- Vercel confirms data breach linked to third-party AI tool: All you need to know 2026-04-20 09:32 The Indian Express Vercel, a platform that offers hosting and deployment infrastructure for front-end developers, has confirmed a security incident in which hackers breached its systems and stole data.Only a small number of customers were affected by the breach, which was …
- Over 200 Japanese firms have paid ransomware attackers; 60% fail to recover data 2026-04-20 08:44 Japan Today At least 222 Japanese companies have paid ransomware attackers in the past, yet about 60 percent of them still failed to recover their data, according to a recent survey. Of 1,107 firms that responded to a January survey by the Japan Institute for …
- ‘Phishing, smishing, vishing’: Cowbell shares claims data 2026-04-20 08:43 Insurance News Ransom payments are falling even as AI accelerates cyberattacks and claims activity rises, specialist insurer Cowbell says. Ransomware made up 19% of Cowbell claims between 2022 and last year. At the same time, average ransom payments fell 44%, reflecting …
- Booking dot com data breach customers fall prey to Reservation Hijacks 2026-04-20 08:07 Cybersecurity Insiders A week after Booking.com disclosed a potential data breach, concerns continue to grow about the safety of customer information. The company acknowledged that hackers may have gained unauthorized access to certain user details. According to its official …
- Cyberflashing and sextortion: Luxembourg moves to tighten laws against cyberviolence 2026-04-20 07:25 RTL Today As cases of online harassment and the non-consensual sharing of intimate images continue to rise, the Luxembourg government is moving to strengthen its legal framework against cyberviolence. It may sound like a cliché, but it remains true: the internet …
- Over 200 Japanese firms paid ransomware attackers, 60% fail to recover data 2026-04-20 07:12 The Mainichi This photo shows a website on which hackers demand ransom. (A portion of this image has been obscured)(Kyodo) TOKYO (Kyodo) -- At least 222 Japanese companies have paid ransomware attackers in the past, yet about 60 percent of them still failed to recover …
- Standard Bank data breach fallout deepens 2026-04-20 06:06 Windhoek Observer Standard Bank has acknowledged that client data stolen in a cyber incident first disclosed on 23 March, “now appears to have been published” online, marking a significant escalation in what appears to be one of South Africa’s most serious financial …
- WitFoo opens 100 million-record cyber attack dataset 2026-04-20 05:44 SecurityBrief WitFoo has released the Precinct 6 Cybersecurity Dataset as open source. It contains 100 million structured, labelled security event records drawn from live attack traffic. Created in collaboration with the University of Canterbury, the collection is …
- Veeam report flags ransomware threat to data recovery 2026-04-20 05:04 ETCISO.in Veeam’s Data Trust and Resilience Report 2026, based on responses from more than 900 senior IT, security and risk leaders worldwide, points to a gap between confidence in cyber recovery and actual recovery outcomes. According to the report, 90% of …
- Just like phishing for gullible humans, prompt injecting AIs is here to stay 2026-04-20 04:39 The Register kettle It's a week of the year, which means there's been the discovery of yet another prompt injection attack that will force supposedly well-guarded AI bots to spill secrets by asking the right way. When you think about it, humans and LLMs share …
- Vercel Confirms Data Breach — Hackers Claim Access to Internal Systems 2026-04-20 04:04 Cyber Security News Vercel has disclosed a significant security incident after threat actors gained unauthorized access to internal systems, with a hacker group reportedly attempting to sell stolen data for $2 million on underground forums. Vercel, one of the most widely used …
- This android malware can control your phone without you knowing 2026-04-20 03:48 News9 Live A new Android malware is spreading through fake apps and phishing links, giving hackers deep access to smartphones. It can read messages, track activity, and even control key functions without the user knowing. Fake Android apps can secretly take control …
- Data Breach Alert: Edelson Lechtzin LLP Investigates Reported P3 Global Intel Incident 2026-04-20 02:25 EIN Presswire NEWTOWN, Pa., April 19, 2026 (GLOBE NEWSWIRE) -- Edelson Lechtzin LLP, a national class action law firm, is investigating data privacy claims arising from a reported P3 Global Intel data breach in mid‑March 2026. According to news reports on or about March …
- Humana, Inc. Data Breach: Edelson Lechtzin LLP Launches Investigation Into Exposure of Social Security Numbers, Medical Claims, and Patient Account Data 2026-04-20 01:41 EIN Presswire LOUISVILLE, Ky., April 19, 2026 (GLOBE NEWSWIRE) -- Edelson Lechtzin LLP, a national class action law firm, is investigating data privacy claims arising from the Humana, Inc. data breach. Humana discovered unauthorized access to certain internal systems on …
- Indonesia suspends game rating system after data breach 2026-04-19 19:35 The Jakarta Post he government has suspended the issuance of age ratings under the Indonesia Game Rating System (IGRS) following a reported data breach, though this will not prevent video games from entering the domestic market, officials have said. The pause is part of a …
- ATHR turns callback phishing into a packaged AI vishing operation 2026-04-19 19:33 VPNCentral A cybercrime platform called ATHR appears to package the full callback-phishing chain into one browser-based system, making it easier for attackers to run phone-led scams at scale. Abnormal Security says ATHR combines phishing email delivery, AI voice …
- Payouts King appears to carry forward Black Basta’s playbook with a sharper ransomware package 2026-04-19 19:33 VPNCentral A ransomware group called Payouts King has emerged as a credible threat, and Zscaler says several recent attacks tie back with high confidence to operators consistent with former Black Basta initial access brokers. The company’s researchers say those …
- ZionSiphon malware appears built to sabotage Israeli water systems, but researchers say this sample is incomplete 2026-04-19 19:33 VPNCentral A newly analyzed malware strain called ZionSiphon appears designed to target Israeli water treatment and desalination environments, with code that points to chlorine control and pressure manipulation inside operational technology networks. Darktrace, which …
- Kansas Governor signs Caleb’s Law, targeting online sextortion of minors 2026-04-19 17:48 KCTV 5 - Kansas KANSAS CITY, Mo. (KCTV) - Kansas Governor Laura Kelly has signed Caleb’s Law, strengthening penalties for online sexual extortion targeting children. Governor Kelly says the law is named after Caleb Moore, a 14-year-old from El Dorado, who died by suicide …
- Leisure site counting cost after another cyberattack 2026-04-19 15:26 KentOnline A family entertainment centre says it has been targeted by a hacker again, three years after losing “tens of thousands” of pounds in a similar attack. Alex and Monique Souter, who own The Panic Room based at the St George's Centre in Gravesend, say …
- City of Tallahassee targeted by cyberattack; website briefly taken down 2026-04-19 13:26 Tallahassee Democrat - Florida April 17, 2026Updated April 18, 2026, 11:54 a.m. ET The city of Tallahassee confirmed it was the target of a cyberattack on Friday morning. City staff responded by isolating the threat, though periodic downtimes are possible during maintenance. Leon County …
- Police warn against phishing scams via Google Meet video calls involving fake cops 2026-04-19 11:19 The Straits Times SINGAPORE – There have been 13 cases of phishing scams reported since April 1 that involve Google Meet video calls by individuals impersonating police officers. In an advisory on April 19, the police said the total losses during this period amounted to at …
- BREAKING: CAC Shuts Down Company Registration Portal for 3 Days After Cyberattack Hits Nigerian Business Database 2026-04-19 10:16 Tell
- ‘Part-time job’ in voice phishing lands young Korean in prison 2026-04-19 10:10 Korea Herald A 27-year-old defendant who took part in a voice phishing scam was sentenced to a year in prison, court officials said Sunday. The defendant was found guilty of violating the law on telecommunications-based financial fraud, defrauding victims of a total of …
- ODPC faults LOLC Kenya over data breach, orders deletion of client data 2026-04-19 08:30 Capital FM Kenya NAIROBI, Kenya, April 19 – The Office of the Data Protection Commissioner (ODPC) has found LOLC Kenya Microfinance Bank Limited liable for unlawfully processing and publishing a former employee’s personal data, in a ruling that reinforces oversight on …
- Nexcorium-Associated Mirai Variant Uses TBK DVR Exploit to Scale Botnet Operations 2026-04-19 07:23 Cyber Security News A new iteration of the notorious Mirai botnet, dubbed Nexcorium, has emerged in the wild, aggressively targeting internet-connected video recording devices. According to recent threat research published by Fortinet’s FortiGuard Labs, threat actors are …
- Operation PowerOFF: 75K Users of DDoS-for-Hire Services Identified and Warned 2026-04-19 04:34 Hackread Law enforcement teams have completed an intense week of action against illegal DDoS-for-hire services as part of the long-running Operation PowerOFF. This joint operation comprises teams from 21 countries and targets services that facilitate Distributed …
- Memorial Heart Institute Agrees To $3.75 Million Data Breach Settlement 2026-04-19 04:29 The Chattanoogan - Tennessee Memorial Heart Institute has agreed to pay $3.75 million to settle a class action lawsuit involving a data breach between March 8 and March 16, 223. Attorneys said class members are living individuals whose private information the Chattanooga Heart …
- Fusion Superplex hit by cyberattack, ticketing taken offline 2026-04-19 03:59 Eye Witness News In a statement posted its Facebook page, the company said the attack was carried out by a ransomware group linked to a previous 2024 cyber incident involving a London hospital. The breach impacted server infrastructure, temporarily affecting the IMAX …
- Mirai Variant Nexcorium Exploits CVE-2024-3721 to Hijack TBK DVRs for DDoS Botnet 2026-04-19 03:19 The Hacker News Threat actors are exploiting security flaws in TBK DVR and end‑of‑life (EoL) TP-Link Wi-Fi routers to deploy Mirai-botnet variants on compromised devices, according to findings from Fortinet FortiGuard Labs and Palo Alto Networks Unit 42. The attack …
- Latin American Online Banking Users Targeted by JanelaRAT Malware 2026-04-19 01:13 Fintech Review Latin American online banking users face a threat from an updated version of the JanelaRAT malware, warns the cybersecurity team at Kaspersky. The company’s Global Research and Analysis Team (GReAT) stumbled upon the malware. Surprisingly, it had cleverly …
- City of Tallahassee technology systems hit by cyberattack Friday, officials report no operational impacts 2026-04-19 00:57 WTXL Tallahassee - Florida TALLAHASSEE, FL — The City of Tallahassee experienced an attack affecting portions of its technology environment on Friday morning, according to an email sent to city leaders. READ EMAIL BELOW: City of Tallahassee Assistant City Manager Christian Doolin …
- Hidden VMs: how hackers leverage QEMU to stealthily steal data and spread malware 2026-04-19 00:49 Security Affairs Hidden VMs: how hackers leverage QEMU to stealthily steal data and spread malware Attackers abuse QEMU to hide malware in virtual machines, bypass detection, steal data, and deploy ransomware without leaving any trace. Sophos researchers report a rise in …
- This free web app saved me from installing malware more times than I'd like to admit 2026-04-19 00:20 MakeUseOf Regardless of whether it's for an article or for my own use, I'm a sucker for free software. I'm also rather fond of keeping my PC running smoothly and checking to ensure that the files I've just downloaded are safe. Any time I download …
- Security Bite: ClickFix malware authors already bypassing Apple’s new Terminal paste warning 2026-04-19 00:14 9to5Mac 9to5Mac Security Bite is exclusively brought to you by Mosyle, the only Apple Unified Platform. Making Apple devices work-ready and enterprise-safe is all we do. Our unique integrated approach to management and security combines state-of-the-art Apple- …
- Nexcorium Mirai Variant Weaponises TBK DVR Vulnerability in Fresh IoT Botnet Push 2026-04-18 23:44 GBHackers A newly discovered Mirai malware variant named Nexcorium is actively targeting unpatched Internet of Things (IoT) devices. According to recent threat research from FortiGuard Labs, attackers are exploiting a severe vulnerability in TBK DVR systems to build …
- Donʻt get hooked: University of Hawaiʻi Maui College presents real-life phishing stories 2026-04-18 23:07 Big Island Now - Hawaii April 18, 2026, 1:00 PM HST “Hook, Line and Sinker: Real Stories of Successful Phishing Attacks” is the fourth and final session in a series of free cybersecurity Zoom clinics presented by University of Hawaiʻi Maui College for sole proprietors and …
- 30 WordPress Plugins Turned Into Malware After Ownership Change 2026-04-18 23:01 Slashdot Wednesday BleepingComputer reported that more than 30 WordPress plugins "have been compromised with malicious code that allows unauthorized access to websites running them." A malicious actor planted the backdoor code last year but only recently …
- Nigeria’s Company Registry Hit by Cyberattack, Portal Shut for Three Days 2026-04-18 22:01 News Ghana Nigeria’s Corporate Affairs Commission (CAC), the country’s primary company registration body, has confirmed a cyberattack on its information systems, prompting a temporary suspension of its online portal and triggering a formal investigation by data …
- How to file a payout claim in Comcast's $117.5 million data breach settlement 2026-04-18 21:02 Philly Voice - Pennsylvania More than 30 million people in the United States are estimated to be eligible for payouts in Comcast's $117.5 million settlement of a class-action lawsuit that stemmed from a data breach in October 2023. The Philadelphia-based cable and internet giant …
- NDPC probes suspected data breach at CAC, orders system-wide security review 2026-04-18 19:50 Abuja Inquirer The Nigeria Data Protection Commission, NDPC, has commenced an investigation into a suspected data breach at the Corporate Affairs Commission, CAC, in line with its mandate under the Nigeria Data Protection Act, 2023. The move highlights the Commission’s …
- Fake Proton VPN sites and gaming mods spread NWHStealer in new Windows malware campaign 2026-04-18 19:32 VPNCentral A new malware campaign is pushing NWHStealer through fake Proton VPN sites, gaming mods, hardware tools, and download links shared across GitHub, GitLab, SourceForge, MediaFire, and YouTube. Malwarebytes says the stealer targets browser data, saved …
- Hackers abuse n8n AI workflow automation to deliver malware through trusted webhooks 2026-04-18 19:32 VPNCentral Threat actors are abusing n8n, a legitimate workflow automation platform, to send phishing emails, fingerprint devices, and deliver malware through trusted *.app.n8n.cloud webhook URLs. Cisco Talos says the activity ran from at least October 2025 through …
- Hackers target old TP-Link routers in Mirai malware campaign tied to CVE-2023-33538 2026-04-18 19:32 VPNCentral Hackers are actively trying to compromise several older TP-Link routers through CVE-2023-33538, a command injection flaw that affects end-of-life models. The risk is real because CISA has already listed the bug in its Known Exploited Vulnerabilities …
- From a Booking.com Breach to YouTube Phishing: The Internet's Security Problem Just Got Worse This Week 2026-04-18 18:09 PC Magazine We need to talk about Anthropic’s Claude Mythos AI model. It’s not even out yet, and Anthropic is keeping it close to its pocket for the time being, but it’s already sent the security world into a tailspin. The model is apparently powerful enough to find …
- Police Send 'Warning Emails' to 75,000 Suspected DDoS Attackers 2026-04-18 18:07 PC Magazine To stop people from buying services to launch DDoS attacks, European law enforcement has decided to message over 75,000 suspected culprits, telling them to knock it off. Europol announced the measure as part of a new crackdown on DDoS attack services, …
- Microsoft, Apple, Google, Amazon Top Phishing Targets as Check Point Flags Surge in Brand Impersonation Attacks 2026-04-18 17:24 International Business Times Singapore Cybercriminals are increasingly exploiting trusted tech giants like Microsoft, Apple, Google and Amazon as primary entry points for phishing attacks, according to new research by Check Point. In its Q1 2026 analysis, Check Point Research found that …
- McGraw Hill confirms data breach after leaked dataset exposes 13.5 million email addresses 2026-04-18 17:08 VPNCentral McGraw Hill has confirmed a data breach tied to a Salesforce-related misconfiguration, after an extortion attempt ended with stolen data being released online. Independent breach tracking by Have I Been Pwned says the exposed dataset contains 13.5 million …
- #housing: Facebook Group Admin Fined for Privacy Breach in Landmark Tenant Case 2026-04-18 16:46 Waatea News A Facebook group administrator has been ordered to pay $7,500 in damages after breaching the Privacy Act, in a case highlighting growing concerns around the sharing of personal information online. The Human Rights Review Tribunal ruled against the …
- NDPC investigates CAC’s alleged data breach, issues data protection advisory 2026-04-18 15:54 Premium Times The Nigeria Data Protection Commission (NDPC) says it has commenced an investigation into the alleged breach of information systems at the Corporate Affairs Commission (CAC), issuing a regulatory advisory to counter the escalating threats to data security …