top of page
Cyber Security Hub
Stay updated with the latest news on technology, cybersecurity, market reports
Featured News


Cybersecurity News Roundup (20.7 - 26.7): AI-powered attacks, data breaches and critical vulnerabilities
Stay updated with the latest cybersecurity news from Vietnam and around the world, including AI-powered attacks, data breaches, critical vulnerabilities, and emerging cyber threats affecting businesses.
Jul 27


Cybersecurity landscape in Vietnam – Q2/2026: Key risks and recommendations for businesses
An analysis of Vietnam’s cybersecurity landscape in Q2 2026, covering online fraud, data breaches, malware, AI-powered threats, and key recommendations for businesses.
Jul 23


Last week in cybersecurity (June 22–28): EVN scams alert, AI manipulation, and Linux root-exploiting vulnerability
Explore last week in cybersecurity (June 22–28): EVN warns of fake OTPs, AI agents tricked into executing malware, and the DirtyClone Root flaw. Read now!
Jun 29


Network maintenance for Startups: In-house or Outsourced?
Learn what a startup network maintenance solution should include, how to choose the right support model, and what to look for in a service provider.
Jul 25


Financial sector cybersecurity 2026: Decoding 6 cyberattack trends and proactive defense strategies
Decode 6 financial sector cybersecurity trends in 2026 from Darktrace & Visa. Discover how to combat ransomware and phishing with a 24/7 SOC platform from IPSIP experts!
Jul 7


IPSIP Vietnam Pentest services: Penetration Testing for businesses
IPSIP provides pentest services in Vietnam for websites, APIs, mobile applications, networks, and cloud environments, including reports, remediation consulting, and retesting.
Jul 2


Jewelbug's multi-target attack campaign: When professional hackers scam crypto using AI
We often classify hackers into two distinct groups: cyber spies targeting state secrets on one side, and cybercriminals seeking financial gain on the other. However, a threat actor group known as Jewelbug (believed to be based in China) represents a unique exception.
5 hours ago


Claude code, Gemini CLI and Codex vulnerabilities expose new CI/CD security risks
Security flaws affecting Claude Code, Gemini CLI and Codex show how AI coding agents can expose CI/CD pipelines, source code, credentials and enterprise systems.
5 days ago


Critical Zoom vulnerability: risk of computer takeover via a familiar feature
A critical chain of security vulnerabilities has recently been discovered in Zoom, allowing anyone in a meeting – whether a presenter or an attendee – to take control of other participants' computers.
Aug 12
24H movement


Jewelbug's multi-target attack campaign: When professional hackers scam crypto using AI
We often classify hackers into two distinct groups: cyber spies targeting state secrets on one side, and cybercriminals seeking financial gain on the other. However, a threat actor group known as Jewelbug (believed to be based in China) represents a unique exception.
5 hours ago


Time for a change: When Active Directory is no longer enough to protect your enterprise
Although many organizations have moved most of their applications, devices, and operational workflows to the cloud, their identity management systems remain "bound" to on-premises Active Directory.
5 hours ago


DeadLock changes how ransomware operates with blockchain
DeadLock uses Polygon blockchain and decentralized infrastructure to support extortion operations. Microsoft says over 80 organizations were listed by July 2026.
6 hours ago
All posts


Global super-alliance activates AI shield: Waging war against cybercrime
As digital threats become increasingly sophisticated, more than 30 of the world's leading technology corporations - have joined forces to establish the Open Secure AI Alliance.
Jul 29


OpenAI's AI Agent breaches boundaries to infiltrate second company: A new cybersecurity concern
The incident involving OpenAI's AI agent – AI systems capable of operating autonomously and performing tasks independently – freely operating out of control is becoming the center of attention in the information security community. The latest developments show that the incident is no longer limited to the breach of the Hugging Face platform, but has expanded to a second technology company based in New York, Modal Labs.
Jul 29


More than 70 fake windows app websites caught distributing malware
Researchers have uncovered more than 70 fake Windows application websites distributing malware, highlighting the growing threat of SEO poisoning and unofficial software downloads.
Jul 29


Escalating security crisis: ShinyHunters issues final ultimatum to EY
The notorious extortion group ShinyHunters recently publicly claimed responsibility for the data leak at EY, leaving the enterprise facing a severe cybersecurity challenge.
Jul 28


Adobe Acrobat Chrome vulnerability could expose WhatsApp web data
CVE-2026-48294 in Adobe Acrobat Extension could expose WhatsApp Web data. Learn who is affected, how the attack works, and what businesses should do.
Jul 28


A critical flaw: Is Claude AI's sharing feature secretly exposing your information?
An incident involving Claude AI's link-sharing feature exposed a vast number of private user conversations publicly on search engines. This event has sparked concern across the tech community and served as a warning about data security risks when interacting with artificial intelligence.
Jul 27


Check Point warns of critical vulnerability actively exploited by attackers
Check Point warns that CVE-2026-16232 is being actively exploited in the wild. The vulnerability allows attackers to bypass SmartConsole authentication and gain administrative access to affected systems.
Jul 27


When AI guardrails inadvertently tie the hands of cybersecurity experts
In an effort to prevent hackers from leveraging artificial intelligence (AI) to execute cyberattacks, major tech corporations have established highly stringent regulations. However, these defensive measures have inadvertently become major barriers for cybersecurity professionals themselves.
Jul 24


Instagram, Facebook, Messenger hit by widespread outage again, impacting users and businesses
Social media platforms owned by Meta, including Facebook, Instagram, and Messenger, have just experienced a global service disruption. The incident left thousands of users unable to send messages, refresh news feeds, or access their accounts for hours.
Jul 24


Vietnam proposes a 5% revenue fine for serious data security violations
Vietnam’s Ministry of Public Security proposes fines of up to 5% of revenue for particularly serious violations involving important or core data.
Jul 24


Ubuntu vulnerability CVE-2026-8933 enables root access
CVE-2026-8933 in snap-confine allows a local user to escalate privileges to root. Canonical has released snapd patches for Ubuntu LTS.
Jul 24


Cybersecurity landscape in Vietnam – Q2/2026: Key risks and recommendations for businesses
An analysis of Vietnam’s cybersecurity landscape in Q2 2026, covering online fraud, data breaches, malware, AI-powered threats, and key recommendations for businesses.
Jul 23


OpenAI AI model bypasses testing guardrails, executes unprecedented cyberattack on Hugging Face
A rare cybersecurity incident recently occurred in the tech industry when an artificial intelligence (AI) system developed by OpenAI autonomously escaped its testing environment, connected to the internet, and carried out an intrusion into the servers of Hugging Face - a platform hosting open-source AI models and datasets.
Jul 23


Hackers exploit Palo Alto flaw to deploy Qilin ransomware
Hackers exploited CVE-2026-0257 in Palo Alto PAN-OS to bypass GlobalProtect authentication and deploy Qilin ransomware across enterprise networks.
Jul 23


Zimbra patches vulnerability that allows malicious code to run when users open an email
Zimbra has patched a Stored XSS flaw that allows malicious emails to execute code in user sessions. Organizations should update and investigate promptly.
Jul 22


570 vulnerabilities are just the beginning: Businesses need to change how they manage security patches
Beyond the increasing number of vulnerabilities, the speed of flaw detection and patch release is accelerating thanks to artificial intelligence (AI). This forces organizations to re-evaluate security update processes that have been maintained for years.
Jul 22


ClickLock malware on macOS forces users to enter passwords
ClickLock uses a fake Cloudflare verification page, locks macOS applications, and forces victims to enter passwords to steal data, crypto wallets, and accounts.
Jul 22


WP2Shell WordPress vulnerability enables website takeover without login
WP2Shell combines two WordPress Core flaws that enable unauthenticated attacks. Businesses should patch, investigate compromise, and monitor websites.
Jul 21


292 fake GitHub repositories distribute BoryptGrab malware
Arctic Wolf identified 292 fake GitHub repositories distributing BoryptGrab, targeting browser data, cryptocurrency wallets, and tokens on Windows.
Jul 21


Unpatched security vulnerability in Cursor AI application threatens developer security
A recent report from cybersecurity organization Mindgard has highlighted a dangerous vulnerability in the Windows version of Cursor application, allowing malicious actors to execute code directly on developers' machines.
Jul 20
bottom of page
