• Database of 323,986 BreachForums users leaked online as forum admins claim the exposed data is partial and dates back to August 2025.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • CISA adds a critical HPE OneView flaw (CVE-2025-37164) to its KEV catalogue with a Jan 28 deadline. Learn how this 10.0 RCE bug puts server infrastructure at risk.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • A staggering cybersecurity incident has come to light, with 17.5 million Instagram users’ personal information exposed in a data breach advertised on dark web marketplaces. Cybersecurity firm Malwarebytes first alerted the public via X (formerly Twitter), confirming the leak’s severity as stolen data, including usernames, emails, phone numbers, and partial locations, circulates for sale. Affected […]

    The post Massive Instagram Data Breach Exposes Personal Details of 17.5 Million Users appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • The Iranian threat actor known as MuddyWater has been attributed to a spear-phishing campaign targeting diplomatic, maritime, financial, and telecom entities in the Middle East with a Rust-based implant codenamed RustyWater. “The campaign uses icon spoofing and malicious Word documents to deliver Rust based implants capable of asynchronous C2, anti-analysis, registry persistence, and modular

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Europol on Friday announced the arrest of 34 individuals in Spain who are alleged to be part of an international criminal organization called Black Axe. As part of an operation conducted by the Spanish National Police, in coordination with the Bavarian State Criminal Police Office and Europol, 28 arrests were made in Seville, along with three others in Madrid, two in Málaga, and one in Barcelona

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Cybercriminals are leveraging reports of Venezuelan President Nicolás Maduro’s arrest on January 3, 2025, to distribute backdoor malware through a sophisticated social engineering campaign. Security researchers at Darktrace have uncovered a malicious operation that exploits this high-profile geopolitical event to compromise unsuspecting victims. Attack Method The threat actors likely used spear-phishing emails containing a ZIP […]

    The post Cybercriminals Exploit Maduro Arrest News to Spread Backdoor Malware appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Large businesses or governments aren’t the only ones threatened by cyber attacks. Every organization is now equally threatened.…

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Cybersecurity researchers from Huntress detail a major VM Escape attack where hackers took over host servers. Using a secret toolkit called MAESTRO, the attackers stayed hidden for over a year. Read the exclusive details on how this breach was stopped and how to protect your network.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • The Army’s new acquisition strategy—buy fast, in small quantities, then maybe buy a lot more—is causing headaches for at least one of the vendors working on the service’s new medium-range reconnaissance drone.

    Anduril is one of two firms working to produce drones that can give Army maneuver companies at least six miles of visibility for up to 30 minutes at a time, but the service’s Continuous Transformation strategy is making it tough to plan ahead for production—which may prevent the company from delivering if the Army decides to start buying the drones by the thousands. 

    “The way the Army is approaching this now…they want flexibility and they want routine competition, because they know that we're going to keep investing and keep improving the systems,” Jason Dickinson, general manager for the Ghost-X drone program at Anduril, told Defense One. “But because it's a little opaque for us right now, it's very hard to right-size your production capacity.”

    The piecemeal buying strategy could also be in conflict with a recent Defense Department memo calling for the military services to treat small drones like munitions rather than aircraft, along with a call to start acquiring new technology as if the country is at war.

    Dickinson’s team is investing in Ghost-X production capacity based on how confident he is in where his platform stands with the Army, he said, knowing that he has one co-vendor now, but expecting that there could eventually be three or four. 

    In 2025, that meant deploying 200 Ghost-X systems with the Army, with the expectation that another 200 would be needed this year to keep outfitted the Transformation-in-Contact brigades testing them.

    But beyond that, it’s a bit of a question mark.

    “How do I think about growing responsibly so that I can meet the needs of the Army, and also sell into other allied nations, sister services and those kinds of things?” Dickinson said.  

    Particularly painful, he said, is trying to figure out how to meet the Army’s sustainment needs for Ghost-X, because there’s no process in place to start procuring replacement components.

    In a traditional program of record, repairs and maintenance would be factored in, with a guaranteed number of years and an expected payment to give the vendor an idea of how much money to sink into a production line.

    “But again, for us, it's ‘When does that start?’” Dickinson said. “We don't know. How many are they going to buy? I don't know.”

    ‘More competitive and responsive’ 

    Army officials have stressed recently that they expect contractors to make the initial investments into developing new technology. At the same time, the Pentagon is pushing the services to turn up the volume on procurement.

    That’s creating tension that the government is likely going to have to solve, said Mackenzie Eaglen, a senior fellow at the American Enterprise Institute.

    “I mean, I know we’ve got to make numbers and live in the budget, but the government has to take the lead, I think, in a lot of cases,” Eaglen told Defense One during the State of Defense Business Acquisition Summit in November.

    The Army declined to make an official available to Defense One to discuss this tension. 

    The office that oversees Army aviation acquisition provided a written statement, which said that while they are committed to “a more competitive and responsive procurement environment,” they believe their increased spending on small drones in general should reassure vendors.

    “The current UAS procurement strategy has obligated all appropriated funds from previous years, and the Army is prepared to accelerate the procurement of UAS when Congress appropriates FY26 funds, further establishing a consistent demand signal to industry,” said the spokesperson, who was not authorized to speak on the record.

    In its 2026 budget request, the Army asked for just under $804 million to sink into its small UAS programs. Changing the budget to a capability bucket instead of line items for individual platforms is a win for more agile acquisitions, but it does leave vendors having to guess what their slice of that pie will look like.

    The Army’s response did not address specific questions about ramping up production capacity and supply chains to respond to sudden increased demand, or whether the service is looking into making some of these investments itself.

    It takes about three months to increase production capacity, Dickinson said, and twice that long to get the supply chain to meet it.

    “And so I have to sit here and weigh, do I invest a couple million dollars in high-tech production capabilities without knowing what the actual demand is? Am I going to get the return on that?” he said.

    And once there’s floor space and technicians hired, the supply chain has to surge.

    “If I'm asking them to produce tens to hundreds right now, and I'm like, ‘Hey, now I need you to go to a thousand’—that's a major step change,” he said. “And we find some suppliers, they can't cut it, right?”

    So for now, it’s a guessing game.

    “I am leaning forward on the production and the supply chain, because I know that that boat is so long to turn,” Dickinson said. “And so I know the Army has a requirement—they have a gaping wound right now of no UAS in many, many brigades.”

    ]]>

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • The National Security Agency has named its deputy director, filling a job left vacant amid months of leadership vacuums and staff turnover. 

    Tim Kosiba was approved by top officials to serve as the civilian lead at NSA, according to a Friday announcement. In the role, he is charged with directing operations, managing civilian leadership, setting policy and overseeing the execution of the agency’s strategy.

    Kosiba, who has worked at NSA and the FBI, was vetted last month, a person familiar with the matter told Nextgov/FCW.

    Initially, Joe Francescon, who served on the National Security Council in President Donald Trump’s first term, was set to be named to the position. But far-right activist Laura Loomer, whose influence over NSA-leader picks led to the firing of its previous director and other top officials, criticized the move, claiming that Francescon donated to a Democrat in Congress and that his wife had ties to China. Francescon ultimately was not given the job.

    “It is an honor to come back home and serve as the National Security Agency’s next deputy director,” Kosiba said in a statement. “As it has been for more than 30 years, my deep commitment to our mission continues, and I am excited to once again serve alongside the agency’s incredible workforce.”

    Kosiba began his federal career with the Naval Criminal Investigative Service, then joined the FBI in 1996. He moved to NSA in 2007, serving in senior technical leadership roles across cyber operations, including as technical director for Joint Functional Component Command for Network Warfare, a precursor group to U.S. Cyber Command. 

    He held leadership positions within NSA’s Tailored Access Operations, a highly classified division responsible for offensive cyber operations and gaining covert access to foreign computer networks. His most recent NSA jobs were chief of computer network operations and deputy commander of NSA Georgia, the agency’s largest field site.

    In the new role, Kosiba will contend with declining morale inside the spy agency, as well as hasty workforce cuts executed by the Trump administration last year.

    Next week, Army Lt. Gen. Joshua Rudd — nominated to head NSA and Cyber Command in a dual-hatted capacity — is to testify before the Senate Armed Services Committee. And in coming weeks, the agency is expected to staff up acting leadership in its cybersecurity division, The Record reported Thursday.

    ]]>

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶