Skip to content
Hacked dAily
All Episodes

Hacked dAily Episodes

Every episode of Hacked dAily: 500 daily cybersecurity briefings and counting. Breaking news on breaches, ransomware and AI threats. Page 19 of 21.

The rundown

  1. 1 Today's episode starts with the LockBit ransomware developer, Rostislav Panev, who has been extradited to the U.S. in a crime drama twist, facing charges with his fellow tech villains for attacking 2,500 targets in 120 countries and allegedly raking in half a billion dollars. Apparently, cybercrime doesn't pay, at least not indefinitely.
  2. 2 In corporate news, Cisco has patched a denial of service flaw in its IOS XR software, which previously allowed cyber vandals to pull the plug on the Border Gateway Protocol with a single malevolent update. Because let's be honest, nobody truly wants more than 254 autonomous systems knocking on their door.
  3. 3 Next, researchers unveil a shocker in securing single sign-ons. Turns out, slipping past SAML SSO authentication is as easy as solving a one-piece puzzle, leaving IT teams worldwide exasperated and hackers grinning like Cheshire cats.

+1 more story

Open briefing →

The rundown

  1. 1 First up, digital Houdinis impersonating Booking.com are at it again, offering phony luxury retreats but delivering ID theft instead. Who knew cybercriminals went phishing during vacation season too?
  2. 2 Next, meet your new nightmare, OBSCURE#BAT, mystery malware no one ordered, but everyone gets. It's the digital equivalent of finding a bat in your belfry, yet minus the cool Gothic chic.
  3. 3 Now, onward to a tale of betrayal: DeepSeek R1, the AI bastion turned virtual Judas, as it unleashes keyloggers and ransomware with a flair. Warning: it may have already prompted some cybersecurity professionals to update their LinkedIn profiles.

+2 more stories

Open briefing →

The rundown

  1. 1 Today, we're serving up a hot brew of digital drama: starting with the FBI's latest alert on Medusa Ransomware. It's got Gmail users choking on their morning coffee as these cyber miscreants aim for your data, and potentially millions in cash. Remember, folks, cyberspace doesn't take coffee breaks!
  2. 2 Next on the menu, GitHub’s discovered vulnerabilities in the ruby-saml library. Who would've thought inviting cyber villains into your account was as easy as leaving your keys under the doormat? Developers, time to chuck that vulnerability from your to-do list!
  3. 3 Over in the font department, FreeType is causing a stir with a dastardly zero-day exploit. Who knew typography could be so treacherous? If your screen suddenly speaks Dadaist, it might be time for an update.

+2 more stories

Open briefing →

The rundown

  1. 1 First up, in a scene straight out of a dystopian future, a deepfake video of a CEO has people confusing virtual illusion for reality. Fear not, no pet sharks at the office just yet, despite the convincing fakery!
  2. 2 Next, Jaguar Land Rover is in hot water, or should we say 'jalopy'? A hacker named "Rey" claims to have leaked 700 sensitive documents, turning their internal files into a dark web yard sale. Looks like someone left the garage door wide open!
  3. 3 Meanwhile, in a move as swift as a glacier, FIIG Securities took six days to respond to a tip-off from the Australian Signals Directorate. Now facing ASIC’s ire for exposing 18,000 clients, the message here is clear: when it comes to cyber, snooze and you lose.

+2 more stories

Open briefing →

The rundown

  1. 1 First up, the infamous Dark Storm Team has proudly pranced onto the stage on the X Platform, turning the cyber world into a chilling horror flick. Remember folks, antivirus updates are like garlic, they keep the digital vamps at bay.
  2. 2 Next, the MassJacker malware saga, the stories of 778,000 digital wallets vanishing faster than Houdini at a magic show. It's a cautionary tale for those dabbling in the crypto universe, where it's all fun and games until someone loses a Bitcoin.
  3. 3 Meanwhile, Apple battles its own 'zero-day of the month' crisis with CVE-2025-24201. Picture hackers as escape artists breaking out of their WebKit confines. Thankfully, Apple patches the hole just in time, reaffirming that not all is lost in this cyber battlefield.

+2 more stories

Open briefing →

The rundown

  1. 1 In today's episode, we kick off with a massive cyberattack on X. It seems our beloved platform for unsolicited opinions and cat memes has been taken down, leaving users to confront the gnawing void of face-to-face interaction and, horror of horrors, actual office productivity.
  2. 2 Next, we take a virtual safari through Nigeria, where WhatsApp and social media scams have turned scrolling into a modern-day Indiana Jones adventure. Trust is now so elusive, it might as well be unicorns in rush-hour traffic.
  3. 3 On the tech tip, we explore MSTSC's public mode, the digital deep-cover op with no traces left behind. Just because you can vanish without a trace doesn't mean your bad decisions should.

+2 more stories

Open briefing →

The rundown

  1. 1 Then, onto Texas, where a former employee’s "sabotage your ex-employer" how-to guide lands him in hot water. Remember, folks, our fantasies of workplace vengeance should stay in our heads, not in our former company’s destroyed server systems. The probable career switch to ‘prison IT’ is imminent!
  2. 2 Over in Russia, SilentCryptoMiner worms its way into systems like a sneaky sitcom character, using fake VPN tools as bait. Always remember: if it sounds too good to be a secure browsing tunnel, it probably is a shortcut straight to digital plunder.
  3. 3 Plus, the healthcare sector, still juggling ransomware as if it's part of the daily dose, fights the same old foes on their digital frontier, proving data breaches can be just as predictable as your hospital’s waiting times.
Open briefing →

The rundown

  1. 1 First up, a hacker loves a good Disney plot twist as much as anyone, but this time they snagged a Disney engineer’s passwords, leaving Mickey in a digital pickle. Apparently, keeping magic kingdom secrets under "Admin123" wasn’t as clever as they thought. Who knew Disneyland had its own villain?
  2. 2 Then, in a quantum leap backwards, digital saboteurs have bested X Tech's unbreakable encryption with a data heist worthy of Hollywood. It seems the future isn’t as secretive as quantum physicists hoped. Time to rethink those uncrackable enigmas.
  3. 3 In a "connect the dots" irony, a sneaky backdoor in a trusty Bluetooth chip has tech fans nervous as it eavesdrops on a billion devices worldwide. Maybe it’s time we ensured our "seamless" connections are more selective with their party invites.

+2 more stories

Open briefing →

The rundown

  1. 1 Today, we start off in Japan where NTT Communications stumbles once again, putting 18,000 organizations on a first-name basis with data breaches. Looks like someone missed the memo on securing information, right?
  2. 2 Then we turn to the ever-evolving saga of cybercriminals; Black Basta and Cactus ransomware gangs are stretching their criminal portfolios with new spyware, BackConnect. It’s like they’re shopping for tech upgrades, but with slightly less legit payment methods.
  3. 3 In other tales of woe, a marauding PyPI package has been pilfering Ethereum private keys quicker than you can say "crypto", a little reminder that developers might need a crash course in "Playing Nice with Other People's Currency."

+1 more story

Open briefing →

The rundown

  1. 1 Next, we take a virtual dive into EncryptHub, for whom "app store" is code for "malware market," offering their own line of cybercriminal concoctions complete with stealer malware. Who knew app hunting could morph into digital Russian roulette?
  2. 2 Our third story sees cybersecurity experts engaging in a new kind of true crime, mapping out threat actor infrastructure with the kind of enthusiasm usually reserved for dissecting grandma's attic finds. The stakes? Your data’s safety.
  3. 3 Meanwhile, Dark Caracal, sporting a villainous moniker out of a comic book, has taken its dubious talents to Latin America. Their latest hit? Spreading Poco RAT malware like it's a new fashion trend.
Open briefing →

The rundown

  1. 1 Meanwhile, in a plot twist that transcends cyber horror, the Eleven11bot botnet has commandeered 86,000 IoT devices, primarily security cameras. It's a global smash hit with sightings in American and British territories, all while preferring the exotic IP locales of Iran. Who needs strong passwords when weak ones make for such a binge-worthy show?
  2. 2 In a spectacle worthy of an Olympic event, Iranian cyber musketeers flex their prowess with polyglot files, injecting excitement, and a touch of exasperation, into UAE IT desks. They merge code like a maestro at a symphony, leaving tech pros everywhere shaking their heads, and maybe filing for therapy.
  3. 3 Meanwhile, the SecP0 Ransomware gang is redefining cybercrime by threatening to expose system vulnerabilities. Move over, data kidnappings; now it's all about entrepreneurial disruption.

+1 more story

Open briefing →

The rundown

  1. 1 In today's episode, Poland's Space Agency finds themselves tackling a different kind of space odyssey after a cyberattack; it seems aliens aren’t the only threat, guys! Meanwhile, over 4,000 ISP IPs are the latest targets for cybercriminals who apparently have found a zen-like state in brute-force attacks. Perhaps they should consider chill-out music with that cryptocurrency.
  2. 2 Next, we explore the antics of 'JavaGhost' who's proving that AWS servers are the new playground. Maybe they're just tired of the same terrestrial platforms, gotta keep that innovation alive! And in a twist, a Japanese cancer center falls victim to the Qilin ransomware; it appears that even hackers believe in healthcare...for their bank accounts, at least.
Open briefing →

The rundown

  1. 1 First up, Microsoft, the bastion of computer safety, goofed spectacularly by signing off a rogue driver, letting ransomware villains waltz in like they own the place. It's like Batman handing Gotham over to the Joker and asking for tips in chaos management.
  2. 2 In an automation mishap compounding our daily woes, Zapier may have let a few cyber squatters crash the data party. Not to worry though, your bank info is safe, but do keep an eye on those uninvited reminders and automations still dancing in your inbox.
  3. 3 Meanwhile, over in cloud cuckoo land, hackers send phishing attacks through AWS, turning misconfigured email services into a phisher's paradise. It's like candy for the cyber crooks, except with less sweetness and more malicious intent.

+1 more story

Open briefing →

The rundown

  1. 1 Meanwhile, over at Angel One, it seems their Amazon Web Services went for an unauthorized stroll on the dark web. But kudos to them for an overnight credential-changing marathon! It's a cybersecurity whodunit that's got everyone on edge but rest assured, their handle on damage control is worthy of a thriller.
  2. 2 In another yarn worthy of a cowboy flick, HomeTeamNS finds themselves in a ransomware showdown as their server's data takes an unexpected ride into the sunset. Technology might have promised us a paperless utopia, but maybe it’s time to dust off those filing cabinets?
  3. 3 And, ever feel like you’re not keeping up with technology? Enter Qilin, the ransomware gang setting its sights on Lee Enterprises. While they dodge journalistic outrage, one wonders if Qilin regrets sticking its nose in the newsroom.
Open briefing →

The rundown

  1. 1 Next, we'd like to sound the airhorn: 99% of organizations have hit rocky API security waters this past year. Few have life vests on! With API chaos at its peak, grab your coffee, because caffeine may be your best defense until nearly half these businesses get their strategies sorted.
  2. 2 Turning to speed demons, brace yourself. Ransomware attackers are making moves quicker than a toddler at Disneyland, shrinking detection windows to the blink of an eye or, to be precise, a micro-nap.
  3. 3 In other news, ransomware groups consider subtlety overrated, hammering Paragon Partition Manager with BYOVD attacks so brazen, they deserve their own razzie.

+1 more story

Open briefing →

The rundown

  1. 1 First up, in the "Learn From Our Mistakes" file, stalkerware apps like Spyzie, Cocospy, and Spyic have managed to expose personal data, ironically including those of the spies themselves, due to some impressively bad coding. They're so good at sharing they might as well start a data giveaway channel.
  2. 2 Meanwhile, in Thailand, our favorite cyber villain has finally clocked out for good. A notorious data extortion actor got caught in a scene right out of CSI: Cyber... but with less glam and more reality TV drama. Note to future cybercriminals: The world has eyes everywhere, and they're ready to throw you an orange jumpsuit party.
  3. 3 Elsewhere, cyber tricksters have decided CAPTCHA forms are the new 'IT' spot for malware. These sneaky developers have turned mayhem into an art form, so remember: if your CAPTCHA makes bizarre requests, tread carefully, puzzles are only fun when you don't lose your data.

+1 more story

Open briefing →

The rundown

  1. 1 Shifting gears to tech fans... Two Visual Studio Code extensions got the boot despite their 9 million installs. Turns out, cyber vulnerabilities are the backstage pass no one wanted. Because hey, popularity isn't an immunity boost in the cybersecurity cosmos.
  2. 2 Meanwhile, the LightSpy malware saga continues. It’s updating its credentials to reach a broader audience, much like that overeager popstar in need of a comeback tour. It's going after users of more devices, trying to steal data like it's the latest hit track.
  3. 3 On a note of high drama, Saudi Arabia's Albilad Bank has been hit by DragonForce, scoring 6 terabytes of data. Looks like DragonForce took the concept of a "data diet" a bit too seriously.

+1 more story

Open briefing →

The rundown

  1. 1 Today's episode unfolds with a cyber soap opera as LockBit ransomware gang takes a stab at personal branding, sending FBI Director Kash Patel a salty threat and a backhanded nod to Donald Trump. From mixing protests and praise, it seems even cybercriminals appreciate a good character arc.
  2. 2 Meanwhile, over at Conduent, SafePay ransomware group decided to play a little round of "Guess who didn't lock the door", carting away plentiful data. It appears someone forgot the rest of the IT department's script. Here's hoping they had backups and a good stress ball.
  3. 3 In industries critical to keeping us afloat, literally, the Anubis Threat Group channels its inner supervillain, plotting against energy and healthcare systems. They aimlessly target vital services with the precision of a toddler in a candy store but threaten global consequences instead.

+2 more stories

Open briefing →

The rundown

  1. 1 First up, Have I Been Pwned gets a little too inclusive by adding 284 million new accounts to its compromised data list, thanks to sneaky infostealer malware. If anything, it’s a nostalgic trip back to when even your "1234password" was considered ultra-secret.
  2. 2 Next, a major US background check firm made hackers feel as welcome as a long-lost relative, except they invited about 3 million of them by exposing an ocean of personal records. Time for the firm to introspect with a "background check" on their own cyber safety.
  3. 3 Channeling your great-grandfather's vintage fashion vibe, cyber criminals have taken a liking to exploiting legacy drivers. Those old vulnerabilities might seem charming, until they start draining your bank account like it's a free trial offer.

+2 more stories

Open briefing →

The rundown

  1. 1 Get ready for a rollicking ride of cyber chaos in today's episode of Hacked dAily! We’re starting Down Under as Australia kicks Kaspersky to the curb faster than a boomerang returning from an awkward date, amidst rising data security concerns. Better grab those firewalls and sunscreen, mates!
  2. 2 Next, we’re dialing up the future with Google, who’s trading SMS-based Multi-Factor Authentication for QR codes. It's like swapping your telegram for Wi-Fi, about time your security caught up, or at least your dinner reservation app!
  3. 3 Meanwhile, Apple enthusiasts got their own pixelated party crasher with a zero-day bug in Parallels Desktop. Just imagine it as the unexpected guest at your Mac's virtual machine gossip session, Windows users just laugh in solidarity.

+2 more stories

Open briefing →

The rundown

  1. 1 Kick off your day with Hacked dAily, the podcast that brings you the latest in cybersecurity headlines with a side of wit and a splash of sarcasm. Brought to you by the AI brains at Cytadel Cyber, we promise to make your daily infosec digest a little less bleak.
  2. 2 Today's digital shenanigans range from cybercriminals dancing through a Confluence vulnerability all the way to Microsoft's Power Pages flaw, which has a CVSS score scarier than your morning coffee. LockBit ransomware is at it again, proving that sometimes software bugs lay out the welcome mat with extra flair.
  3. 3 On the defense side, Google Cloud steps into sci-fi territory, launching quantum-safe digital signatures. It’s like they're prepping for a world where hackers arrive via flux capacitor. Good thing our data will have a quantum shield, or at least a DeLorean speed to dodge them.

+2 more stories

Open briefing →

The rundown

  1. 1 First up, the notorious Lazarus Group has staged a virtual heist, swiping $1.5 billion in cryptocurrency from Bybit. Imagine Bonnie and Clyde, but without the getaway car, just blockchain and a coffee-stained laptop. Bybit insists they're fine, clutching their $20 billion pillow, surely wondering why Tuesday mornings can't just be uneventful.
  2. 2 Next, Europe’s healthcare had an unwelcome guest, NailaoLocker ransomware, bringing the kind of chaos only software villains could relish. The randomness of their choices makes one wonder if these cybercriminals are pulling names out of a hat, today’s target: Healthcare! Surprise, surprise.
  3. 3 In today’s digital crime novel, enter SoaPy, our modern-day Sherlock Holmes, sans deerstalker, snooping through Active Directory secrets like it was made for espionage.

+2 more stories

Open briefing →

The rundown

  1. 1 First up, Apple decided to keep its Advanced Data Protection feature at bay from UK's prying eyes, as the government’s law enforcement's desires resemble toddlers trying to crack open a cookie jar. UK users, you’re now in a digital time-out, enjoy!
  2. 2 Next, in our "this-is-why-we-can't-have-nice-things" segment: over 100,000 victims got an unintended spy buddy from Google Play. Say hello to SpyLend, the mischievous malware that proves not all Play Store apps come with a side of good intentions. So, maybe download caution before your next app!
  3. 3 Dive into another blunder as DM Clinical Research exposes over 1.6 million records thanks to a misconfigured database. Was it a cunning plan, or simply a masterclass trust exercise in cybersecurity? You be the judge!

+3 more stories

Open briefing →

The rundown

  1. 1 First up, South Korea is throwing down the digital gauntlet, yanking the DeepSeek app after it was caught sharing user data with TikTok's over-controversial parent company, ByteDance. It’s almost cinematic, like a privacy thriller no one subscribed to, unless you count FCC's ongoing drama with ByteDance.
  2. 2 Next, in a mash-up stranger than fiction, Hudson Rock has decoded the chilling musings of Black Basta ransomware gang with BlackBastaGPT. Imagine an AI tackling cybercriminal monologues on encryption and Bitcoin. Somewhere, a hacker's group therapy session is missing its opening speech.
  3. 3 Our third story introduces the Salt Typhoon group, smoothly slipping past Cisco's defenses using legitimate creds. Cisco chalks it up to an ancient vulnerability, but we can't help but wonder, did Salt Typhoon unlock some digital Houdini secrets?

+2 more stories

Open briefing →
Newsletter

Subscribe to Our Newsletter

Stay ahead of cyber threats with our weekly insights. Get exclusive access to expert analysis, breaking news, and the latest cybersecurity trends delivered straight to your inbox.

By subscribing you agree to receive the Hacked dAily briefing. Unsubscribe any time: see the privacy notice.