Skip to content
Hacked dAily
All Episodes

Hacked dAily Episodes

Every episode of Hacked dAily: 558 daily cybersecurity briefings and counting. Breaking news on breaches, ransomware and AI threats. Page 16 of 24.

The rundown

  1. 1 First on today’s agenda: Even the US nuclear weapons agency couldn't resist the digital allure of SharePoint, allowing hackers a sneak peek. Who knew SharePoint was the socialite of cybersecurity breaches?
  2. 2 Meanwhile, in a plot straight from sit-com land, someone sweet-talked Clorox’s secrets out of Cognizant, leading to a $380 million lawsuit. Seems like cybersecurity protocols need a refresher on “stranger danger”.
  3. 3 Across the pond, the UK public sector is joining the “No Pay Club” by criminalizing ransomware payments. Note to hackers: practice your pirate lingo, because it’s back to the drawing board for ransom negotiations.

+2 more stories

Open briefing →

The rundown

  1. 1 Over at Ring, they're waving an "all-clear" flag despite multiple suspicious logins that would make any security camera blush. They're pointing fingers at reused passwords, a problem that keeps biting us all like a persistent mosquito. So, remind someone you love to update that weak password today!
  2. 2 In a tale of tech betrayal, the digital pest Coyote is taking a mischievous ride through the Windows Accessibility Framework, a place designed to assist, now lending a hand to data thieves instead. It's like watching your loyal pet cat join a raccoon gang, utterly bemusing.
Open briefing →

The rundown

  1. 1 Today, in a hilariously ironic twist, fake receipt generators are leading an online fraud conga line. Who knew digital rain would turn into deceitful puddles? Meanwhile, a new ransomware strain is throwing the encryption party of the year, if only they remembered their manners!
  2. 2 In a plot worthy of a sitcom, ExpressVPN, our go-to privacy superhero, had its cape momentarily caught on a ‘bug’. While IP addresses threw an unplanned 'peek-a-boo', rest assured, they’ve patched up and ready for their next privacy gig!
  3. 3 Elsewhere, meet the sneaky KAWA4096 ransomware. By turning Windows Management Instrumentation into a heavy-duty weapon, it's deleting backup snapshots faster than you can say “Snapshot Saturday!” Protect those files like they're the last slice of pizza at a party!
Open briefing →

The rundown

  1. 1 In today's episode, we uncover how Microsoft's attempts to patch up SharePoint vulnerabilities were about as effective as a paper umbrella in a storm, leaving users exposed to zero-day attacks. Perhaps SharePoint is just vying for a spot in the next suspense thriller?
  2. 2 Next, we explore the nostalgic yet naughty endeavors of cyber-villains who are now downgrading FIDO2 MFA security. These hackers are proving that not all tech classics are worthy of a comeback. Who knew they'd opt for a retro vibe in the security realm?
  3. 3 Meanwhile, HPE warns us about their Aruba access points’ "1234" approach to passwords, channeling their inner retro-tech aficionado. But don't worry, it's just a gentle nudge to upgrade from "admin" to something a tad less predictable.

+2 more stories

Open briefing →

The rundown

  1. 1 Our top story opens a thrilling chapter for CrushFTP aficionados where a zero-day vulnerability feels more like a party crasher than a software glitch. Say goodbye to weekend gardening and hello to a digital siege as attackers hijack servers like it’s their birthday.
  2. 2 Meanwhile, software developers find themselves unwitting participants in a sordid cyber drama involving npm linter packages. Thanks to a phishing escapade more elaborate than the last office potluck, malware’s finding its way into your code quicker than a cat jumping on a laptop.
  3. 3 Over in Grafanaland, CVE-2025–4123 has opened Pandora’s box of cyber chaos. What once was a note-taking tool now doubles as a hacker's carnival.

+2 more stories

Open briefing →

The rundown

  1. 1 Also, in a classic move that screams 'Russia, at it again,' the notorious APT28 have decided AI isn't just for writing cheesy poetry but for scripting sneaky Windows commands. Poetic justice? We think not!
  2. 2 In other news, the Akira ransomware group is painting the town red, with a dozen hacks in just three days, including a cloud-based firm dealing in bankruptcies. That's ironical marketing if we’ve ever heard it.
  3. 3 Finally, prepare for the latest trick in the hacker playbook, AI cloaking tools! Like digital ninjas, these bad actors glide past defenses unnoticed, sparking a fashion crisis among firewalls everywhere.
Open briefing →

The rundown

  1. 1 Today's top hits kick off with Meta making headlines again (surprise, surprise). A glitch in their AI chatbot let adventurous guessers snoop around private chats. Sandeep Hodkasia snagged a $10,000 bounty for his detective work, proving once more that cybersecurity is just a giant game of "Guess the Number."
  2. 2 In other news, SonicWall's SMA 100 appliances are yet again throwing a ransomware party, courtesy of UNC6148. Meanwhile, threat analysts advise it's time we all become password-olympians and firmware-detectives to keep the hackers at bay.
  3. 3 Over in retail drama, Belk is coping with a cyber-breach courtesy of DragonForce. As potential lawsuits loom, they’re left patching up their digital fortresses long after the breach parade has passed through.

+2 more stories

Open briefing →

The rundown

  1. 1 In today's lineup, Amazon is on high alert, reminding its 200 million Prime members that scammers are at the gates, seeking login details but, regrettably, not intending to buy items from our wish lists. With phishing scams at an all-time high, make sure those clicks are as rare as elusive Amazon delivery ninjas.
  2. 2 Then, over at Cloudflare, the digital gremlins decided to make a cameo not as malicious hackers, but as the classic stumble of operational hiccups, creating a momentary blip that turned itself into a non-malevolent tech comedy.
  3. 3 Meanwhile, Europol steps into the spotlight, dismantling the notorious pro-Russian NoName057(16) gang. Who knew that pulling the plug could silence digital chaos better than any blockbuster?

+2 more stories

Open briefing →

The rundown

  1. 1 Meanwhile, Albemarle County found themselves in a game of ransomware roulette, leaving residents' data out for all to see, like an unwanted strip tease. The county officials now probably have "Avoid ransomware attacks" etched in their daily mantras.
  2. 2 Konfety mobile threats are back, shaking up the cybersecurity catwalk with new evasion tactics. IT pros might need to update their playbooks since these villainous trends show no signs of stopping.
  3. 3 Elsewhere, the Qilin ransomware group crashed ProActive Solutions USA’s party uninvited, exposing sensitive info. The absence of a ransom demand leaves the company in a guessing game over what just hit them.

+1 more story

Open briefing →

The rundown

  1. 1 Today, we dive into the unexpected drama at Chicago's WFMT radio station, where a ransomware group named "Play" decided to conduct a symphony of chaos in their systems. Meanwhile, Elmo’s X account took a dark turn, unleashing a flurry of inappropriate messages. Looks like Big Bird is auditioning as a cyber-detective now. Who knew Sesame Street would need a cybersecurity degree?
  2. 2 In the coder's corner, a malicious VSCode extension in the Cursor IDE ran off with half a million dollars’ worth of cryptocurrency. Maybe those hackers should run a course on "How to Steal Coins and Influence Digital People." And speaking of digital crime, the Sarcoma ransomware group rear-ended the CARSTAR Business Group, leaving them with a sizable amount of purloined data.
  3. 3 Finally, a touch of positivity among the chaos: cloud environments now wield AI-powered tools like digital bloodhounds, sniffing out cybercriminals before they can say "breach." It's high-tech meets elementary justice, one byte at a time.
Open briefing →

The rundown

  1. 1 Join us on Hacked dAily for a whirlwind tour through the latest and not-so-greatest happenings in the world of cybersecurity. Today, hackers are crashing the party on Wing FTP Server with the critical CVE-2025-47812 flaw, exploiting Windows and Linux systems faster than you can say ‘patch me’. Speaking of heists, in our main event, Kaseya meets its match as cybercriminals demand $70 million, because nothing says ‘buy me a yacht’ like a hefty ransomware attack.
  2. 2 Moving from ransom woes to DeFi drama, GMX watched $40 million disappear quicker than Bitcoin in a shopping spree. But wait, in a Hollywood-esque twist, our sticky-fingered antagonist returns the spoils after pocketing a $5 million ‘oops’ fee. Good for them, too, because everyone knows crime doesn’t pay more than 12.5%.
  3. 3 Elsewhere, InterLock, our digital Houdini, breached DaVita, reminding us that healthcare isn’t exempt from a good old cyber ruse. It seems a few more digital bouncers wouldn’t go amiss. And finally, Google’s AI, Gemini, discovers a new talent for phishing, an ironic twist leaving many to wonder if their toaster will soon join a botnet.
Open briefing →

The rundown

  1. 1 Next up, the DoNot APT group is getting creative with fake diplomacy emails to attack a European ministry. Who needs real peace talks when you can Trojan-horse your way into the conversation?
  2. 2 Meanwhile, over 600 Laravel apps have accidentally leaked their APP_KEYs on GitHub. Let's hope those keys turn out to be less of a public display and more of a cautionary tale for developers everywhere.
  3. 3 In other news, the Arkana Ransomware Gang, whose name sounds like it was lifted from a '90s cartoon, has snatched 2.2 million customer records. Imagine if they applied their skills to something lawful, like hacking the lottery.

+1 more story

Open briefing →

The rundown

  1. 1 Today's star-studded lineup kicks off with luxury titan Louis Vuitton. Their UK customers’ data decided to take a European getaway without a return ticket, thanks to some cyber mischief-makers who clearly wanted a piece of the high-end action. Privacy, it seems, is where the real couture exists these days!
  2. 2 Next, we've got AMD playing the lead role in their tech thriller, battling transient scheduler attacks against their chipsets. Your computer might be channeling its inner drama queen, but fear not, it's all part of AMD's unfolding cyber plot.
  3. 3 Meanwhile, Paddy Power and BetFair rolled the dice and ended up in the security breach club. Instead of jackpots, hackers nabbed personal data, leaving customers to nervously wager on where their details will pop up next.

+2 more stories

Open briefing →

The rundown

  1. 1 First up, a real-life cyber caper that's hotter than your morning latte. Four alleged hackers tried to pull off a £440 million heist targeting British retail giants. Let's hope they weren't aiming for the Queen's secrets next, because that's when things get royally tricky.
  2. 2 Next, McDonald's McHire tool apparently served up an unwanted data spill, leaking info on 64 million job seekers. Who knew McDonald's AI was more interested in sharing personal data than actual fries?
  3. 3 Then there's PerfektBlue, a Bluetooth vulnerability in millions of vehicles. Imagine your car being remotely hacked to do the windshield wiper dance. Talk about a drive to remember!

+2 more stories

Open briefing →

The rundown

  1. 1 Catch the headline act as Gold Melody hackers waltz their way into ASP.NET using machine keys like they're VIP invitations. Meanwhile, Shellter tool gets an unexpected role reversal as it turns from white-hat vigilante to a cyber villain's new BFF. Elastic Security Labs plays the counter-melody with a dynamic unpacker tool, stealing back the spotlight.
  2. 2 IBM throws its hat into the super-sophisticated ring, rolling out Power11 server chips to tackle AI and ransomware like it's the next big blockbuster. And somewhere, AiLock ransomware is learning that not all PDFs make great pen pals, especially when the geeks are hot on your tail with decryption tools.
Open briefing →

The rundown

  1. 1 First up, DragonForce and RansomHub are duking it out in the digital ring, turning re-extortion into a full-blown ransomware brawl. It’s like a bad reality TV show, but the stakes are company secrets, not roses. Who knew cybercrime could be this dramatic?
  2. 2 Next, the US is spicing things up by arresting a Chinese hacker linked to HAFNIUM, the rockstars of the Microsoft Exchange Server breach. If cybercrime were a sport, this hacker won a shiny pair of handcuffs, not a gold medal. Way to go for keeping it legal, folks!
  3. 3 Meanwhile, infostealers have jumped on the 'as-a-Service' bandwagon, making identity theft accessible to wannabe villains everywhere. Maybe we should start investing in cybersecurity stocks because something’s gotta save us from this digital Wild West.

+1 more story

Open briefing →

The rundown

  1. 1 The International Criminal Court found itself in a real-life espionage episode with a recent cyberattack. Their quick containment makes for a thrilling IT department saga. Keep an ear out for their cybersecurity experts, someone might end up on the stand next!
  2. 2 Then there's Chaos, a ransomware gang hitting the jackpot with 69GB of Optima Tax Relief data. It's a smorgasbord for identity thieves! Optima's silent treatment only adds to the suspense. Time to guard your personal info like it's top secret.
  3. 3 And finally, for our magic trick, watch as Supabase Magic Content Platform reveals entire SQL databases to an unwitting audience. Applause not included. Developers might want to conjure up some cloaking devices for their data!
Open briefing →

The rundown

  1. 1 Today, Instagram has decided to spice up our lives with single-day TLS certificates. It's either their attempt at a new digital workout regime or a subtle way to keep us forever anxious, who doesn't love a bit of daily heart-racing security drama?
  2. 2 Meanwhile, in the ever-thriving digital underworld, there’s a new villain in town! Meet Hpingbot, the latest botnet family cruising the internet with all the suave smoothness of a digital Bond, or, let’s be honest, more like Bond's less charming cousin. This tech trifler is using Hping3 DDoS like a wild rodeo.
  3. 3 Over in India, cybercriminals took a clumsy swipe at BOSS Linux, in a phishing attempt that’s more cringe-inducing than nerve-wracking, think James Bond mixed with your uncle's embarrassing dance at a wedding.

+1 more story

Open briefing →

The rundown

  1. 1 Dive headfirst into the murky underworld of cybersecurity with Hacked dAily, the first AI-driven podcast from Cytadel Cyber that'll make you look at your inbox sideways. Today, we're peeling back the digital curtain to reveal Spain's .es domains turning into a cyber circus, with phishing scams operating faster than your favorite siesta-snatching tapas joint.
  2. 2 Next, we journey into a tech drama fit for Hollywood, featuring XWorm's latest antics. This cyberglitch showcases the fluidity of its latest shape-shifting loader and stager variants. If they had a union, even Optimus Prime would have a run for his money.
  3. 3 Meanwhile, cybersecurity's buddy cop flick comes alive as we sidestep the nefarious exploits of the RomCom RAT and TransferLoader malware gangs. These duos' shifty games of intrigue and matching infrastructure would have even James Bond building a safer router.

+1 more story

Open briefing →

The rundown

  1. 1 Meanwhile, Google has been caught with its hands deep in Android users' pockets, or rather, their pockets’ data. Fined $314 million for over-eager data collection, Google might have mistaken "user consent" for terms and conditions... that nobody reads.
  2. 2 In yet another unsurprising twist, Telefónica has stumbled over yet another data breach. At this rate, their headaches over leaked information might rival their coffee addiction.
  3. 3 Elsewhere, smug from impressing property moguls, Knight Knox gets a harsh wake-up call with Qilin ransomware group claiming to snatch 100GB of sensitive info. Maybe it's time for these cyber-bandits to try real estate investment over robbery?
Open briefing →

The rundown

  1. 1 First up, in a script straight out of a heist movie, a French bank sees 50 customer accounts flipped by an inside man using a SIM swap thingamajig. Fast, flashy, but not Oscar-worthy, real life doesn’t have a replay option, folks!
  2. 2 Next, meet DEVMAN, the cyber villain with a flair for ransomware, trotting out DragonForce like it's a Taylor Swift album. Encrypt now, ransom later, they say, experts are working overtime to make this digital concourse as short-lived as a dentist visit.
  3. 3 Then, the FileFix "illusionists" are JScripting their way past Windows alerts like Houdini with a tech twist. Security teams everywhere are caffeinating frantically, come on Windows, give us an update stronger than our morning espresso.

+2 more stories

Open briefing →

The rundown

  1. 1 Meanwhile, in Oz, Lockton warns businesses to prepare for their unwelcome VIPs, ransomware attacks. It's time to slam the door on these uninvited guests with Lockton’s guidance because "no entry" should apply to hackers too.
  2. 2 DragonForce channels a Hollywood-esque transformation, morphing from ideological hackers to a Ransomware-as-a-Service powerhouse, offering a DIY toolkit that makes IKEA look like a one-piece puzzle. Their advanced evasion skills are a game of hide and seek, but not everyone finds it as fun, looking at you, global manufacturing.
  3. 3 Adding to the cyber spectacle, another billing software bites the dust, as ransomware buffs hit the jackpot once more. Warning to vendors: maybe it’s time for better security over "Have you tried turning it off and on again?"
Open briefing →
Newsletter

Subscribe to Our Newsletter

Stay ahead of cyber threats with our weekly insights. Get exclusive access to expert analysis, breaking news, and the latest cybersecurity trends delivered straight to your inbox.

By subscribing you agree to receive the Hacked dAily briefing. Unsubscribe any time: see the privacy notice.