PNLD data breach: leaked contact details revealed
The PNLD data breach confirmed that police, government, and customer contact details were exposed on the dark web. PNLD says there’s no evidence passwords or other credentials were compromised.
The PNLD data breach confirmed that police, government, and customer contact details were exposed on the dark web. PNLD says there’s no evidence passwords or other credentials were compromised.
New details suggest the US water cyberattacks extend well beyond Minnesota, with other states confirming malicious activity. Authorities also emphasize protections for OT systems.
Thermo Fisher patches a vulnerability in selected Applied Biosystems human identification software. With updates using digital signatures, manipulating DNA files becomes easier to detect.
Attackers exploited an authentication bypass to take over N-central servers and reach managed endpoints. N-able’s initial fix didn’t fully close the gap, so every customer must upgrade to 2026.3.1.7.
Researchers disclosed FaceHugger flaws that can enable arbitrary code execution when Diffusers loads crafted model repositories. Fixes landed in Diffusers 0.38.0.
OpenAI hints at Astra, its next major model, reporting internal results on 10 long-unsolved math and computer science problems. It also describes formal proofs verified via Lean certificates.
Google is working on a Chrome feature that blocks policy extensions on unmanaged devices when they take over the New Tab page or search engine. This reduces the likelihood of hijackers by limiting the “implicit trust” in local policy keys.
A Coldcard hardware wallet flaw was linked to the rapid theft of about $70M in Bitcoin. Research explains how a weak seed-generation path could let attackers guess seeds offline.
Balance Theory secured $19 million in Series A funding to expand its platform for cybersecurity spending management. The system connects investment planning with market intelligence and automated execution.
A new Rails critical vulnerability (CVE-2026-66066) was patched after reports that unauthenticated attackers could read arbitrary server files. In some setups, that exposure could lead to remote code execution.