NGINX servers hijacked in global campaign to redirect traffic

Redirected traffic can be abused in multiple ways and victims would never know.

Substack confirms data breach affects users’ email addresses and phone numbers

Substack said that customer data was accessed in October 2025, but wasn’t discovered until early February.

Dangerous new malware exploits WinRAR flaw – here’s what we know

A Chinese state-sponsored actor was seen exploiting a WinRAR bug, soon after the Russians.

ExpressVPN unveils new standalone password manager – ExpressKeys is now available for iOS and Android

ExpressVPN has introduced a dedicated password manager app, ExpressKeys.

‘The best way to protect user data is not to collect it in the first place’ – top VPN maker reveals ExpressAI, possibly the most secure and safe AI platform around right now

ExpressAI brings privacy-first AI by applying VPN-level encryption, secure enclaves, and zero data collection, allowing safe AI interactions globally.

Substack data breach exposed users’ emails and phone numbers
Substack data breach exposed users’ emails and phone numbers

Substack is notifying some users that the email addresses and phone numbers linked to their accounts were exposed in a “security incident” last year. In an email to account holders, Substack CEO Chris Best said that a hacker had accessed internal data without authorization in October 2025, but that passwords, credit card numbers, and other […]

Even McDonald’s thinks you need to change your passwords – especially if they’re burger-related

McDonald warns common passwords like ‘bigmac’ and ‘happymeal’ remain highly vulnerable, urging stronger, randomized credentials for all users.

Notepad++ Users, You May Have Been Hacked by China

Suspected Chinese state-backed hackers hijacked the Notepadd++ update infrastructure to deliver a backdoored version of the popular free source code editor and note-taking app for Windows.