Meta has revealed that 20,225 Instagram users had their accounts hijacked in a recent incident where attackers used Meta’s AI-powered support system to reset passwords. As BleepingComputer reported one week ago, the threat actors exploited a flaw in the company’s High Touch Support (HTS) tool, an AI-assisted support system that helps users regain access after being locked out of...Read More
TAIPEI (Taiwan News) — The National Institute of Cyber Security (NICS) signed a memorandum of understanding with Microsoft on Monday to strengthen Taiwan’s cyber defenses and resilience. The ceremony was held by NICS President Lin Ying-dar (林盈達) and Microsoft North Asia public affairs head Marcus Bartley Johns. Also attending were Ministry of Digital Affairs Deputy...Read More
The Republic of Moldova initiates the ratification procedure of the Second Additional Protocol to the Council of Europe Convention on Cybercrime. This measure is included in the National Accession Plan for 2025-2029 and the Roadmap for the Rule of Law. The main objective of the treaty is to increase the efficiency of cooperation between states...Read More
Meta has confirmed that a vulnerability in its AI-powered Instagram account recovery system allowed attackers to take over more than 20,000 Instagram accounts. The flaw was found in Meta’s High Touch Support (HTS) tool, an AI-assisted recovery system designed to help users regain access to locked Instagram accounts. According to the company, attackers exploited the...Read More
Evanston Township High School says that a ransomware attack “distrupted access to district systems, internet services, and computer infrastructure” on Sunday, June 7. Because of that, ETHS will be closed on Monday and Tuesday, with all summer school, sports camps, and other on-campus activities cancelled for both days. In a website posting, the school adds...Read More
A cyber extortion group known for targeting law firms and other sensitive industries is now using a fast-flux botnet infrastructure to make its data leak operations harder to track and disrupt, according to new research by Resecurity. The group, known as Silent Ransom Group, or SRG, has been active since at least 2022. It is...Read More
TD Bank is holding a Dartmouth, N.S., man responsible for nearly $15,000 transferred out of his account — but it won’t explain how it determined his account wasn’t hacked. Shakir Ahamed says he was at work last July, handling payroll for the Canadian Coast Guard in the Maritimes, when he received a text from TD...Read More
Cybersecurity researchers have disclosed details of a financially motivated data theft extortion campaign that has targeted dozens of organizations across professional, legal, and financial services in the U.S. between January and May 2026. The activity has been attributed by Google Mandiant and Google Threat Intelligence Group (GTIG) to a threat actor dubbed UNC3753, which is...Read More
This newsletter is brought to you by Truffle Security, the makers of Trufflehog. You can subscribe to an audio version of this newsletter as a podcast by searching for “Risky Business” in your podcatcher or subscribing via this RSS feed. You can also add the Risky Business newsletter as a Preferred Source to your Google...Read More
ESET has released its SMB Cyber Readiness Index 2026, which found that 45% of small and medium-sized businesses experienced a cybersecurity incident in the past year. The report is based on responses from 4,400 cybersecurity decision-makers at businesses with 25 to 1,000 endpoints across 13 countries in North America, Europe and Asia. It found that...Read More