Friday, April 24, 2026
HomeCybersecurity News

Cybersecurity News

Polish Authorities Arrest Suspected Russian Hacker Targeting Local Organizations

Polish law enforcement has detained a Russian national accused of hacking into an online store's systems, marking a significant win against cross-border cybercrime. On November 16, 2025, officers from the Central Bureau for Combating Cybercrime (CBCB) in Krakow arrested the suspect during an investigation...

Critical NVIDIA DGX Spark Flaws Allow Malicious Code Execution and Denial-of-Service Attacks

NVIDIA disclosed 14 vulnerabilities in its DGX Spark GB10 AI workstation on November 25, 2025, affecting all DGX OS versions before OTA0. These flaws, mainly in the SROOT firmware and hardware resources, enable local attackers with privileged access to bypass protections, leading to remote...

SitusAMC Data Breach Exposes Financial Records and Confidential Legal Documents

Retail finance firm SitusAMC confirmed a data breach on November 12, 2025. The incident compromised sensitive corporate data, including accounting records like invoices and legal agreements. Some client customer information also faced risks. The company detected unusual activity and launched an investigation with third-party...

Iberia Airlines Data Breach Exposes Customer Names and Email Addresses

Iberia Airlines, Spain's flagship carrier, confirmed a cybersecurity incident that exposed sensitive customer data. Attackers gained unauthorized access to a third-party provider's systems, compromising names, email addresses, and Iberia Club loyalty program IDs for an undisclosed number of users. The breach falls under the...

Tenda N300 Vulnerabilities Allow Remote Attackers To Execute Commands As Root

Remote attackers can seize complete control of popular Tenda routers through serious command injection flaws, security researchers warn. Affecting the Tenda N300 series and Tenda 4G03 Pro portable 4G LTE devices, these vulnerabilities let authenticated users run any command as the powerful "root" superuser....

Remote Code Execution Enabled By Malicious Payloads Through vLLM Vulnerability

A serious flaw in the popular vLLM library could let attackers crash servers or even run malicious code remotely. Security researcher Russellb disclosed the issue last week via GitHub Advisory. Rated "High" severity, it affects vLLM versions 0.10.2 and later, with no patch available...