December 20, 2025

SantaStealer Malware Targets Browsers and Crypto Wallets

SantaStealer malware has emerged as a new information-stealing threat that focuses on browser data and cryptocurrency wallets, using fake software installers to trick users into executing a malicious Windows payload. Once launched, the malware operates quietly in the background, harvesting sensitive information that attackers can quickly convert into financial gain. Rather than relying on persistence or advanced evasion, SantaStealer reflects

SantaStealer
December 19, 2025

700Credit Data Breach Exposes 58 Million Dealership Customers

A large-scale 700Credit data breach has quietly exposed sensitive personal information linked to tens of millions of vehicle dealership customers in the United States. While the incident did not originate inside dealership networks, it still carries serious consequences for consumers whose data passed through a trusted third-party platform. The breach highlights a familiar but persistent problem. As businesses outsource critical

700Credit Data Breach
December 18, 2025

PDVSA Cyberattack Disrupts Oil Operations in Venezuela

A PDVSA cyberattack disrupted internal systems at Venezuela’s state-owned oil company, creating uncertainty across export coordination and administrative operations. The incident came to light over the weekend after employees lost access to digital platforms used to manage shipments, documentation, and payments linked to oil exports. PDVSA confirmed the attack and said it activated contingency protocols designed to protect production and

PDVSA Cyberattack
December 17, 2025

PayPal Subscription Scam Abuses Legitimate Billing Emails

A PayPal subscription scam is circulating that does not rely on fake domains, malicious links, or compromised accounts. Instead, it abuses a legitimate PayPal feature to deliver fraudulent messages directly from PayPal’s own email infrastructure. The result is a scam that bypasses many traditional warning signs and places users at risk through trust rather than technical deception. Security researchers warn

PayPal Subscription Scam
December 16, 2025

CyberVolk Ransomware Trips Over Its Own Encryption

CyberVolk ransomware appeared suddenly and attempted to establish itself as a serious new extortion threat. Security researchers quickly discovered that the operation suffers from critical technical weaknesses. The most damaging issue involves broken cryptography that prevents the malware from securely encrypting victim data. A new ransomware group enters the scene CyberVolk ransomware surfaced as a previously unknown operation targeting Windows

CyberVolk
December 15, 2025

Coupang Data Breach Traced to Former Employee Access

The Coupang data breach did not follow the familiar pattern of modern cyber incidents. There was no ransomware deployment, no phishing campaign, and no external attacker exploiting a technical vulnerability. Instead, the exposure originated inside the company, where a former employee retained access to internal systems after leaving their role. For Coupang, one of South Korea’s largest e-commerce platforms, the

Coupang data breach
December 14, 2025

GPT-5.2 Targets Professional AI Workloads

OpenAI has unveiled GPT-5.2, the latest update to its flagship artificial intelligence model, with a clear emphasis on professional and enterprise use. Rather than introducing dramatic new consumer-facing features, the company is positioning this release as a refinement focused on accuracy, consistency, and dependable performance in real-world work environments. The move reflects growing demand from businesses that rely on AI

GPT-5.2
December 13, 2025

Inotiv Cyberattack Exposes Data after Confirmed Network Intrusion

Inotiv, a US-based contract research organization supporting pharmaceutical development, has confirmed a serious cyber incident. The Inotiv cyberattack involved unauthorized access to internal systems and confirmed data theft. The disclosure adds to growing concerns about ransomware activity targeting healthcare and life sciences companies. What Happened During the Inotiv Cyberattack Inotiv detected the intrusion in early August after attackers gained access

Inotiv cyberattack
December 12, 2025

Brave agentic AI Testing Brings Automated Tasks to the Browser

Brave agentic AI testing marks a significant step toward browser-based automation, as the privacy-focused browser experiments with AI that can complete tasks autonomously. Instead of acting only as a chat assistant, this new mode allows Brave’s AI to navigate websites, follow instructions, and perform multi-step actions on behalf of users. The move highlights a broader industry shift toward agent-driven browsing

Brave agentic AI
December 11, 2025

DroidLock Android Malware Triggers Full Device Lockouts

Growing reports about DroidLock Android Malware reveal how fast mobile ransomware continues to evolve. The new strain targets users who install apps from untrusted sources and locks their devices with an aggressive screen overlay. Its behaviour shows a worrying shift toward full device takeover on Android systems. How DroidLock Infects Devices Attackers distribute DroidLock through malicious apps found outside official

DroidLock Android Malware