Air Serbia becomes the next airline under siege as a cyberattack disrupts internal systems.

Air Serbia becomes the next airline under siege as a cyberattack disrupts internal systems.

Air Serbia, the national carrier of Serbia, is currently battling the aftermath of a significant cyberattack that has disrupted internal systems and delayed the issuance of employee payslips. Aviation industry sources confirmed that the airline alerted staff earlier this month about growing cybersecurity concerns, which culminated in a temporary halt to the distribution of payroll documents for June 2025.
Google’s AI “Big Sleep” agent foils exploitation of previously unknown critical software vulnerability.

Google’s AI “Big Sleep” agent foils exploitation of previously unknown critical software vulnerability.

In a groundbreaking development for cybersecurity, Google has announced that its artificial intelligence agent successfully identified and thwarted an attempt to exploit a previously unknown critical vulnerability. This marks the first known instance in which an AI system proactively prevented the exploitation of a zero-day vulnerability, underscoring the growing role of artificial intelligence in safeguarding digital infrastructure.
New threat intelligence assessment says predominant threats to most sectors over the next 12 months will come from domestic violent extremists.

New threat intelligence assessment says predominant threats to most sectors over the next 12 months will come from domestic violent extremists.

According to a recent threat intelligence assessment by the Insikt Group, domestic violent extremists (DVEs) operating within the United States pose a growing and evolving risk to both public and private sector organizations. Over the next twelve months, the predominant threats from these actors are expected to take the form of targeted attacks against individuals and sabotage of critical facilities—tactics that reflect a shift away from mass-casualty events toward more calculated and disruptive actions.
Critical Golden dMSA attack in Windows Server 2025 lets attackers enable cross-domain lateral movement.

Critical Golden dMSA attack in Windows Server 2025 lets attackers enable cross-domain lateral movement.

Windows Server 2025 introduces delegated Managed Service Accounts (dMSA), designed to bolster identity security in Active Directory environments. However, recent research from Semperis and Akamai, supported by industry analysis, has revealed a critical flaw known as the "Golden dMSA attack." This vulnerability threatens to undermine foundational identity controls across large enterprises and government networks.
Computer hacker with Android robot on desk

A counterfeit Android Telegram app is being spread from more than 600 malicious domains.

A newly observed Android malware campaign is leveraging more than 600 malicious domains to distribute counterfeit versions of the Telegram messaging app. The operation, which primarily targets Chinese-speaking users, has raised concerns in the cybersecurity community due to its scale, sophistication, and exploitation of old Android vulnerabilities.
Ex-U.S. Soldier Cameron Wagenius Pleads Guilty in Telecom Hacking and Extortion Case.

Ex-U.S. Soldier Cameron Wagenius Pleads Guilty in Telecom Hacking and Extortion Case.

Cameron John Wagenius, a 21-year-old former U.S. Army soldier from Texas, has pleaded guilty to federal charges stemming from a wide-ranging cybercrime and extortion scheme that targeted major telecommunications providers, including AT&T and Verizon. The admissions of guilt follow a federal investigation into a coordinated hacking operation that spanned from April 2023 through December 2024.
Dark Web Abacus Market goes offline under suspicious circumstances, leading to speculation of a coordinated exit scam.

Dark Web Abacus Market goes offline under suspicious circumstances, leading to speculation of a coordinated exit scam.

Abacus Market, once the dominant darknet marketplace operating in the Western world, has gone offline under suspicious circumstances, leading to widespread speculation of a coordinated exit scam. The marketplace’s sudden disappearance marks a significant turn in the ongoing volatility of darknet ecosystems, where trust, anonymity, and financial stakes collide in unpredictable and often short-lived ventures.
Next Level Finance Partners discloses breach that has compromised sensitive personal information belonging to more than 160,000 individuals.

Next Level Finance Partners discloses breach that has compromised sensitive personal information belonging to more than 160,000 individuals.

Next Level Finance Partners, LLC, doing business as Century Support Services, has disclosed a significant data security incident that has compromised sensitive personal information belonging to more than 160,000 individuals. The Pennsylvania-based debt settlement company filed notice of the breach with the Maine Attorney General’s Office, marking the formal public disclosure of the event.
AsyncRAT’s open-source code has led to a dramatic increase in malicious cyber activity around the world.

AsyncRAT’s open-source code has led to a dramatic increase in malicious cyber activity around the world.

Originally developed as a legitimate remote administration tool, AsyncRAT has become a favorite foundation for cybercriminals due to its flexible architecture, ease of modification, and powerful functionality. As threat actors continue to build upon and customize the tool, the cybersecurity landscape faces a growing risk from increasingly sophisticated and evasive malware variants.