December 2025
2,743 clustered stories from December 2025, newest first.
December 2025
100 of 2,743
- West Virginia Warns Public of Phishing Campaign Targeting State Websites
- Caroline Ellison to be released early from community confinement
- Illinois Residents Targeted by Phishing Scam
- Microsoft Teams to Enable Default Messaging Security Features in January 2026
- U.S. Treasury Lifts Sanctions on Intellexa Executives Linked to Spyware
- Iran's Prosecutor General Addresses Economic Protests and Legal Responses
- 2025 Cyber Attacks Highlight Vulnerabilities in Major Industries
- Warren County Loses $3.3 Million in Phishing Scam
- AI Chat Tools Used to Distribute Malware Targeting macOS Users
- Cyber Attack Campaigns Targeting Applications and Cloud Storage
- ErrTraffic Tool Automates ClickFix Cyberattacks with Fake Glitches
- Alberta Farms Targeted by Cyber Attacks Amid Outdated Systems
- Threat Actors Use LLMs for Automated Exploit Creation
- Afghan Government Provides Financial Aid to Vulnerable Citizens in 2025
- Emergence of GlassWorm Malware Targeting macOS Systems
- 700Credit Data Breach Exposes Information of 5.8 Million Individuals
- Vinted Hack Exposed: User Data Vulnerability and Exploit Techniques
- DarkSpectre Hackers Infect 8.8 Million Users via Major Browser Malware Campaigns
- Everest Ransomware Group Leaks 1TB of ASUS Data
- Iranian APT 'Prince of Persia' Resurfaces with New Malware Variants
- Apple Alerts iPhone Users of Critical Zero-Day Vulnerabilities
- Phishing Campaign Targeting Hawaiʻi Government Departments
- New Covert Phishing Technique and Malware Identified in 2025
- Hawaii Issues Warning on Phishing Campaign Targeting Government Websites
- MongoBleed (CVE-2025-14847) Exploits Unpatched MongoDB Servers
- Unleash Protocol Loses $3.9M in Multisig Governance Exploit
- Increased Abuse of ScreenConnect by Threat Actors in 2025
- Dutch Watchdog Reports Surge in AI Chatbot Data Breaches
- APT Groups BITTER and ArcaneDoor Target Enterprises with Cyber Attacks
- Critical Apache StreamPipes Vulnerability Allows Admin Control Exploitation
- APT36 Malware Campaign Targets Indian Government via Windows LNK Files
- Nvidia Licenses Groq's AI Technology for $20 Billion
- Ransomware Attacks Threaten New Year Celebrations
- ManageMyHealth Confirms Cybersecurity Breach
- openSUSE Flannel Security Updates Address Multiple Issues
- openSUSE go-sendxmpp Update Addresses CVE-2025-47911 Memory Issues
- Threat Actor ImpactSolutions Promotes AI-Enhanced Malware Tool
- Predictions for 2026: Evolving Tactics of Cyber Threat Actors
- Fedora 42 Updates: golang-github-projectdiscovery and gosec Security Fixes
- Coupang Data Leak Hearing Continues at National Assembly
- Duplicati Backup Client Overview
- Oklahoma Updates Data Breach Law Effective January 2026
- Critical Buffer Overflow Vulnerability in Duc Affects Fedora Users
- Fedora 42 and 43 kustomize and k9s Updates Address CVE-2025-58189
- Critical SmarterMail Vulnerability Allows Unauthenticated Remote Code Execution
- Kaspersky Reports 500,000 Malicious Files Detected Daily in 2025
- Apple Issues Urgent Updates for WebKit Vulnerabilities Affecting iPhones and iPads
- Malicious Chrome Extensions Compromise AI Chat Data of 900,000 Users
- openSUSE Trivy Security Update Addresses Multiple Vulnerabilities
- Cybercriminals Target Africa with New Ransomware Tactics
- Two US Cyber Experts Plead Guilty in Ransomware Case
- Elderly Targeted in Solar Energy Scam; Three Convicted
- Understanding BYOK and Data Security Implementation
- Cybersecurity Professionals Plead Guilty as BlackCat Ransomware Affiliates
- New Year's Eve Hangover Tips for 2025
- Active Exploitation of MongoDB Vulnerability 'MongoBleed' Reported
- ESA Confirms Breach of External Servers Containing Unclassified Data
- Ransomware Negotiations and Cybersecurity Response
- ESA Confirms Data Breach with Potential Data Leak
- Cybersecurity Professionals Plead Guilty in ALPHV Ransomware Attacks
- Apple Issues Urgent Security Update for iPhone Users Due to WebKit Vulnerability
- New Shai Hulud Malware Variant Compromises Developer Environments
- ESA Confirms Cybersecurity Breach of External Servers
- Crypt4You Advertises VOID KILLER Malware on Dark Web
- Malware Campaign Targets Maven Central via Jackson JSON Library Impersonation
- Mustang Panda Deploys ToneShell Backdoor via Signed Kernel-Mode Rootkit
- Zoom Stealer Extensions Compromise 2.2 Million Users' Meeting Data
- Flow Blockchain Abandons Rollback Plan After $3.9M Exploit
- Hackers Exploit Vulnerabilities in Copilot Studio's Connected Agents Feature
- Surge in Android Malware: Albiriox and Sturnus Target User Accounts
- Lynx Ransomware Breach Exposes Taxpayer Data
- IBM API Connect Vulnerability Enables Authentication Bypass for Attackers
- Enterprise AI Spending Predictions for 2026
- South African Cyber-Insurance Claims Denied Amid Ransomware Surge in 2025
- Two Cybersecurity Experts Plead Guilty in BlackCat Ransomware Case
- Hezbollah's Pager Bomb Attack Sparks Global Demand for Kinetic Cyber Tools
- Elderly Man Missing After Bus Journey to Bournemouth
- Chinese Hackers Deploy Rootkit to Conceal ToneShell Malware in Southeast Asia
- Ransomware Market Dynamics and Data Protection Strategies
- CoMark Equity Alliance and Telcom Insurance Group Data Breaches
- Critical Vulnerability in SmarterMail Allows Remote Code Execution
- MongoDB Vulnerability Exploited by Hackers
- Nexpublica France Fined $2 Million for Data Breach Due to Cybersecurity Failings
- 1st Circuit Rules on Downstream Liability in Data Breach Case
- US Sanctions French ICC Judge Nicolas Guillou Over War Crimes Rulings
- Top Banking Data Breaches of 2025
- Ghostpairing: New WhatsApp Hijacking Threat via Social Engineering
- Korean Government Intensifies Efforts Against Voice Phishing Crimes
- Clop Ransomware Group Breaches University of Phoenix Data of 3.5 Million
- Over 70,000 MongoDB Servers Exposed to MongoBleed Vulnerability
- Korea Telecom's Femtocell Security Flaw Exposes Customers to Fraud and Snooping
- Government Waives Fees for KT Subscribers Due to Eavesdropping Risks
- CVE Rebuilds for Fedora 42 and Debian 12 Address JavaScript Bundler Vulnerabilities
- Fedora Updates for CVE-2025-61723 Affect golang-github-jwt and golang-github-crypto
- SUSE Releases Security Update for apache2-mod_auth_openidc
- Murray Irrigation Data Breach Exposes Landholder Information
- Flow Abandons Blockchain Rollback After Community Backlash Post-Exploit
- Flow Blockchain Cancels Rollback Plan After $3.9M Exploit and Community Backlash
- Spartanburg County Cyber Attack Affects Nearly 10,000 Residents
- FluidSynth Race Condition Vulnerability CVE-2025-68617 in Fedora