

Healthcare giant McKesson confirms data breach following ShinyHunters claims of 284m stolen records
Healthcare and pharmaceutical distribution giant McKesson Corporation has confirmed a cybersecurity incident involving unauthorized access to third-party applications and data exfiltration. The disclosure follows claims by the criminal extortion syndicate ShinyHunters that it compromised internal systems and extracted 284 million data records containing sensitive patient and medical information. Editorial credit: FotoField / Shutterstock In a Form 8-K filing submitted to the


Chinese-made routers sold worldwide found with hidden surveillance implants
Security researchers have uncovered three backdoor-like surveillance implants embedded in the firmware of routers manufactured by Shenzhen Zhibotong Electronics, better known as ZBT, raising fresh concerns about the security of networking equipment sold around the world. The findings, published by cybersecurity firm VulnCheck, reveal that several ZBT routers contain software capable of giving remote operators powerful control over affected devices. Because ZBT manufactures ha


US bank investigating security incident following LockBit ransomware extortion claim
U.S. Bank, the fifth-largest commercial banking institution in the United States, is currently investigating claims made by the prolific ransomware group LockBit that it breached the bank’s internal systems. The threat actors added the financial institution to their dark web leak site, establishing a September 4 deadline for extortion negotiations before threatening to release exfiltrated files. Extortion Deadline Without Proof-of-Possession Samples Unlike typical ransomware


ShinyHunters leaks 1.6 million RingCentral records after ransom demands rejected
Cloud communications provider RingCentral is facing heightened scrutiny after the extortion group ShinyHunters published a massive dataset containing personal information belonging to approximately 1.6 million user accounts. The leak follows a July security incident that RingCentral attributed to a "sophisticated social engineering campaign". In a security notice published on its site, the provider stated that it took immediate action to halt unauthorized access and engaged a


Taiwan confirms first-of-its-kind AI-assisted cyberattack targeting government agencies and critical infrastructure
4. Sec Taiwan's Ministry of Digital Affairs has confirmed that the island sustained a sophisticated, AI-assisted cyberattack targeting multiple government bodies. The incident, detected in late July, marks one of the first known instances of a coordinated, near-autonomous hacking operation directed against state infrastructure using mainstream AI frameworks. According to security alerts issued by Taiwan's National Institute for Cyber Security, the intrusion involved a hybrid






























