Independent Reviews
VPN Rocks newsroom

News archive — Page 9

Source-backed reporting on VPNs, privacy, scams, data breaches and online security—plus the practical steps worth taking next.

Latest update: 10 Sept 2026 Sources shown on every reportOur editorial standards

News archive

Reports 81–90

Clear summaries, visible dates and direct source links—without turning every security story into a VPN sales pitch.

Cybersecurity29 Jul 20266 min read4 sources

24,000 Exposed Server BMCs Leak Password Hashes: Why Remote Admin Should Not Be Public

Lava researchers say thousands of internet-facing IPMI/BMC interfaces can leak password-derived authentication material before login, reviving a long-known remote-management risk.

Read analysis
Cybersecurity28 Jul 20266 min read3 sources

CISA Adds Fortinet and Arista Flaws to KEV: What Network-Edge Users Should Do

CISA says two actively exploited flaws affecting Fortinet FortiOS and Arista VeloCloud Orchestrator On-Prem have joined its Known Exploited Vulnerabilities catalog.

Read analysis
Cybersecurity28 Jul 20266 min read2 sources

Zimbra Zero-Click Phishing Warning: Why Email Security Still Needs Patch Discipline

NSA, CISA and allied agencies warn that Russian state-supported actors used a view-based Zimbra exploit that can trigger when a vulnerable webmail user simply views a malicious email.

Read analysis
VPN Policy27 Jul 20266 min read3 sources

UK Rules Out a VPN Ban: What Age-Check Changes Mean for Privacy

The UK government says it will not ban or age-gate VPNs, even as platforms are told to stop under-18s using workarounds to bypass online safety checks.

Read analysis
Public Wi-Fi27 Jul 20266 min read3 sources

Hotel Wi-Fi DNS Hijacking Warning: Why Travellers Should Use a Full-Tunnel VPN

BleepingComputer reports that attackers are compromising hotel and conference Wi-Fi gateways to redirect Microsoft 365 users to fake login pages.

Read analysis
VPN Privacy26 Jul 20266 min read3 sources

Free VPN Extensions Caught Stealing Clipboard Data: What to Check Now

Socket researchers found Chrome and Firefox extensions posing as free VPNs that added clipboard-stealing code through updates, while CyberInsider later amplified the warning for browser users.

Read analysis
Consumer Security26 Jul 20266 min read3 sources

Craneware Healthcare Data Breach Shows Why Supplier Attacks Matter

Edinburgh-based Craneware says attackers accessed part of its data environment and exfiltrated file names plus some employee, customer and partner records, while services remained operational.

Read analysis
Cybersecurity26 Jul 20265 min read3 sources

CISA Adds SharePoint and Check Point Flaws to Exploited-Vulnerability List

CISA says CVE-2026-50522 in Microsoft SharePoint and CVE-2026-16232 in Check Point SmartConsole have evidence of active exploitation, making patching and compromise checks urgent for exposed systems.

Read analysis
Consumer Security25 Jul 20266 min read2 sources

Origin Energy Data Breach Raises AI Scam Risks for Utility Customers

Origin Energy says some customer data was accessed and disclosed without authorisation, while ABC reports experts are warning that names, dates of birth, addresses and partial payment details can fuel more convincing AI-assisted scams.

Read analysis
Privacy25 Jul 20266 min read3 sources

23andMe Settlement Is a Reminder to Review Genetic Data and Reused Passwords

State attorneys general announced an $18 million bankruptcy recovery tied to the 23andMe breach, while the court-authorized settlement site says class member payments from a separate $46.75 million settlement are expected in September.

Read analysis