A Cyberattack Just Cost Boston Scientific Its Own Earnings Guidance
Cybersecurity
Bruno Digital · 1h ago

A Cyberattack Just Cost Boston Scientific Its Own Earnings Guidance

Boston Scientific told investors it will miss its own Q3 and full-year sales and profit targets after a late-August cyberattack halted manufacturing and shipping, a reminder that a security incident can move a public company's numbers weeks before anyone confirms what actually happened.

A Cyberattack Just Cost Boston Scientific Its Own Earnings Guidance
Cybersecurity·1h ago

A Cyberattack Just Cost Boston Scientific Its Own Earnings Guidance

Boston Scientific told investors it will miss its own Q3 and full-year sales and profit targets after a late-August cyberattack halted manufacturing and shipping, a reminder that a security incident can move a public company's numbers weeks before anyone confirms what actually happened.

Bruno DigitalRead news
A Chinese Keyboard App Used by 455 Million People Became a Nation State Backdoor's Delivery Vehicle
Cybersecurity·1h ago

A Chinese Keyboard App Used by 455 Million People Became a Nation State Backdoor's Delivery Vehicle

A China-aligned hacking group chained a flaw in Tencent's Sogou Input Method to an eight-year-old browser bug to install a custom backdoor, and the patch fixed the entry point without touching the outdated engine underneath it.

Bruno DigitalRead news
Check Point Found Two Perfect Score VPN Flaws Before Anyone Else Did
Cybersecurity·1h ago

Check Point Found Two Perfect Score VPN Flaws Before Anyone Else Did

Two CVSS 9.8 bugs in how Check Point gateways validate VPN certificates could have handed attackers unauthenticated remote code execution, and the company found both internally before criminals did.

Bruno DigitalRead news
Cisco, Citrix and Fortinet Flaws Land on CISA's Must Patch List in the Same Week
Cybersecurity·1h ago

Cisco, Citrix and Fortinet Flaws Land on CISA's Must Patch List in the Same Week

CISA gave federal agencies until September 12 to patch a perfect score Cisco bug, a critical Citrix flaw and a Fortinet buffer overflow already being used to deploy a custom remote access trojan.

Bruno DigitalRead news
Two Ransomware Gangs Claimed the Same Home Health Provider and Neither Confirmation Came From the Company
Cybersecurity·1d ago

Two Ransomware Gangs Claimed the Same Home Health Provider and Neither Confirmation Came From the Company

Interim HealthCare disclosed a breach through a routine regulatory filing while two separate ransomware groups, including a newcomer called GENESIS, claimed credit on dark web leak sites weeks apart.

Bruno DigitalRead news
Anthropic's Own Threat Report Shows Claude Being Used Against Anthropic's Customers
Cybersecurity·1d ago

Anthropic's Own Threat Report Shows Claude Being Used Against Anthropic's Customers

A 154-page Anthropic threat intelligence report documents state-backed hackers and financially motivated criminals using Claude for autonomous reconnaissance, credential harvesting, and malware rebuilding at a scale that used to require a nation-state budget.

Bruno DigitalRead news
A Broken SSO Scope Check at a Marketing Platform Turned Into a Coordinated Attack on Crypto Wallet Makers
Cybersecurity·1d ago

A Broken SSO Scope Check at a Marketing Platform Turned Into a Coordinated Attack on Crypto Wallet Makers

A single sign-on misconfiguration at email marketing vendor Brevo let an attacker reach customer lists across 138 accounts, and Trezor, BitBox, and CoinTracking all got hit by the same campaign.

Bruno DigitalRead news
A Perfect Score GitLab Flaw Was Under Active Attack Before Most Teams Even Read the Advisory
Cybersecurity·1d ago

A Perfect Score GitLab Flaw Was Under Active Attack Before Most Teams Even Read the Advisory

A maximum severity path traversal bug in GitLab's commits API let unauthenticated attackers read arbitrary server files, and in-the-wild probing started within hours of disclosure.

Bruno DigitalRead news
ShinyHunters Says It Walked Into Florida's DMV Through a Password Reset and an FBI Agent's Account
Cybersecurity·4d ago

ShinyHunters Says It Walked Into Florida's DMV Through a Password Reset and an FBI Agent's Account

ShinyHunters claims it stole over 200,000 Florida driver records, including Social Security numbers and photographs, by abusing a password-reset flaw to hijack DMV employee and law enforcement accounts, and is giving the state until September 11 to negotiate before releasing the data.

Bruno DigitalRead news
CISA Names Six Chinese AI Firms in an Industrial-Scale Campaign to Copy American Models
Cybersecurity·4d ago

CISA Names Six Chinese AI Firms in an Industrial-Scale Campaign to Copy American Models

A joint CISA, NSA, and FBI advisory says DeepSeek, Alibaba, Moonshot AI, MiniMax, StepFun, and Z.AI have run coordinated extraction campaigns against Claude, GPT, Gemini, and Grok since late 2024, using gray-market API proxies and pooled accounts to strip out restricted capabilities at industrial scale.

Bruno DigitalRead news
A Fileless Rootkit Called PoisonedRefresh Is Living Inside F5 BIG-IP Memory, Untouched by Disk Scans
Cybersecurity·4d ago

A Fileless Rootkit Called PoisonedRefresh Is Living Inside F5 BIG-IP Memory, Untouched by Disk Scans

Researchers at Sophos and ESET disclosed PoisonedRefresh, a rootkit that injects a PHP web shell directly into F5 BIG-IP APM memory rather than disk, exploiting a vulnerability F5 patched nearly a year ago in devices that guard access for enterprises, banks, and government agencies.

Bruno DigitalRead news
Microsoft's Record 966-Flaw Patch Tuesday Buries Two Zero-Days Already Under Attack
Cybersecurity·4d ago

Microsoft's Record 966-Flaw Patch Tuesday Buries Two Zero-Days Already Under Attack

Microsoft's September 2026 Patch Tuesday fixed 966 vulnerabilities, the largest release in its history, including two Windows privilege-escalation zero-days already being exploited and a 9.8-severity DNS Server flaw Microsoft rates likely to be attacked next.

Bruno DigitalRead news