News

Short summaries of the cyber-crime stories moving in India and globally. We link back to the original source — always.

CERT-In Warns Against AI-Powered Cyber Attacks
Malware

CERT-In Warns Against AI-Powered Cyber Attacks

India's Computer Emergency Response Team (CERT-In) has released a security advisory cautioning MSMEs, organizations, and individuals about the rising threat of artificial intelligence-driven cyber attacks. The advisory highlights how threat actors are increasingly leveraging AI technologies to launch more sophisticated and targeted attacks. CERT-In recommends implementing robust security measures, keeping systems updated, and training employees on cybersecurity best practices to defend against these evolving threats. Organizations are advised to maintain regular backups and establish incident response protocols. The advisory emphasizes the importance of staying vigilant as cybercriminals continue to adopt advanced technologies for malicious purposes. Source: Moneycontrol.com.

via GoogleNews: CERT-In advisoryRead source
India Seeks Access to AI Model for Cybersecurity Ahead of Public Release
Cyber Law (India)

India Seeks Access to AI Model for Cybersecurity Ahead of Public Release

Anthropic, an AI firm, is in discussions with various governments, including India, about enhancing cybersecurity measures before the public launch of its Claude Mythos AI model. This model is expected to reveal major vulnerabilities that could pose risks to critical infrastructure. As the Indian tech industry, represented by Nasscom, pushes for early access to the model, the government aims to better prepare for potential cyber threats. The collaboration is seen as vital for strengthening India's defenses against evolving cyber risks. Source: [publication name].

via Economic Times TechRead source
ADT Confirms Data Breach Following Threat from ShinyHunters Group
Data Breaches

ADT Confirms Data Breach Following Threat from ShinyHunters Group

ADT, a leading home security company, has acknowledged a data breach after being targeted by the ShinyHunters hacking group. This group has reportedly attempted to extort ADT, threatening to release sensitive data unless a ransom is paid. Such breaches underline the growing risks to personal information held by companies, causing concern among customers about the safety of their data. ADT is likely to be investigating the extent of the breach and taking necessary steps to enhance its security measures. Customers are advised to monitor their accounts closely for any suspicious activity. Source: [publication name].

via BleepingComputerRead source
Firestarter Malware Evades Cisco Firewall Protections
Malware

Firestarter Malware Evades Cisco Firewall Protections

Security agencies in the U.S. and U.K. have issued warnings regarding a malware called Firestarter. This malicious software has been found to remain active on Cisco Firepower and Secure Firewall devices that utilize Adaptive Security Appliance (ASA) or Firepower Threat Defense (FTD) software. Despite recent security patches and updates intended to counter threats, Firestarter has proven resilient. Users of these Cisco devices are advised to remain vigilant and consider additional security measures to protect their systems from this persistent malware. Regular monitoring and prompt updates are crucial to mitigate potential risks. Source: [publication name].

via BleepingComputerRead source
OpenAI Offers Cash Reward for Bypassing New AI Model's Safety Features
Social Engineering

OpenAI Offers Cash Reward for Bypassing New AI Model's Safety Features

OpenAI has introduced a 'bug bounty' program that offers a reward of $25,000 to security researchers who can find ways to bypass the safety features of its latest AI model, GPT-5.5. This initiative aims to encourage vetted experts to identify and report 'jailbreak' prompts that could potentially exploit weaknesses in the model. By engaging external researchers, OpenAI is taking significant steps towards enhancing AI safety and ensuring that its technologies remain secure against adversarial threats. This proactive approach reflects the company's commitment to maintaining high standards in AI development and deployment. Source: [publication name].

via Economic Times TechRead source
Cisco Firepower Device Compromised by FIRESTARTER Malware
Malware

Cisco Firepower Device Compromised by FIRESTARTER Malware

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) reported that a Cisco Firepower device used by a federal agency was compromised in September 2025 by malware known as FIRESTARTER. This malware acts as a backdoor, allowing unauthorized remote access to the device. Despite efforts to patch the system, FIRESTARTER reportedly continues to function, posing ongoing security risks. The malware was also assessed by the U.K.'s National Cyber Security Centre (NCSC). This incident highlights vulnerabilities in cybersecurity measures that can be exploited even after updates are applied. Organizations using similar technology should remain vigilant and enhance their security protocols. Source: [publication name].

via The Hacker NewsRead source
Myanmar Fraud Network Targeting US Citizens Dismantled
Investment Fraud

Myanmar Fraud Network Targeting US Citizens Dismantled

US authorities have charged 29 individuals, including a Cambodian senator, for their involvement in a financial fraud scheme aimed at American citizens. The investigation led to the seizure of over 500 web domains linked to fraudulent investment websites. These sites were allegedly designed to scam individuals by promoting fake investment opportunities. Such operations highlight the ongoing issues of online scams that have far-reaching impacts beyond national borders. It serves as a reminder for internet users to exercise caution when engaging in online investments or financial transactions. Source: [publication name].

via Dark ReadingRead source
Chinese Phishing Scheme Targets NASA Employees for Defense Data
Phishing

Chinese Phishing Scheme Targets NASA Employees for Defense Data

NASA's Office of Inspector General reported on a phishing scheme where a Chinese national impersonated a U.S. researcher to steal sensitive information from NASA and various other entities, including the government, educational institutions, and private companies. This operation aimed to gather critical data unlawfully in violation of export control laws. The incident highlights the ongoing risks of cyber-attacks on organizations involved in national defense and space exploration, emphasizing the need for heightened cybersecurity measures and awareness among employees. Such campaigns can severely impact national security and industry integrity. Source: [publication name].

via The Hacker NewsRead source
Rise in AI-Driven Phishing Attacks Targeting Businesses
Phishing

Rise in AI-Driven Phishing Attacks Targeting Businesses

Over the past six months, there has been a notable increase in AI-enabled phishing attacks targeting businesses. Cybercriminals are evolving their tactics, moving from broad campaigns to highly personalized one-on-one attacks. This shift makes it more challenging for companies to detect and prevent these threats, as attackers utilize artificial intelligence to tailor messages and strategies that are more convincing to potential victims. Organizations are advised to enhance their cybersecurity measures and educate employees about recognizing such sophisticated phishing attempts. Awareness and vigilance are crucial in mitigating the risks associated with these advanced cyber threats. Source: [publication name].

via Dark ReadingRead source
Chinese APT Group Targets Home Routers and Japanese Entities
Malware

Chinese APT Group Targets Home Routers and Japanese Entities

A Chinese state-sponsored cyber group known as Tropic Trooper has been expanding its tactics and targets. This group has historically employed rapid attack methods and unconventional strategies. Recently, it has begun focusing more on home routers and various Japanese organizations. Their range of tools and techniques suggest an evolving threat landscape, calling for increased vigilance among users and companies alike. The group's actions underline the importance of securing network devices to prevent potential compromises. Organizations are advised to bolster their cybersecurity measures and stay informed about emerging threats.

via Dark ReadingRead source
Critical Vulnerability Found in Breeze Cache WordPress Plugin
Malware

Critical Vulnerability Found in Breeze Cache WordPress Plugin

A significant security flaw has been discovered in the Breeze Cache plugin used for WordPress. This vulnerability enables hackers to upload unauthorized files to a web server without the need for proper authentication. As a result, site owners using this plugin are advised to update it immediately to prevent potential exploitation. The flaw underscores the importance of maintaining up-to-date security measures for website plugins to safeguard against hacking attempts. Website administrators should review their current plugin usage and ensure that all software is current to mitigate security risks. Source: [publication name].

via BleepingComputerRead source
China-Backed Groups Develop New Botnet Attacks
Malware

China-Backed Groups Develop New Botnet Attacks

State-sponsored hacking groups from China are increasingly utilizing networks of compromised devices, known as botnets, to carry out cyberattacks. This approach allows them to conduct operations with reduced costs and risks, while maintaining a level of deniability. By industrializing their methods, these hackers can effectively manage large-scale attacks without drawing significant attention. This trend raises concerns over the security of internet-connected devices globally, as compromised devices can be exploited for various malicious activities including data theft and further cyber intrusions. Awareness and proactive measures are necessary to safeguard against such threats. Source: [publication name].

via Dark ReadingRead source