top of page
Cyber Security Hub
Stay updated with the latest news on technology, cybersecurity, market reports
Featured News


Cybersecurity News Roundup (20.7 - 26.7): AI-powered attacks, data breaches and critical vulnerabilities
Stay updated with the latest cybersecurity news from Vietnam and around the world, including AI-powered attacks, data breaches, critical vulnerabilities, and emerging cyber threats affecting businesses.
Jul 27


Cybersecurity landscape in Vietnam – Q2/2026: Key risks and recommendations for businesses
An analysis of Vietnam’s cybersecurity landscape in Q2 2026, covering online fraud, data breaches, malware, AI-powered threats, and key recommendations for businesses.
Jul 23


Last week in cybersecurity (June 22–28): EVN scams alert, AI manipulation, and Linux root-exploiting vulnerability
Explore last week in cybersecurity (June 22–28): EVN warns of fake OTPs, AI agents tricked into executing malware, and the DirtyClone Root flaw. Read now!
Jun 29


Network maintenance for Startups: In-house or Outsourced?
Learn what a startup network maintenance solution should include, how to choose the right support model, and what to look for in a service provider.
Jul 25


Financial sector cybersecurity 2026: Decoding 6 cyberattack trends and proactive defense strategies
Decode 6 financial sector cybersecurity trends in 2026 from Darktrace & Visa. Discover how to combat ransomware and phishing with a 24/7 SOC platform from IPSIP experts!
Jul 7


IPSIP Vietnam Pentest services: Penetration Testing for businesses
IPSIP provides pentest services in Vietnam for websites, APIs, mobile applications, networks, and cloud environments, including reports, remediation consulting, and retesting.
Jul 2


Claude code, Gemini CLI and Codex vulnerabilities expose new CI/CD security risks
Security flaws affecting Claude Code, Gemini CLI and Codex show how AI coding agents can expose CI/CD pipelines, source code, credentials and enterprise systems.
24 hours ago


Critical Zoom vulnerability: risk of computer takeover via a familiar feature
A critical chain of security vulnerabilities has recently been discovered in Zoom, allowing anyone in a meeting – whether a presenter or an attendee – to take control of other participants' computers.
3 days ago


OpenAI pauses some Astra activities over Critical Cybersecurity Risks
OpenAI restricted some Astra activities after preliminary evaluations could not rule out Critical cybersecurity capabilities, including zero-day exploitation.
5 days ago
24H movement


GitLab releases emergency patch for 13 security vulnerabilities: What you need to know
Source code management platform GitLab has officially released new security updates to address 13 vulnerabilities across its system.
21 hours ago


Hackers mass attack Microsoft SharePoint servers after public PoC release
Shortly after proof-of-concept (PoC) tools were widely shared online, hacker groups quickly leveraged them to launch real-world attacks against Microsoft SharePoint servers.
22 hours ago


Claude code, Gemini CLI and Codex vulnerabilities expose new CI/CD security risks
Security flaws affecting Claude Code, Gemini CLI and Codex show how AI coding agents can expose CI/CD pipelines, source code, credentials and enterprise systems.
24 hours ago
All posts


A vulnerability in LiteLLM drags 2,500 organizations into danger
Beginning with a vulnerability in an auxiliary tool, the supply chain attack targeting LiteLLM rapidly expanded, threatening numerous technology systems worldwide.
2 days ago


Wave of scans target critical VMware vCenter vulnerabilities
Cybersecurity experts have recently detected a sharp surge in scanning activity targeting VMware vCenter systems. This serves as an early warning signal that threat actors are actively hunting for unpatched targets in preparation for dangerous intrusion attempts.
3 days ago


Risk of enterprise data leakage from "one-click" vulnerability on Atlassian Rovo AI
The discovery of RovoBlast - a severe security vulnerability in the Atlassian Rovo AI assistant serves as proof that an enterprise's internal data can be exfiltrated through a single malicious link.
4 days ago


What to do when Metabase faces a critical Zero-Day vulnerability?
Metabase has confirmed a critical cybersecurity incident involving an actively exploited zero-day vulnerability.
5 days ago


Demystifying IDS and IPS: A powerful security shield for enterprise networks
Two familiar yet crucial defensive tools that every organization must thoroughly understand are IDS (Intrusion Detection System) and IPS (Intrusion Prevention System).
Aug 7


Warning: New attack technique enables malware to hijack Google Passkey authentication keys
Cybersecurity experts have recently uncovered a new attack technique called "Pass-ta-key," which enables malware to compromise and hijack accounts even when secured by Passkeys.
Aug 6


Coldcard hardware wallet vulnerability: Hackers steal over $130 million in cryptocurrency
A critical security vulnerability has recently left many Coldcard wallet users completely drained of their assets, with total losses surpassing $130 million in cryptocurrency.
Aug 5


The Recovery Scam: When cybercrime victims become secondary targets
Capitalizing on victims' anxiety and their desperate desire to recover lost assets, cybercriminals turn them into prime targets in a new fraud chain known as a Recovery Scam.
Aug 4


Breakthrough AI application: Google discovers 13-year-old Chrome vulnerability and sets new patching record
Google recently confirmed that its AI implementation has achieved record-breaking patch delivery speeds, even discovering a critical vulnerability that had remained hidden for 13 years within the Chrome codebase.
Aug 3


Russian threat group exploits Microsoft OWA vulnerability: The emergence of sophisticated malware OWAReaper
A dangerous cyber attack campaign targeting Microsoft Outlook Web Access (OWA) systems has recently been discovered, directly threatening government agencies in the US and Europe.
Jul 31


Breaking: Claude chat logs exposed publicly on Google - Who is to blame?
A recent security incident involving Claude has sent shockwaves through the tech community, as a vast amount of private user data was unexpectedly indexed and exposed publicly by Google Search.
Jul 30


Global super-alliance activates AI shield: Waging war against cybercrime
As digital threats become increasingly sophisticated, more than 30 of the world's leading technology corporations - have joined forces to establish the Open Secure AI Alliance.
Jul 29


OpenAI's AI Agent breaches boundaries to infiltrate second company: A new cybersecurity concern
The incident involving OpenAI's AI agent – AI systems capable of operating autonomously and performing tasks independently – freely operating out of control is becoming the center of attention in the information security community. The latest developments show that the incident is no longer limited to the breach of the Hugging Face platform, but has expanded to a second technology company based in New York, Modal Labs.
Jul 29


Escalating security crisis: ShinyHunters issues final ultimatum to EY
The notorious extortion group ShinyHunters recently publicly claimed responsibility for the data leak at EY, leaving the enterprise facing a severe cybersecurity challenge.
Jul 28


A critical flaw: Is Claude AI's sharing feature secretly exposing your information?
An incident involving Claude AI's link-sharing feature exposed a vast number of private user conversations publicly on search engines. This event has sparked concern across the tech community and served as a warning about data security risks when interacting with artificial intelligence.
Jul 27


When AI guardrails inadvertently tie the hands of cybersecurity experts
In an effort to prevent hackers from leveraging artificial intelligence (AI) to execute cyberattacks, major tech corporations have established highly stringent regulations. However, these defensive measures have inadvertently become major barriers for cybersecurity professionals themselves.
Jul 24


Vietnam proposes a 5% revenue fine for serious data security violations
Vietnam’s Ministry of Public Security proposes fines of up to 5% of revenue for particularly serious violations involving important or core data.
Jul 24


Unpatched security vulnerability in Cursor AI application threatens developer security
A recent report from cybersecurity organization Mindgard has highlighted a dangerous vulnerability in the Windows version of Cursor application, allowing malicious actors to execute code directly on developers' machines.
Jul 20


How hackers turned government websites into malware distribution tools
Trusting official government domains or vetted emails is a common habit for many internet users. However, the hackers behind the dangerous campaign dubbed PhantomEnigma are turning this very trust into a sophisticated attack tool.
Jul 17


AWS CloudFront incident knocks numerous global websites offline for hours
On Thursday (June 16), a routing incident deep within the Amazon Web Services (AWS) system abruptly disrupted the operations of thousands of websites worldwide. For over three hours, users attempting to access these platforms received only system error messages, triggering a minor wave of internet chaos before Amazon timely contained and resolved the situation.
Jul 17
bottom of page
