Apple starts issuing lightweight security updates between software releases

Apple is delivering small security updates, called Background Security Improvements, starting with iOS 26.1, iPadOS 26.1, and macOS 26.1. Apple describes Background Security Improvements as lightweight security releases for components such as Safari, t… Continue reading Apple starts issuing lightweight security updates between software releases

Big tech companies step in to support the open source security ecosystem

Backed by new funding commitments from major technology players, open source security efforts are moving beyond threat identification toward practical solutions for defenders. The Linux Foundation announced $12.5 million in grant funding backed by Anth… Continue reading Big tech companies step in to support the open source security ecosystem

Cybercriminals scale up, government sector hit hardest

Government agencies faced the highest volume of cyberattack campaigns in 2025, according to new findings from HPE Threat Labs, which tracked 1,186 active campaigns over the course of the year. The data covers activity observed between January 1 and Dec… Continue reading Cybercriminals scale up, government sector hit hardest

EU sanctions Chinese company behind 65,000-device hack

The EU Council has sanctioned companies from China and Iran, along with two individuals, over cyberattacks targeting its member states and partners. “Those listed are subject to an asset freeze, while EU citizens and companies are prohibited from provi… Continue reading EU sanctions Chinese company behind 65,000-device hack

Millions of UK firms on alert after Companies House data exposure

Companies House, the UK’s official company registry, said its WebFiling service is back online after being shut down on Friday to fix a security issue that may have exposed the personal data of millions of firms. An investigation indicates the flaw was… Continue reading Millions of UK firms on alert after Companies House data exposure

Hidden instructions in README files can make AI agents leak data

Developers rely on AI coding agents to set up projects, install dependencies, and run commands by following instructions in repository README files, which provide setup guidance for software projects. New research identifies a security risk when attack… Continue reading Hidden instructions in README files can make AI agents leak data

45,000 malicious IP addresses taken down, 94 suspects arrested

An international law enforcement operation has taken down more than 45,000 malicious IP addresses and servers linked to phishing, malware, and ransomware activity. The action was carried out as part of Operation Synergia III, an investigation that ran … Continue reading 45,000 malicious IP addresses taken down, 94 suspects arrested