Mastodon says its flagship server was hit by a DDoS attack

The DDoS attack against Mastodon’s flagship server comes less than a week after Bluesky was targeted with junk web traffic.

App host Vercel says it was hacked and customer data stolen

Vercel blamed its breach on an earlier hack at Context AI, which allowed hackers to hijack a Vercel employee’s account to steal customer data.

Sweden blames Russian hackers for attempting ‘destructive’ cyberattack on thermal plant

Sweden’s minister for civil defense said Russian hackers are “now attempting destructive cyber attacks against organizations in Europe.”

Someone planted backdoors in dozens of WordPress plug-ins used in thousands of websites

Dozens of WordPress plug-ins were allegedly hijacked to push malware after they were sold to a new corporate owner.

Adobe fixes PDF zero-day security bug that hackers have exploited for months

It’s not clear how many people were compromised by this hacking campaign, but a security researcher said the hackers were targeting victims since at least November 2025.

Hacker stole £700,000 from U.K. energy company by redirecting payment

The U.K. energy company said a redirected payment meant for a contractor instead landed in a hacker’s bank account.

Iranian hackers are targeting American critical infrastructure, US agencies warn

A joint FBI, NSA, and CISA advisory warns that Iranian hackers have ‘escalated’ their tactics in response to the ongoing U.S.-Israel war with Iran.

North Korea’s hijack of one of the web’s most used open source projects was likely weeks in the making

North Korean hackers pushed out malicious updates to a popular open source project by hacking a top developer’s computer in a long-running campaign.

Telehealth giant Hims & Hers says its customer support system was hacked

The U.S. telehealth giant says hackers stole customer support ticket data over the course of several days in February.

Hasbro says it was hacked, and may take ‘several weeks’ to recover

The American toymaking giant noted that it was continuing to “implement measures to secure its business operations,” suggesting that the hackers may still be in the company’s systems.