Ecopetrol confirms ransomware attempt, data stolen from 3,300 accounts | brief
Get essential knowledge and practical strategies to protect your organization from ransomware attacks.
Get essential knowledge and practical strategies to protect your organization from ransomware attacks.
Who are the young cybercriminals behind the £39million TfL hack? London Evening Standard
Last week, McAfee warned that economic pressure and AI are creating ideal conditions for online shopping scams. This week, that warning got another real-world example. New reporting revealed that cloned shopping websites have appeared in AI-generated search results, potentially directing consumers to convincing fake storefronts designed to steal payment information and personal data. The incident reinforces what McAfee’s latest research found ahead…
With great autonomy comes great risk. Agents can be compromised by adversaries; they can also create unintended security risks and accidentally cause breaches via misalignment. For example, in early 2026, adversaries targeted ClawHub, the community skill registry for OpenClaw, in a supply chain attack that deployed silent data exfiltration payloads to affected agents who used…
This Pride, we’re answering all your digital rights questions in season two of our initiative, LGBT Q&A. You Asked: I live in the UK, and we have age verification now on a bunch of websites (including Reddit) and now on iPhones. Can you explain what sort of data companies are actually collecting when they check…
Dutch police, working alongside Belgian authorities and Europol, have dismantled a major criminal network accused of operating a global investment fraud scheme through dozens of fraudulent call centers. Investigators estimate the organization generated more than €100 million a month by targeting victims in multiple countries. The group operated around 20 call centers staffed by more…
Five malicious versions of AsyncAPI packages were published to the Node Package Manager (npm) in a supply-chain attack that delivered a remote access trojan with info-stealing capabilities. The threat actor exploited a misconfigured GitHub Actions workflow and pushed trojanized packages in the @asyncapi namespace that had a cummulative weekly download count of more than 2.25…