Toggle light / dark theme

Get the latest international news and world events from around the world.

Log in for authorized contributors

Scientists May Have Uncovered the Mystery Behind Webb’s Strange Little Red Dots

New simulations suggest Webb’s Little Red Dots capture a rapid growth phase that could explain the early appearance of supermassive black holes.

Little Red Dots, the small, extremely red objects spotted by the James Webb Space Telescope in the early universe, may reveal how black holes grew so big, so quickly.

Astronomers have found supermassive black holes with masses millions or even billions of times that of the Sun less than 600 million years after the Big Bang. Explaining how they gained so much mass in that time has been difficult, and new simulations suggest the dots could represent the rapid growth needed to get them there.

Once-in-a-Century Impact: NASA Just Found a Massive New Crater on the Moon

NASA’s Lunar Reconnaissance Orbiter helped uncover a 728-foot-wide crater that formed on the Moon in 2024 after a rare, powerful impact.

What began as a routine check of lunar mapping data quickly turned into an unexpected discovery. Robert Wagner, a scientist working with NASA’s Lunar Reconnaissance Orbiter (LRO), was examining a large map of the Moon when one feature immediately stood out: an unusually bright patch surrounded by a dark halo.

The pattern suggested that material on the lunar surface had recently been disturbed.

TeamFiltration Campaign Compromises Seven Microsoft 365 Accounts Using Default Passwords

Cybersecurity researchers have disclosed details of an active TeamFiltration campaign codenamed UNK_CondorFiltration that has targeted over 5,700 accounts across 28 Microsoft 365 tenants.

According to Proofpoint, the activity has primarily focused on Chilean retail and financial institutions. It originated from 1,487 unique AWS EC2 source IP addresses.

“The campaign compromised 7 accounts – all of which were unmanaged functional or service accounts rather than individual employee accounts – highlighting a critical exposure gap around forgotten, non-human identities carrying default or unrotated passwords and no MFA [multi-factor authentication],” the enterprise security company said in a statement.

MacSync malware uses public iCloud calendars to deliver new payloads

A new variant of the MacSync info-stealing malware targeting macOS systems now uses public iCloud calendar events to deliver fresh payloads.

MacSync is a Swift-based malware that emerged in April 2025 and has been observed recently being delivered in ClickFix campaigns disguised as Homebrew and macOS disk space analyzer tools.

Kaspersky researchers say that while earlier versions of the malware were derived from the AMOS stealer family, MacSync evolved and added new capabilities via modules.

Exposed GitLab project email addresses let attackers push code

Private GitLab email addresses that allow developers to push issues or tasks to a project are being deliberately exposed in READMEs, contributing guides, and support pages used to collect bug reports.

The addresses are part of a built-in GitLab feature called “Email work item to this project” and contain a long-lived token tied to the developer’s account.

These addresses are generated automatically and contain a string that serves as a credential for creating work items via email. When an external client sends a message to one of them, GitLab parses it into a project issue or task.

CISA: Ransomware gangs now exploiting critical TeamCity flaw

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) warned federal agencies on Wednesday that ransomware gangs are now also exploiting a critical JetBrains TeamCity vulnerability patched in July.

JetBrains patched the security flaw (tracked as CVE-2026–63077) on July 25 in TeamCity On-Premises versions 2025.11.7 and 2026.1.3, saying it is a critical authentication bypass vulnerability that lets attackers with HTTP(S) access execute arbitrary operating system commands.

“An unauthenticated attacker could exploit the vulnerability via the TeamCity agent polling protocol to bypass authentication checks and execute arbitrary operating system commands with the privileges of the TeamCity server process,” it said.

/* */