Italy fines Apple €98.6 million over ATT rules restricting App Store competition

December 24, 2025Ravi LakshmananPrivacy/Antitrust Law Apple has been fined €98.6 million ($116 million) by Italian antitrust authorities after its App Tracking Transparency (ATT) privacy framework was found to be restricting competition on the App Store. The Italian competition authority (Autorità Garante della Concorrenza e del Mercato, or AGCM) said the company’s “absolute dominant position” in […]

Two Chrome extensions discovered to be secretly stealing credentials from over 170 sites

Cybersecurity researchers have discovered two malicious Google Chrome extensions with the same name and published by the same developer that have the ability to intercept traffic and capture user credentials. The extension is advertised as a “multi-location network speed test plugin” for developers and trade professionals. At the time of writing, both browser add-ons are […]

Interpol arrests 574 people in Africa. Ukrainian ransomware company pleads guilty

A law enforcement operation coordinated by Interpol led to the recovery of $3 million and the arrest of 574 suspects by authorities in 19 countries as the crackdown on cybercrime networks continues in Africa. The coordinated effort, named Operation Sentinel, ran from October 27 to November 27, 2025, and primarily focused on business email compromise […]

Google Workspace password manager tutorial

Passwd is specifically designed for organizations operating within Google Workspace. Rather than competing as a consumer password manager, its purpose is narrow and business-focused, including secure credential storage, controlled sharing, and seamless Workspace integration. The platform emphasizes practicality over feature plethora, and aims to provide a reliable system for teams that already rely on Google […]

Critical flaw in n8n (CVSS 9.9) allows arbitrary code execution across thousands of instances

December 23, 2025Ravi LakshmananVulnerability/Workflow Automation A critical security vulnerability has been disclosed in the n8n workflow automation platform that, if successfully exploited, could lead to arbitrary code execution under certain circumstances. This vulnerability is tracked as CVE-2025-68613 and has a CVSS score of 9.9 out of a maximum of 10.0. According to npm statistics, this […]

FCC bans foreign-made drones and key components due to US national security risks

December 23, 2025Ravi LakshmananCybersecurity/Surveillance The Federal Communications Commission (FCC) on Monday announced a ban on all foreign-made drones and critical components, citing national security concerns. To this end, the agency has added foreign-manufactured unmanned aircraft systems (UAS) and critical components of UAS, as well as all communications and video surveillance equipment and services, to the […]

Defining proactive cloud security with new layers of defense

One thing remains constant when it comes to cybersecurity. That means the threat landscape continues to evolve rapidly. To strengthen organizational resiliency, defenders need proactive visibility and tools across endpoints, developer environments, and cryptographic stacks to stay several steps ahead of attackers. In this webinar, experts from the Zscaler Internet Access Product team discuss the […]

The hidden threat of security vendor acquisitions

Imagine this. wake up call On January 2, the phone rang. They are the DevSecOps group and the AppSec group. Critical security vulnerabilities are negatively impacting your business, and your team is desperately trying to find and fix them to protect your data. You probably have scars going back to Log4j, as well as hearing […]

The hidden threat of security vendor acquisitions

Imagine this. wake up call On January 2, the phone rang. They are the DevSecOps group and the AppSec group. Critical security vulnerabilities are negatively impacting your business, and your team is desperately trying to find and fix them to protect your data. You probably have scars going back to Log4j, as well as hearing […]