‘What begins as a phone call from ‘IT support’ ends with a fully instrumented network compromise’: This fake tech support scam tricks employees into infecting their own company devices

Attackers deliberately crash browsers, impersonate IT staff, and convince employees to install malicious tools that deploy Havoc malware across corporate systems.

CBP Used Online Ad Data to Track Phone Locations

Plus: Proton helped the FBI identify a protester, the Leakbase cybercrime forum was busted in an international operation, and more.

How Each Gulf Country Is Intercepting Iranian Missiles and Drones

As missiles and drones cross the region’s skies, the Gulf’s layered air-defense networks—from THAAD to Patriot batteries—are being tested in real time.

The Future of Iran’s Internet Is More Uncertain Than Ever

Iran’s internet shutdown has reduced connectivity by 99 percent, with air strikes likely causing additional outages, and few workarounds remaining.

Anthropic’s Claude found 22 vulnerabilities in Firefox over two weeks

In a recent security partnership with Mozilla, Anthropic found 22 separate vulnerabilities in Firefox — 14 of them classified as “high-severity.”

Hackers exploiting WordPress membership plugin bug to create admin accounts

A popular WordPress plugin can be abused to take over websites – with thousands of sites reportedly vulnerable.

FBI says its investigating claims its systems were compromised – wire taps and search warrants apparently hijacked

FBI is unsurprisingly staying quiet on specific details, but it could be the work of a Chinese hacking group.

TriZetto confirms 3.4M people’s health and personal data was stolen during breach

Health tech giant TriZetto has confirmed that more than 3.4 million people had personal and health information stolen in a 2024 cyberattack, which the company failed to detect for almost a year.