Feds: AI-Assisted Attacks on Critical PLCs Are Here
Government agencies warn of active exploitation of Siemens S7 controllers using AI-generated attack code.
Data breaches, ransomware payouts, and phishing operations rarely make the news until the damage is already done. This is where Xploitwire tracks the attackers — who they are, how they got in, and what it means for the organizations and people caught in the blast radius.
Government agencies warn of active exploitation of Siemens S7 controllers using AI-generated attack code.
CISA adds four actively exploited vulnerabilities affecting macOS, SharePoint, vCenter, and Windows IKE to its KEV catalog.
US charges 17 Iran-linked hackers for global academic data theft, offers $10M rewards for five.
Australian apart-hotel chain Quest warns guests of a data breach via a third-party provider, risking identity fraud.
A ransomware affiliate is contacting victims, offering to delete stolen data for $20,000–$60,000. Experts call it a scam.
Pokémon Center UK cancels orders after logistics partner CEVA suffers cyberattack, exposing customer data.
France's tax agency says 678,000 people had data stolen in a credential-based attack.
Cyber CrimeNIELIT Launches National Cyber Security And AI Hackathon ‘Cyber Kushti 2026’
GE and Philips confirm probing Clop breach claims as the gang's PTC Windchill attacks ripple through enterprise giants.
Arrests in Brazil and Europe follow a €30M bank fraud exploiting a service provider's software flaw.
Fortra researchers verified ExfilSquad's access to sensitive data from 13 organizations, likely via misconfigured Power Pages portals.
Fraudsters abuse Shopify's notification system, embedding contact info in shipping addresses to trick victims into sending money.
ShinyHunters leaks data from 1.6 million RingCentral accounts after July hack.
A new Mirai-based Linux botnet uses encrypted C2, SOCKS proxies, and exploits in routers to hijack edge devices.
Ukraine shuts down 94 fraudulent call centers, seizes $2M and equipment, targeting investment scams and bank fraud.
Jewelbug hackers run espionage and crypto fraud from the same control panel, targeting government webmail.
AI agents breached Taiwan's nuclear safety agency, raising stakes for defenders.
Hundreds of malicious Chrome extensions impersonate VPNs, routing user traffic through a proxy.
Helix extortion crew claims theft of nearly a million files from Uber Freight, but the logistics arm says operations are unaffected.
New Android botnet version uses HTTP/2 floods and ENS to hide command-and-control traffic.