SecureWorld News SecureWorld News is your trusted source for the valuable cybersecurity information you depend on. Our coverage spans the InfoSec industry, with content ranging from breaking news and original articles to exclusive research and expert interviews.
- Ghost Ransomware a Persistent Global Threat to Critical Infrastructureby drewt@secureworldexpo.com (Drew Todd) on February 20, 2025 at 9:04 pm
The FBI, CISA, and MS-ISAC have issued a joint cybersecurity advisory warning organizations about Ghost (Cring) ransomware, a sophisticated cyber threat that has been compromising critical infrastructure, businesses, and government entities worldwide. The advisory, part of the #StopRansomware campaign, outlines the attack methods, technical details, and mitigation strategies needed to defend against this persistent ransomware strain.
- Microsoft’s Majorana 1 and the Path to Scalable Quantum Computingby CamS@secureworld.io (Cam Sivesind) on February 20, 2025 at 1:13 pm
Microsoft’s recent announcement of the Majorana 1 chip marks a significant leap toward scalable quantum computing, potentially accelerating the timeline for a commercially viable quantum computer.
- Salt Typhoon Expands Espionage Campaign, Targets Cisco Routersby drewt@secureworldexpo.com (Drew Todd) on February 19, 2025 at 12:26 pm
Chinese cyber espionage group Salt Typhoon has made headlines in the last year, breaching major U.S. telecommunications providers, including AT&T, Verizon, and Lumen Technologies. Now, new research from Recorded Future’s Insikt Group reveals that Salt Typhoon remains active and has expanded its campaign, compromising additional telecom networks across the globe between December 2024 and January 2025.
- IAM Nightmares: The Hidden Risks that Could Cripple Your Securityby Marc Menninger on February 18, 2025 at 12:58 pm
What is IAM, and why should you care?
- Cybersecurity Governance: The Road Ahead in an Era of Constant Evolutionby mlwoodson@msn.com (Michael L. Woodson) on February 17, 2025 at 2:28 pm
Cybersecurity governance has undergone a dramatic transformation over the past few decades. From its early days, where security was an afterthought to business operations, to the present, where it has become a board-level discussion, governance has had to adapt to an ever-evolving digital landscape.
- Romantic Lawsuit for Two? Don’t Let Cybercriminals Scam You this Valentine’s Dayby media@secureworld.io (SecureWorld News Team) on February 14, 2025 at 12:19 pm
Last year saw a 110% rise in cybercrime in the lead up to Valentine’s Day. And 2025 will be no different, as increasingly sophisticated online hackers seek to take advantage of Valentine’s themed email traffic, social media advertisements, or marketing campaigns, and exploit heightened emotions and a desire to connect. Just as Christmas makes us a bit more likely to click on a dodgy parcel delivery text, Valentine’s Day means we are more likely to click on something romance related.
- OmniGPT Data Breach Exposes 30,000 Users and Millions of Chat Messagesby drewt@secureworldexpo.com (Drew Todd) on February 13, 2025 at 11:42 pm
A major security incident has allegedly struck OmniGPT, a popular AI aggregator that provides users access to multiple AI models, including ChatGPT-4, Claude 3.5, Gemini, and Midjourney. A hacker claims to have breached OmniGPT’s infrastructure, leaking a staggering 30,000 user email addresses, phone numbers, and 34 million lines of chat messages. The leaked data reportedly includes API keys, credentials, and file links, raising severe cybersecurity and privacy concerns.
- Understanding the Deepfake Threatby Jatin Mannepalli on February 13, 2025 at 12:28 pm
Deepfakes involve AI-generated synthetic media that convincingly mimics real individuals’ voices and faces. While initially popularized in entertainment and satire, cybercriminals now weaponize this technology for fraud, identity theft, and corporate deception.
- Canada Releases 2025 National Cyber Security Strategyby CamS@secureworld.io (Cam Sivesind) on February 12, 2025 at 4:59 pm
The Honourable David McGuinty, Minister of Public Safety, on February 6th unveiled Canada’s National Cyber Security Strategy (NCSS), a long-term plan to protect Canadians, businesses, and critical infrastructure from an increasingly complex cyber threat landscape.
- UK’s Secret iCloud Backdoor Order Raises Global Security Concernsby drewt@secureworldexpo.com (Drew Todd) on February 11, 2025 at 1:25 pm
A secret order issued by the United Kingdom’s government is sparking global alarm among privacy advocates and cybersecurity experts. According to The Washington Post, the U.K. has directed Apple to create a backdoor into its encrypted iCloud backup service, a move that could have profound implications for digital privacy and security worldwide.
- 4 Most Common Network Attacks and How to Thwart Themby david@macsecurity.net (David Balaban) on February 10, 2025 at 7:06 pm
Thinking of connectivity as the gravity center of every modern organization’s digital ecosystem isn’t a far-fetched perspective. It’s deeply ingrained into the very fabric of collaboration, cloud computing, data sharing, remote work, and customer engagement. All these crucial areas take a major hit when a network attack happens. And, the unfortunate reality is that no network is immune.
- DOGE Initiative Raises Cybersecurity Concerns Over AI Use in Governmentby drewt@secureworldexpo.com (Drew Todd) on February 7, 2025 at 5:16 pm
A recent Washington Post report has revealed that the U.S. Department of Government Efficiency (DOGE) team led by Elon Musk is leveraging artificial intelligence to analyze government spending at the Department of Education (DOE). The initiative aims to identify potential budget cuts and streamline government operations, but cybersecurity experts are raising serious privacy and security concerns about the project.
- U.S. Lawmakers Push to Ban DeepSeek from Government Devicesby drewt@secureworldexpo.com (Drew Todd) on February 6, 2025 at 6:33 pm
The United States is taking a firm stance against potential cybersecurity threats from artificial intelligence (AI) applications with direct ties to foreign adversaries. On February 6, 2025, U.S. Representatives Josh Gottheimer (D-NJ) and Darin LaHood (R-IL) introduced the bipartisan No DeepSeek on Government Devices Act, seeking to prohibit federal employees from using the AI-powered application DeepSeek on government-issued devices.
- Grubhub Suffers Data Breach in Third-Party Vendor Incidentby drewt@secureworldexpo.com (Drew Todd) on February 6, 2025 at 1:23 pm
Grubhub recently confirmed a data breach stemming from a third-party vendor, exposing the ongoing risks associated with supply chain security. While the company assures that sensitive information like full payment details and Social Security numbers were not compromised, the incident serves as another reminder of the vulnerabilities that can arise from external partnerships.
- State of Cybersecurity in Canada 2025: Key Insights for InfoSec Leadersby CamS@secureworld.io (Cam Sivesind) on February 5, 2025 at 12:19 pm
The State of Cybersecurity in Canada 2025 report, published by the Canadian Cybersecurity Network (CCN) and the Security Architecture Podcast, delivers an in-depth analysis of the evolving threat landscape, emerging risks, and strategic recommendations for Canadian organizations. This year’s report underscores the urgency of bolstering national cybersecurity resilience in response to escalating attacks, regulatory shifts, and a persistent talent gap.
- How Website Localization Strengthens Cybersecurity in Global Marketsby trayalex812@gmail.com (Alex Tray) on February 4, 2025 at 10:20 pm
Cybercrime has been steadily on the rise for the past years. Notably, 2024 was unprecedentedly precarious with the second largest in history National Public Data breach and the biggest healthcare data breach to date with the massive attack on Change Healthcare. Nearly 3 billion records were stolen in the U.S., Canada, and the U.K., including such sensitive information as people’s full names, Social Security numbers, addresses, phone numbers, and dates of birth.
- Operation Heart Blocker: International Police Disrupt Phishing Networkby drewt@secureworldexpo.com (Drew Todd) on February 3, 2025 at 11:16 pm
In a significant victory against cybercrime, U.S. and Dutch law enforcement agencies have dismantled 39 domains and their associated servers in an effort to disrupt a Pakistan-based network of online marketplaces selling phishing and fraud-enabling tools. Dubbed Operation Heart Blocker, the coordinated effort targeted a cybercriminal group known as Saim Raza, also operating under the name HeartSender.
- Global Law Enforcement Shuts Down Two of the Largest Cybercrime Forumsby drewt@secureworldexpo.com (Drew Todd) on January 31, 2025 at 12:53 pm
In a coordinated international effort, law enforcement agencies from the United States, Europe, and Australia have dismantled Cracked and Nulled, two of the world’s largest cybercrime marketplaces. These underground forums—home to more than 10 million users—facilitated the trade of stolen data, hacking tools, and cybercrime-as-a-service, making these illicit activities more accessible than ever.
- DeepSeek Data Exposure a Warning for AI Security in 2025by drewt@secureworldexpo.com (Drew Todd) on January 30, 2025 at 5:21 pm
The cybersecurity world has been rocked by yet another example of how poor security practices can put sensitive data at risk—this time involving DeepSeek, a Chinese AI startup making waves with its advanced reasoning model.
- Is Your Cybersecurity Job Burning You Out? How to Spot the Warning Signsby timgreencyber@gmail.com (Tim Green) on January 29, 2025 at 4:09 pm
Working in cybersecurity is demanding. Analysts must investigate and remedy thousands of alerts every day while remaining adaptable to an ever-changing technological landscape.