News

Short summaries of the cyber-crime stories moving in India and globally. We link back to the original source — always.

Gentlemen Ransomware Uses SystemBC for Attacks
Ransomware

Gentlemen Ransomware Uses SystemBC for Attacks

Recent investigations have uncovered that the Gentlemen ransomware is utilizing SystemBC proxy malware, which operates a botnet of over 1,570 compromised hosts. These hosts are believed to belong to corporate entities, highlighting the targeted nature of these attacks. The use of SystemBC allows the attackers to enhance their malicious operations by effectively obscuring their online activities. Organizations are urged to fortify their defenses against such ransomware threats by implementing stronger security measures and monitoring for unusual network activities. This discovery sheds light on the evolving tactics of cybercriminals, emphasizing the importance of cybersecurity awareness and preparation in preventing attacks. Source: [publication name].

via BleepingComputerRead source
Seiko USA website hacked; customer data theft claimed
Data Breaches

Seiko USA website hacked; customer data theft claimed

The Seiko USA website was reportedly hacked over the weekend, with attackers defacing the site to announce they had stolen customer data from its Shopify database. The hackers have threatened to release this information unless a ransom is paid. The incident raises concerns for customers regarding the potential exposure of personal and payment information. The company has not yet confirmed the data breach or provided details on how they plan to address the situation. Customers are advised to stay vigilant and monitor their accounts for any unusual activity. Source: [publication name].

via BleepingComputerRead source
Lovable Clarifies No Data Breach Occurred Amid Visibility Concerns
Data Breaches

Lovable Clarifies No Data Breach Occurred Amid Visibility Concerns

Lovable, an AI app-building platform based in Stockholm, has denied experiencing a data breach following concerns about public visibility settings. Issues arose regarding the accessibility of chat messages and code in projects marked as public. Lovable officials stated that these settings are a deliberate choice meant to enhance collaboration. They reassured users that their data remains secure despite the community's concerns. The platform aims to maintain transparency about its project-sharing features without compromising user privacy or security. Users are encouraged to review their project settings to ensure appropriate visibility. Source: [publication name].

via Economic Times TechRead source
Lovable Responds to Data Breach Concerns, Claims No Breach Occurred
Data Breaches

Lovable Responds to Data Breach Concerns, Claims No Breach Occurred

Lovable, an AI app-building platform based in Stockholm, has addressed recent concerns regarding possible data exposure. The platform stated that the visibility of chat messages and project codes set to public is an intentional feature, not a result of a data breach. This clarification comes after users expressed worries about the security of their information. Lovable emphasizes that their public settings are designed for visibility and collaboration, and reassured users that their data remains secure. The company aims to maintain transparency while ensuring users can create and share projects efficiently. Source: [publication name].

via Economic Times TechRead source
Critical Vulnerability in SGLang Could Allow Remote Code Execution
Malware

Critical Vulnerability in SGLang Could Allow Remote Code Execution

A serious security flaw has been identified in SGLang, with the identifier CVE-2026-5760, which poses a significant risk to systems using this open-source language. This vulnerability, rated 9.8 on the Common Vulnerability Scoring System (CVSS), can allow attackers to execute arbitrary code remotely via malicious GGUF model files. It primarily involves a type of command injection that could lead to unauthorized access and control of affected systems. Users and organizations utilizing SGLang should take immediate measures to patch their systems to guard against potential exploitation. Source: [publication name].

via The Hacker NewsRead source
Elon Musk Fails to Attend French Inquiry on X and AI Chatbot
Cyber Law (India)

Elon Musk Fails to Attend French Inquiry on X and AI Chatbot

Elon Musk did not attend a scheduled questioning in France regarding an investigation into X, the platform formerly known as Twitter, and its AI chatbot Grok. The Paris prosecutor's office is probing allegations of algorithm misuse and unlawful data extraction associated with the platform. This inquiry highlights growing concerns over the influence of technology firms and their accountability in managing user data and ethical standards in AI applications. The absence of Musk from the hearing raises questions about the responsibilities of tech leaders in legal proceedings related to their companies. Source: [publication name].

via Economic Times TechRead source
Deutsche Bank CEO on AI Risks and Regulatory Review
Cyber Law (India)

Deutsche Bank CEO on AI Risks and Regulatory Review

Christian Sewing, the CEO of Deutsche Bank, stated that banks are closely engaging with European regulators concerning Anthropic's AI model, Mythos. The model is under scrutiny as global regulators assess the potential cybersecurity risks it poses. There is a growing concern about how prepared financial institutions are to handle these risks, particularly in light of the increasing capabilities of artificial intelligence. This conversation highlights the urgency for banks and regulators alike to understand and mitigate any threats that new technologies may introduce in the financial landscape. Source: [publication name].

via Economic Times TechRead source
Understanding the Limitations of Backups for Business Continuity
Ransomware

Understanding the Limitations of Backups for Business Continuity

While data backups are crucial for protecting information, they may not ensure business continuity during unexpected downtimes like ransomware attacks or system outages. A study by Datto emphasizes the importance of Business Continuity and Disaster Recovery (BCDR) strategies. These strategies help organizations minimize disruption and maintain operations by addressing not just data recovery but also overall business resilience. Companies should adopt comprehensive plans that include both data protection and effective response measures to safeguard operations during critical incidents.

via BleepingComputerRead source
Weekly Cybersecurity Update: Emerging Threats and Trends
Malware

Weekly Cybersecurity Update: Emerging Threats and Trends

This week's cybersecurity overview highlights a trend where third-party tools are exploited to gain internal access to systems. Hackers are also manipulating trusted download paths to distribute malware. Some browser extensions appear to function normally while still extracting data and executing harmful code. Even software update channels are being misused to deliver malicious payloads. This indicates a shift in attack strategies that prioritize undermining trust over outright system breaches. As cyber threats evolve, users need to stay vigilant about these emerging tactics. Source: [publication name].

via The Hacker NewsRead source
Vulnerability in AI Protocol Could Lead to Remote Code Execution
Malware

Vulnerability in AI Protocol Could Lead to Remote Code Execution

Cybersecurity experts have identified a significant vulnerability in the Model Context Protocol (MCP), essential for some AI systems. This flaw allows remote code execution (RCE), enabling attackers to gain unauthorized access to systems using affected MCP implementations. The implications of this vulnerability could be far-reaching, potentially disrupting the AI supply chain and compromising various applications relying on MCP. Organizations are urged to assess their systems for this weakness and apply necessary security updates to mitigate risks. Source: [publication name].

via The Hacker NewsRead source
New Malware ZionSiphon Targets Israeli Water Systems
Malware

New Malware ZionSiphon Targets Israeli Water Systems

Cybersecurity experts have identified a new malware named ZionSiphon, which is specifically designed to attack water treatment and desalination systems in Israel. This malware can maintain its presence within a system, alter local configuration settings, and search for relevant operational technology services on the local network. Such targeted attacks raise concerns about the security of essential infrastructure, particularly in regions heavily reliant on these resources. The detection of ZionSiphon highlights the need for robust cybersecurity measures to protect critical utilities from potential cyber threats. Source: [publication name].

via The Hacker NewsRead source
Can Digital Rupee Offer Safer Payments Than UPI?
UPI Fraud

Can Digital Rupee Offer Safer Payments Than UPI?

With UPI fraud cases increasing across India, financial experts are examining whether the digital rupee (e-rupee) could provide enhanced security for digital payments. The e-rupee, India's central bank digital currency, offers direct settlement and reduced intermediaries compared to UPI's existing infrastructure. While e-rupee transactions may reduce certain fraud vectors, adoption challenges and user familiarity remain concerns. Security experts emphasize that no payment system is completely fraud-proof, and proper user awareness alongside technological safeguards remains essential. The Reserve Bank of India continues developing the e-rupee framework as digital payments expand nationwide. Source: Mint.

via GoogleNews: UPI fraudRead source