Latest IT News, Cybersecurity Alerts & Tech Innovations

Microsoft Exchange Online Mailbox Access Issues Hit Outlook
Microsoft investigates Exchange Online mailbox access problems affecting Outlook mobile and macOS users intermittently for several weeks.

Microsoft Force-Upgrades Windows 11 24H2 to 25H2
Microsoft begins automatically upgrading unmanaged Windows 11 24H2 Home and Pro devices to version 25H2 this week.

EU Attributes Commission Cloud Hack to TeamPCP Group
CERT-EU confirms TeamPCP threat group breached European Commission cloud infrastructure, exposing data from 29 Union entities.

Anthropic Brings Claude Computer Use to Windows
Anthropic expands Claude's computer control capabilities to Windows through Claude Cowork and Claude Code applications.

Vidar Malware Exploits Claude Code Leak via Fake GitHub Repos
Threat actors leverage Anthropic's Claude Code source leak to distribute Vidar information-stealing malware through malicious GitHub repositories targeting developers.

React2Shell Flaw Exploited in Mass Credential Theft Campaign
Cisco Talos discovered attackers exploiting React2Shell vulnerability to steal AWS secrets, SSH keys, and GitHub tokens at scale.

North Korean Hackers Drain $285M from Drift Protocol
North Korean threat actors executed a sophisticated attack draining $285 million from Drift Protocol's treasury in under 10 seconds.

Windows Security App Shows Secure Boot Certificate Status
Microsoft updated Windows Security app to display Secure Boot certificate update status information for enhanced system visibility.

Casbaneiro Banking Trojan Targets Spanish-Speaking Users
Casbaneiro banking Trojan launches sophisticated campaigns targeting Spanish speakers with advanced evasion techniques and rapid replication capabilities.

Edge Auto-Startup Forces Users to Opt-Out in Latest Test
Microsoft's latest Edge browser update automatically launches at Windows startup, requiring users to manually disable the feature.

Cisco Patches Critical IMC Authentication Bypass Flaw
Cisco fixed multiple critical vulnerabilities including an authentication bypass in Integrated Management Controller granting admin access.

WhatsApp Alerts 200 Users Hit by Fake iOS App Spyware
WhatsApp warned approximately 200 users who installed a malicious fake iOS app containing government-grade spyware targeting Italian citizens.

Microsoft Outlook Classic Email Sending Bug Hits Users
Microsoft confirms Classic Outlook users can't send emails through Outlook.com accounts, affecting desktop installations worldwide.

CrystalRAT Malware-as-a-Service Emerges on Telegram
New CrystalRAT malware-as-a-service platform launches on Telegram with remote access, data theft, and keylogging capabilities targeting Windows systems.

Google AI Pro Subscribers Get 5TB Drive Storage Upgrade
Google AI Pro subscribers now receive 5TB of Google Drive storage, more than doubling the previous 2TB allocation.

Apple Patches iOS 18 Against DarkSword Exploit Kit
Apple released security updates for older iOS 18 devices to defend against the actively exploited DarkSword exploit kit targeting iPhone vulnerabilities.

TrueConf Zero-Day Exploited to Execute Files on Endpoints
Attackers exploit a zero-day vulnerability in TrueConf conference servers to execute arbitrary files on all connected endpoints.

EvilTokens Kit Targets Microsoft Accounts with Device Code Phishing
New EvilTokens malicious toolkit exploits device code phishing to hijack Microsoft accounts for business email compromise attacks.

NoVoice Android Malware Infiltrates 50+ Google Play Apps
NoVoice malware infected over 50 Android apps on Google Play Store, accumulating 2.3 million downloads before detection and removal.
FBI Warns Against Chinese Mobile Apps Over Data Security Risks
The FBI issued a security advisory warning Americans to avoid Chinese-developed mobile applications due to data collection and national security concerns.

Google Patches Fourth Chrome Zero-Day Exploited in 2026
Google released an emergency Chrome update fixing CVE-2026-5281, the fourth actively exploited zero-day vulnerability discovered this year.

