
Articles
-
2 days ago |
securityweek.com | Ionut Arghire
Google has agreed to pay $1.375 billion to Texas to settle allegations that it was tracking users’ location even when the feature was disabled, tracking their internet activity in private browsing, and using their biometric data without consent, Attorney General Ken Paxton announced.
-
2 days ago |
securityweek.com | Ionut Arghire
More than 437,000 patients were impacted by a recently disclosed data breach, non-profit healthcare system Ascension Health told the US Department of Health and Human Services (HHS). The incident did not involve Ascension Health’s systems, but a business partner to which Ascension inadvertently exposed patient data, the organization said roughly two weeks ago. The data, Ascension said, was stolen after hackers targeted a vulnerability in third-party software the business partner was using.
-
2 days ago |
securityweek.com | Ionut Arghire
Two vulnerabilities in DriverHub, a driver software that comes pre-installed on Asus motherboards, can be exploited remotely for arbitrary code execution, New Zealand researcher ‘MrBruh’ says. The issues, tracked as CVE-2025-3462 (CVSS score of 8.4) and CVE-2025-3463 (CVSS score of 9.4) could be exploited via crafted HTTP requeststo interact with DriverHub.
-
3 days ago |
securityweek.com | Ionut Arghire
German authorities have announced the takedown of eXch, a cryptocurrency exchange allegedly involved in money laundering and in supporting criminal operations. Established since 2014, eXch provided cryptocurrency swapping services and was advertised on underground platforms as lacking anti-money laundering measures, Germany’s Federal Criminal Police Office (BKA) says.
-
5 days ago |
securityweek.com | Ionut Arghire
A threat actor published three malicious versions of the popular NPM package ‘rand-user-agent’ to deploy and activate a remote access trojan (RAT) on users’ systems. A Node.js package that has been deprecated, rand-user-agent generates randomized user-agent strings based on occurrence. It was originally built as a functionality tool for Romanian software development firm WebScrapingAPI, but can be integrated into any node.js project for web scraping.
Try JournoFinder For Free
Search and contact over 1M+ journalist profiles, browse 100M+ articles, and unlock powerful PR tools.
Start Your 7-Day Free Trial →X (formerly Twitter)
- Followers
- 1K
- Tweets
- 14K
- DMs Open
- No
Extortion group hacks African telecom giant MTN https://t.co/2Tecz4dDwi
SecurityWeek's CISO Forum 2025 Outlook: Session 2 going live at 1PM ET today https://t.co/RfMlqG0Nm6
SecurityWeek's Cyber Insights 2025 series kicks off with Cyber Threat Intelligence https://t.co/WrdMw56eMP