News

Short summaries of the cyber-crime stories moving in India and globally. We link back to the original source — always.

Actor Vedhika alerts public after mother's phone hacked
Social Engineering

Actor Vedhika alerts public after mother's phone hacked

Bollywood actor Vedhika has warned her followers about an ongoing scam targeting phone numbers through fraudulent calls and OTP requests. The actor revealed that her mother's phone number was compromised, putting her at risk of identity theft and financial fraud. She urged the public to remain vigilant and avoid sharing one-time passwords with anyone, even if callers claim to be from banks or official institutions. This incident highlights the rising trend of SIM swapping and phone number hijacking in India, where criminals exploit compromised numbers to access personal and financial information. Vedhika's warning serves as a timely reminder for citizens to strengthen their cybersecurity practices and report suspicious activity immediately. Source: The Times of India.

via GoogleNews: OTP scamRead source
Understanding Stack Strings in Malware Development
Malware

Understanding Stack Strings in Malware Development

Security training programs like SEC670 focus on red teaming and developing Windows malware, including shellcode and command-control systems. This approach complements traditional malware analysis courses by examining threats from the attacker's perspective rather than through reverse engineering. Understanding malware development techniques, including stack string obfuscation methods used in high-level languages, helps security professionals better recognize and defend against sophisticated cyber threats. Such knowledge enables analysts to identify malicious code patterns and improve detection capabilities. Source: SANS Institute.

via RSS: SANS ISC DiaryRead source
Hacker Exploits Jailbroken AI to Steal Cryptocurrency
Crypto Scams

Hacker Exploits Jailbroken AI to Steal Cryptocurrency

A Russian-speaking threat actor misused a modified version of Google's Gemini AI to conduct cryptocurrency theft operations. The attacker leveraged the jailbroken AI model to automate hacking activities and drain digital wallets of victims. The incident involved pump-and-dump schemes, where manipulated trading cycles were used to defraud investors. At least one victim suffered significant cryptocurrency losses. This case highlights risks of AI misuse by cybercriminals and the vulnerability of cryptocurrency holdings to automated attack methods. Security researchers warn users to enable two-factor authentication and avoid sharing wallet credentials online. Source: Security Research Publication.

via RSS: The Register SecurityRead source
South Pacific Fisheries Body Addresses Squid Fishing Regulations
Cyber Law (India)

South Pacific Fisheries Body Addresses Squid Fishing Regulations

The South Pacific Regional Fisheries Management Organization (SPRFMO) is focusing on implementing stricter regulations for squid fishing operations across the region. The initiative aims to ensure sustainable fishing practices and prevent overharvesting of squid stocks in South Pacific waters. Regulatory measures are being developed to balance commercial fishing interests with environmental conservation. This effort reflects growing global awareness about marine resource management and the need for coordinated international policies. The SPRFMO continues working with member nations to establish guidelines that will protect squid populations while supporting local fishing communities dependent on these resources. Source: SecurityBlog.

via RSS: Schneier on SecurityRead source
CrackArmor: Critical AppArmor Flaw Exposes Root Access Risk
Malware

CrackArmor: Critical AppArmor Flaw Exposes Root Access Risk

Security researchers have identified a significant vulnerability in AppArmor, a Linux security framework, that could potentially allow attackers to gain root-level access to systems. The flaw, termed CrackArmor, has been detected and documented by Qualys, a prominent cybersecurity firm. This vulnerability affects systems relying on AppArmor for access control and permission management. Organizations using AppArmor-protected Linux environments should prioritize patching and updating their systems to mitigate exploitation risks. System administrators are advised to assess their infrastructure for exposure and apply security updates promptly to prevent unauthorized access escalation.

via GoogleNews: vulnerability CVERead source
Microsoft Leads in Workforce Identity Security Platforms
Identity Theft

Microsoft Leads in Workforce Identity Security Platforms

Microsoft has earned recognition as a Leader in Forrester Wave's Workforce Identity Security Platforms assessment for Q2 2026. The company achieved the highest scores in both current offering and strategy categories. This recognition reflects Microsoft's strong position in providing identity and access management solutions for enterprise workforce security. The assessment evaluates platforms that help organizations protect employee identities and secure access to critical resources. Source: Microsoft Security Blog.

via RSS: Microsoft SecurityRead source
F5 BIG-IP Breach Leads to Enterprise Compromise via Confluence
Malware

F5 BIG-IP Breach Leads to Enterprise Compromise via Confluence

Attackers exploited an exposed F5 BIG-IP edge appliance to launch a multi-stage intrusion targeting Linux systems. The threat actors pivoted to an internal Confluence server to steal credentials and compromise user identities. The attack involved attempts at Kerberos relay attacks and lateral movement across the network. Microsoft Defender successfully detected and blocked the attack chain, providing insights into how such edge appliance compromises can escalate into enterprise-wide threats. Organizations should secure exposed edge devices and monitor for suspicious lateral movement activities. Source: Microsoft Security Blog.

via RSS: Microsoft SecurityRead source
US Cybersecurity Agency Faces Scrutiny Over Contractor Data Leak
Data Breaches

US Cybersecurity Agency Faces Scrutiny Over Contractor Data Leak

The US Cybersecurity and Infrastructure Security Agency (CISA) faces congressional pressure following a significant data breach. A CISA contractor deliberately exposed AWS cloud credentials and sensitive agency information on a public GitHub repository. Lawmakers from both chambers are demanding explanations as CISA works to contain the incident and revoke compromised access credentials. The breach highlights security vulnerabilities within government cybersecurity infrastructure and has raised questions about contractor oversight and data protection protocols. Source: KrebsOnSecurity.

via RSS: Krebs on SecurityRead source
Clothing Brand Website Compromised in Malware Distribution Attack
Malware

Clothing Brand Website Compromised in Malware Distribution Attack

A clothing brand's website was hijacked by cybercriminals who attempted to distribute malware to visitors. Users on social media platforms reported the compromise, which led to the website being taken offline. The attackers had modified the site to trick unsuspecting users into downloading malicious software. Website hijacking incidents like these highlight the importance of maintaining strong security measures and regularly monitoring for unauthorized access. Users should avoid clicking suspicious links or downloading files from compromised websites and keep their systems updated with latest security patches. Source: Security Reports.

via RSS: TechCrunch SecurityRead source
How Companies Secure AI Systems with Microsoft Tools
Cyber Law (India)

How Companies Secure AI Systems with Microsoft Tools

St. Luke's and ManpowerGroup have successfully implemented Microsoft Security solutions to protect their artificial intelligence initiatives at scale. These organizations demonstrate how embedding governance frameworks, identity management, and cloud security practices creates a foundation for safe AI deployment. By prioritizing security controls alongside AI growth, these firms show that protection mechanisms can enable rather than hinder technological advancement. Their approaches include implementing identity verification systems and cloud-based security protocols to manage AI risks effectively. These case studies highlight best practices for Indian organizations considering AI implementation while maintaining robust cybersecurity postures. Source: Microsoft Security Blog.

via RSS: Microsoft SecurityRead source
US Cybersecurity Agency Contractor Exposes Sensitive AWS Credentials
Data Breaches

US Cybersecurity Agency Contractor Exposes Sensitive AWS Credentials

A contractor working with the US Cybersecurity & Infrastructure Security Agency (CISA) inadvertently exposed privileged AWS GovCloud account credentials through a publicly accessible GitHub repository until recently. The leaked data included internal documentation revealing CISA's software development, testing, and deployment processes across multiple systems. Security researchers have characterized this as one of the most significant government data breaches in recent memory. The exposure compromised highly sensitive infrastructure security information that could potentially be exploited by malicious actors to compromise critical systems. Source: Cybersecurity News.

via RSS: Schneier on SecurityRead source
Healthcare Sector Battles Rising Social Engineering Threats
Social Engineering

Healthcare Sector Battles Rising Social Engineering Threats

According to Verizon's 2026 Data Breach Investigations Report, India's healthcare industry faces mounting social engineering attacks alongside persistent ransomware threats and vendor breaches. The report reveals that attackers are employing increasingly sophisticated tactics to exploit human vulnerabilities rather than just technical defences. Healthcare organizations must strengthen employee awareness training and implement robust verification protocols to counter these evolving threats. The sector remains a prime target due to sensitive patient data and critical infrastructure vulnerabilities. Source: Verizon.

via Dark ReadingRead source