top of page
Cyber Security Hub
Stay updated with the latest news on technology, cybersecurity, market reports
Featured News


Cybersecurity News Roundup (20.7 - 26.7): AI-powered attacks, data breaches and critical vulnerabilities
Stay updated with the latest cybersecurity news from Vietnam and around the world, including AI-powered attacks, data breaches, critical vulnerabilities, and emerging cyber threats affecting businesses.
Jul 27


Cybersecurity landscape in Vietnam – Q2/2026: Key risks and recommendations for businesses
An analysis of Vietnam’s cybersecurity landscape in Q2 2026, covering online fraud, data breaches, malware, AI-powered threats, and key recommendations for businesses.
Jul 23


Last week in cybersecurity (June 22–28): EVN scams alert, AI manipulation, and Linux root-exploiting vulnerability
Explore last week in cybersecurity (June 22–28): EVN warns of fake OTPs, AI agents tricked into executing malware, and the DirtyClone Root flaw. Read now!
Jun 29


Network maintenance for Startups: In-house or Outsourced?
Learn what a startup network maintenance solution should include, how to choose the right support model, and what to look for in a service provider.
Jul 25


Financial sector cybersecurity 2026: Decoding 6 cyberattack trends and proactive defense strategies
Decode 6 financial sector cybersecurity trends in 2026 from Darktrace & Visa. Discover how to combat ransomware and phishing with a 24/7 SOC platform from IPSIP experts!
Jul 7


IPSIP Vietnam Pentest services: Penetration Testing for businesses
IPSIP provides pentest services in Vietnam for websites, APIs, mobile applications, networks, and cloud environments, including reports, remediation consulting, and retesting.
Jul 2


Fortinet acquires Virtue AI to Expand Security from Networks to AI Agents
Fortinet acquires Virtue AI to extend continuous AI protection with red teaming, runtime guardrails and AI Agent governance for enterprise environments.
7 hours ago


Jewelbug's multi-target attack campaign: When professional hackers scam crypto using AI
We often classify hackers into two distinct groups: cyber spies targeting state secrets on one side, and cybercriminals seeking financial gain on the other. However, a threat actor group known as Jewelbug (believed to be based in China) represents a unique exception.
1 day ago


Claude code, Gemini CLI and Codex vulnerabilities expose new CI/CD security risks
Security flaws affecting Claude Code, Gemini CLI and Codex show how AI coding agents can expose CI/CD pipelines, source code, credentials and enterprise systems.
6 days ago
24H movement


Fortinet acquires Virtue AI to Expand Security from Networks to AI Agents
Fortinet acquires Virtue AI to extend continuous AI protection with red teaming, runtime guardrails and AI Agent governance for enterprise environments.
7 hours ago


CISA issues emergency warning on Windows IKE flaw allowing remote control takeover
The Cybersecurity and Infrastructure Security Agency (CISA) has issued an emergency alert regarding a critical security vulnerability in the Windows operating system.
8 hours ago


Apple releases new security updates: Patching dozens of vulnerabilities across macOS, iOS, and iPadOS
Apple has officially rolled out new security updates for Mac, iPhone, and iPad devices. This release addresses dozens of system vulnerabilities, most of which are tied to WebKit - the company's web browser engine.
8 hours ago
All posts


ClickLock malware on macOS forces users to enter passwords
ClickLock uses a fake Cloudflare verification page, locks macOS applications, and forces victims to enter passwords to steal data, crypto wallets, and accounts.
Jul 22


WP2Shell WordPress vulnerability enables website takeover without login
WP2Shell combines two WordPress Core flaws that enable unauthenticated attacks. Businesses should patch, investigate compromise, and monitor websites.
Jul 21


292 fake GitHub repositories distribute BoryptGrab malware
Arctic Wolf identified 292 fake GitHub repositories distributing BoryptGrab, targeting browser data, cryptocurrency wallets, and tokens on Windows.
Jul 21


Unpatched security vulnerability in Cursor AI application threatens developer security
A recent report from cybersecurity organization Mindgard has highlighted a dangerous vulnerability in the Windows version of Cursor application, allowing malicious actors to execute code directly on developers' machines.
Jul 20


Warning: why do businesses need Penetration Testing for AI systems?
A new study proposes expanding AI pentesting to cover prompts, retrieved data, memory, sensors, and tools that may influence operational behavior.
Jul 20


How hackers turned government websites into malware distribution tools
Trusting official government domains or vetted emails is a common habit for many internet users. However, the hackers behind the dangerous campaign dubbed PhantomEnigma are turning this very trust into a sophisticated attack tool.
Jul 17


AWS CloudFront incident knocks numerous global websites offline for hours
On Thursday (June 16), a routing incident deep within the Amazon Web Services (AWS) system abruptly disrupted the operations of thousands of websites worldwide. For over three hours, users attempting to access these platforms received only system error messages, triggering a minor wave of internet chaos before Amazon timely contained and resolved the situation.
Jul 17


Dell warns of 2 critical vulnerabilities in PowerProtect Data Domain
Dell has patched CVE-2026-53483 and CVE-2026-53481 in PowerProtect Data Domain, two CVSS 9.8 flaws that may enable remote system compromise.
Jul 17


How AI just helped Microsoft smash its security patch record
Recently, Microsoft marked a significant milestone by releasing an unprecedented number of security patches for familiar products like Windows and Office.
Jul 16


SonicWall customers face severe exploit chain: Patching alone is not enough
SonicWall network device users have once again entered a tense new race against hackers. This time, the culprit is a pair of zero-day security vulnerabilities actively being exploited in the wild, threatening to take complete control of corporate systems.
Jul 16


Microsoft releases patches for 622 flaws, including two actively exploited Zero-day
Microsoft patched 622 flaws in July 2026, including two actively exploited zero-days affecting SharePoint and AD FS. Organizations should update now.
Jul 16


SAP urgently patches ultra-critical vulnerability on NetWeaver ABAP
Recently, in the July 2026 routine security update, SAP officially released urgent patches to address a series of critical vulnerabilities. Most notable among them is a vulnerability that nearly reached the absolute severity score (9.9/10), along with seemingly minor loopholes that wide open the door to hackers.
Jul 15


Unpatched vulnerability in Claude extension for Chrome risks exposing Gmail and Calendar data
The Claude extension on the Chrome browser is becoming the center of attention in the tech community as security researchers have discovered a critical vulnerability that remains unpatched.
Jul 15


Years-old Zero-day vulnerabilities uncovered: a new warning for businesses
Some vulnerabilities are believed to have remained undetected for 15 to 16 years before being discovered. This raises significant concerns for businesses that rely on open-source infrastructure, virtualization systems, and software components that have been used reliably for long periods.
Jul 15


Android VPN security risks: 281 applications examined
Learn about the security risks identified in 281 Android VPN applications and the controls businesses should implement.
Jul 14


Apple sues OpenAI over alleged theft of hardware trade secrets
Apple has sued OpenAI and two former employees over alleged theft of hardware trade secrets. The case highlights insider risk and data controls.
Jul 14


Critical vulnerability in popular WordPress plugin threatens millions of websites
If your business operates a website powered by WordPress and utilizes a Single Sign-On (SSO) tool, this is a critical security update you cannot afford to ignore.
Jul 14


How can businesses prevent data leaks when employees leave?
Learn how to prevent data leaks when employees leave through access controls, DLP, log monitoring, and a structured offboarding process.
Jul 14


Security advisory: Critical Zimbra vulnerability allows hackers to attack via a single email
Zimbra has issued an urgent advisory urging users to promptly update their software to patch a critical security vulnerability.
Jul 13


AWS environment compromised within 72 hours as AI accelerated an extortion campaign
Sygnia observed an AI-assisted intrusion spread from an internet-facing application to AWS, CI/CD systems, and sensitive data within 72 hours.
Jul 13
bottom of page
