top of page
Cyber Security Hub
Stay updated with the latest news on technology, cybersecurity, market reports
Featured News


Cybersecurity News Roundup (20.7 - 26.7): AI-powered attacks, data breaches and critical vulnerabilities
Stay updated with the latest cybersecurity news from Vietnam and around the world, including AI-powered attacks, data breaches, critical vulnerabilities, and emerging cyber threats affecting businesses.
Jul 27


Cybersecurity landscape in Vietnam – Q2/2026: Key risks and recommendations for businesses
An analysis of Vietnam’s cybersecurity landscape in Q2 2026, covering online fraud, data breaches, malware, AI-powered threats, and key recommendations for businesses.
Jul 23


Last week in cybersecurity (June 22–28): EVN scams alert, AI manipulation, and Linux root-exploiting vulnerability
Explore last week in cybersecurity (June 22–28): EVN warns of fake OTPs, AI agents tricked into executing malware, and the DirtyClone Root flaw. Read now!
Jun 29


Optimizing IT risk management with in-depth Information Security GRC solutions
Information security GRC is increasingly becoming a critical part of IT governance strategy, helping align governance, risk, and compliance requirements into a unified model.
16 hours ago


Network maintenance for Startups: In-house or Outsourced?
Learn what a startup network maintenance solution should include, how to choose the right support model, and what to look for in a service provider.
Jul 25


Financial sector cybersecurity 2026: Decoding 6 cyberattack trends and proactive defense strategies
Decode 6 financial sector cybersecurity trends in 2026 from Darktrace & Visa. Discover how to combat ransomware and phishing with a 24/7 SOC platform from IPSIP experts!
Jul 7


Over 92,000 malware detections impersonated ChatGPT and other AI services in early 2026
Kaspersky recorded over 92,000 malware and PUA detections disguised as ChatGPT, Claude and Gemini in early 2026, highlighting growing AI impersonation risks.
19 hours ago


Alarm: AI behind nearly half of cyberattacks in Vietnam
In the first half of 2026, Vietnam's information security landscape recorded a concerning shift as artificial intelligence (AI) began directly participating in intrusion and data theft activities.
2 days ago


From Deepfakes to WhatsApp: inside a $187 million investment fraud network
GoldBull and CoinLure use deepfakes, WhatsApp and fake investment platforms in a fraud ecosystem estimated at over $187 million.
2 days ago
24H movement


Decree 333/2026/ND-CP takes effect: what businesses need to know about cybersecurity compliance
Decree 333/2026/ND-CP took effect on August 19, 2026, introducing requirements on account verification, information disclosure, content handling and system log retention.
18 hours ago


Critical GitLab vulnerability actively exploited: Severe risk to the supply chain
Just days after being publicly disclosed, a critical security vulnerability in the GitLab platform has rapidly been targeted by attackers.
19 hours ago


Over 92,000 malware detections impersonated ChatGPT and other AI services in early 2026
Kaspersky recorded over 92,000 malware and PUA detections disguised as ChatGPT, Claude and Gemini in early 2026, highlighting growing AI impersonation risks.
19 hours ago
All posts


Critical vulnerability in popular WordPress plugin threatens millions of websites
If your business operates a website powered by WordPress and utilizes a Single Sign-On (SSO) tool, this is a critical security update you cannot afford to ignore.
Jul 14


Security advisory: Critical Zimbra vulnerability allows hackers to attack via a single email
Zimbra has issued an urgent advisory urging users to promptly update their software to patch a critical security vulnerability.
Jul 13


Urgent warning: Critical Microsoft SharePoint vulnerability actively exploited
The Microsoft SharePoint storage and collaboration platform is a widely used system across many organizations and enterprises. However, a high-severity security vulnerability has recently been discovered and is being actively exploited by threat actors in the wild.
Jul 6


Warning: Over 5 billion iPhone and Android devices face risk of covert attacks
Transferring images, videos, or documents between phones and computers has now become incredibly simple thanks to AirDrop on Apple devices or Quick Share on Android and Windows operating systems. However, this very convenience is inadvertently opening a loophole for cyberattacks, threatening the safety of more than 5 billion devices worldwide.
Jul 3


Security advisory: Two new Apache Tomcat vulnerabilities threaten network security
The Apache Software Foundation (ASF) has recently identified and disclosed two notable security vulnerabilities within Apache Tomcat, a widely used web server component.
Jul 2


Unpatchable hardware vulnerability in Apple chips: New opportunities for legacy iPhone jailbreaking
In the tech world, Apple is renowned for its stringent security ecosystem. However, a recent discovery by cybersecurity experts has revealed a critical vulnerability embedded directly within the hardware of legacy iPhone models.
Jun 25


Critical vulnerability alert on Cisco ISE: Enterprises urgent update required
Cisco has issued an urgent advisory regarding critical security vulnerabilities within the Cisco Identity Services Engine (ISE) identity management system and the ISE Passive Identity Connector (ISE-PIC) solution.
Jun 19


Trio of critical vulnerabilities in Fortinet FortiSandbox under attack
Mới đây, công ty tình báo mối đe dọa mạng Defused đã phát lời cảnh báo quan trọng về việc hệ thống FortiSandbox của Fortinet đang trở thành mục tiêu trong các cuộc tấn công khai thác lỗ hổng.
Jun 17


Warning: A critical security vulnerability in ServiceNow runs the risk of widespread enterprise data leakage.
ServiceNow has long been a familiar platform for many large enterprises and organizations in managing Information Technology Service Management (ITSM) as well as operating internal workflows. However, a recently published threat intelligence report reveals that this platform is facing a critical security vulnerability, raising major concerns about information security in Software as a Service (SaaS) cloud environments.
Jun 11


Two critical security vulnerabilities discovered threatening Windows and BitLocker encryption
Following the previous two vulnerabilities, BlueHammer and RedSun, researcher Chaotic Eclipse has just publicized two new flaws named YellowKey and GreenPlasma, directly threatening the Windows security ecosystem and BitLocker encryption.
Jun 11


"FlagLeft" vulnerability in Microsoft 365 source code puts billions of Android users at risk of data exposure
Recently, researchers discovered a critical vulnerability dubbed "FlagLeft" within the Microsoft 365 application ecosystem for the Android operating system. This issue threatens the information security of billions of users globally, paving the way for malicious applications to silently hijack account access without requiring any user interaction or permission.
Jun 4


CIFSwitch: 19-Year-Old Linux Kernel Privilege escalation threatens complete hijacking
Known for its high security, the Linux ecosystem has just faced a massive challenge. A critical information security vulnerability named CIFSwitch was recently exposed after silently existing for nearly two decades.
Jun 2


Ghost CMS vulnerability: Large-scale attack with CAPTCHA traps
A large-scale attack campaign has been uncovered, targeting websites using the Ghost CMS. Although a patch was released several months ago, delayed updates have caused hundreds of websites, including those of reputable organizations, to become tools for distributing malware.
May 27


OAuth Tokens: The Security Back Door Many Organizations Still Fail to Control
Over the past several years, organizations have invested heavily in defensive layers such as multi-factor authentication (MFA), endpoint protection, and zero trust frameworks. Yet another blind spot is increasingly being exploited by attackers while remaining under-addressed by many security teams: OAuth tokens and third-party application access.
May 6


Critical Docker vulnerability warning: Attackers can gain root access via authorization bypass
Recently, a critical security vulnerability in Docker Engine was discovered, allowing attackers to bypass access control layers and penetrate deep into host systems.
Apr 8
bottom of page
