Army, a militia group, and Saw Chit Thu, its leader, for their purported connections to the cyber fraud industry in Myanmar.
Microsoft partners with Global Anti-Scam Alliance to fight cybercrime
Microsoft announces that it will be joining GASA as a Foundation Member. Read about how Microsoft and the other members of GASA hope to stem losses from cyber scams.
L'administration Trump utilise une version modifiée de l'application Signal… déjà piratée
Le gouvernement américain a fait appel à la société israélienne TeleMessage pour utiliser une version détournée de l'application Signal, qui...-Cybersécurité
Another Move in the Deepfake Creation/Detection Arms Race - Schneier on Security
Deepfakes are now mimicking heartbeats In a nutshell Recent research reveals that high-quality deepfakes unintentionally retain the heartbeat patterns from their source videos, undermining traditional detection methods that relied on detecting subtle skin color changes linked to heartbeats. The assumption that deepfakes lack physiological signals, such as heart rate, is no longer valid. This challenges many existing detection tools, which may need significant redesigns to keep up with the evolving technology. To effectively identify high-quality deepfakes, researchers suggest shifting focus from just detecting heart rate signals to analyzing how blood flow is distributed across different facial regions, providing a more accurate detection strategy...
UK shares security tips after major retail cyberattacks
Following three high-profile cyberattacks impacting major UK retailers, the country's National Cyber Security Centre (NCSC) has published guidance that all companies are advised to follow to strengthen their cybersecurity defenses.
NordVPN participe aux French Days avec des abonnements à jusqu’à -73 % et 4 mois offerts
Pour les French Days, NordVPN propose des promotions sur l'ensemble de ses abonnements. Comme à son habitude, le fournisseur de VPN frappe fort et propose jusqu’à –73 % et surtout, quatre mois offerts. Les VPN sont de plus en plus appréciés pour surfer l'esprit tranquille sur la plupart de vos appareils connectés.