Cyber Updates

Scammers Unleash Flood of Slick Online Gaming Sites

Fraudsters are flooding Discord and other social media platforms with ads for hundreds of polished online gaming and wagering websites that lure people with free credits and eventually abscond with any cryptocurrency funds deposited by players. Here’s a closer look at the social engineering tactics and remarkable traits of this sprawling network of more than 1,200 scam sites. …

Cyber Updates

Is AI making phishing emails more convincing?

“Was this you? Please confirm your identity. Someone just requested a password reset. CREATE A PASSWORD You’ll use it to log into: XXXXXXX Didn’t make this request? Click here for help.” Sound familiar? Chances are, you’ve seen emails like this—ones that demand quick action and spark a bit of panic. If your response was to ignore or delete it, great! You’re one step ahead in keeping yourself secure. But if you’ve ever clicked without thinking, you already know how risky that one action can be. When it comes to cybersecurity, two age-old sayings come to mind: “Prevention is better than cure” and “Your safety starts with you.” And they couldn’t be more accurate. Whether it’s emails, messages, or phone calls,…

Cyber Updates

Phishers Target Aviation Execs to Scam Customers

KrebsOnSecurity recently heard from a reader whose boss’s email account got phished and was used to trick one of the company’s customers into sending a large payment to scammers. An investigation into the attacker’s infrastructure points to a long-running Nigerian cybercrime group that is actively targeting established companies in the transportation and aviation industries. …

Cyber Updates

Microsoft Fix Targets Attacks on SharePoint Zero-Day

On Sunday, July 20, Microsoft Corp. issued an emergency security update for a vulnerability in SharePoint Server that is actively being exploited to compromise vulnerable organizations. The patch comes amid reports that malicious hackers have used the Sharepoint flaw to breach U.S. federal and state agencies, universities, and energy companies. …

Cyber Updates

Stop the Digital Eavesdropper: Stay Safe from MITM with Protegent

Reading on the heading, I hope, while I mention the “Man‑In‑The‑Middle”, you did not take it as your dreaded uncle who chimes awkwardly and listens to your private conversations, texting your friends, or subtly steering the gossip. Then let me burst your thinking bubble on this, absolutely not! I’m not talking about that awkward uncle at family gatherings. But a severe attack by a cyber trickster who eavesdrops and manipulates your online conversations without you noticing. There’s no laughing emoji when someone intercepts your banking info or chat messages without your knowledge. So, next time, don’t be confused — MITM is far less cuddly and far more creepy than that uncle who interrupts every family story but a cybercriminal lurking…

Cyber Updates

Poor Passwords Tattle on AI Hiring Bot Maker Paradox.ai

Security researchers recently revealed that the personal information of millions of people who applied for jobs at McDonald’s was exposed after they guessed the password (“123456”) for the fast food chain’s account at Paradox.ai, a company that makes artificial intelligence based hiring chatbots used by many Fortune 500 companies. Paradox.ai said the security oversight was an isolated incident that did not affect its other customers, but recent security breaches involving its employees in Vietnam tell a more nuanced story. …

Cyber Updates

DOGE Denizen Marko Elez Leaked API Key for xAI

Marko Elez, a 25-year-old employee at Elon Musk’s Department of Government Efficiency (DOGE), has been granted access to sensitive databases at the U.S. Social Security Administration, the Treasury and Justice departments, and the Department of Homeland Security. So it should fill all Americans with a deep sense of confidence to learn that Mr. Elez over the weekend inadvertently published a private key that allowed anyone to interact directly with more than four dozen large language models (LLMs) developed by Musk’s artificial intelligence company xAI. …

Cyber Updates

Your Inbox Could Be Your Biggest Business Risk in 2025. Are You Prepared?

Let’s begin with a simple question—when was the last time you checked your spam folder? Chances are, it’s full of unsolicited promotions, bank fraud warnings, shipment updates you never requested, and “urgent” documents waiting to be downloaded. Most of us delete them without a second thought. There are times, however, when one of those emails makes it through to your primary inbox, looking clean, legitimate, and even familiar. That one email—if clicked—can paralyze your business operations. In 2025, this is no longer an edge case. It’s happening daily, and small and mid-sized businesses (SMBs) across India are among the hardest hit. The Evolving Face of Email Threats in India Email remains the most common and cost-effective form of business communication….

Cyber Updates

Microsoft Patch Tuesday, July 2025 Edition

Microsoft today released updates to fix at least 137 security vulnerabilities in its Windows operating systems and supported software. None of the weaknesses addressed this month are known to be actively exploited, but 14 of the flaws earned Microsoft’s most-dire “critical” rating, meaning they could be exploited to seize control over vulnerable Windows PCs with little or no help from users. …