AI-Powered SaaS Security: Keeping Pace with an Expanding Attack Surface

25/03/2025 0 Comments 0 tags

Organizations now use an average of 112 SaaS applications—a number that keeps growing. In a 2024 study, 49% of 644 respondents who frequently used Microsoft 365 believed that they had

Chinese Hackers Breach Asian Telecom, Remain Undetected for Over 4 Years

25/03/2025 0 Comments 0 tags

A major telecommunications company located in Asia was allegedly breached by Chinese state-sponsored hackers who spent over four years inside its systems, according to a new report from incident response

Researchers Uncover ~200 Unique C2 Domains Linked to Raspberry Robin Access Broker

25/03/2025 0 Comments 0 tags

A new investigation has unearthed nearly 200 unique command-and-control (C2) domains associated with a malware called Raspberry Robin. “Raspberry Robin (also known as Roshtyak or Storm-0856) is a complex and

Hackers Use .NET MAUI to Target Indian and Chinese Users with Fake Banking, Social Apps

25/03/2025 0 Comments 0 tags

Cybersecurity researchers are calling attention to an Android malware campaign that leverages Microsoft’s .NET Multi-platform App UI (.NET MAUI) framework to create bogus banking and social media apps targeting Indian

INTERPOL Arrests 306 Suspects, Seizes 1,842 Devices in Cross-Border Cybercrime Bust

25/03/2025 0 Comments 0 tags

Law enforcement authorities in seven African countries have arrested 306 suspects and confiscated 1,842 devices as part of an international operation codenamed Red Card that took place between November 2024

Microsoft Adds Inline Data Protection to Edge for Business to Block GenAI Data Leaks

25/03/2025 0 Comments 0 tags

Microsoft on Monday announced a new feature called inline data protection for its enterprise-focused Edge for Business web browser. The native data security control is designed to prevent employees from

Critical Ingress NGINX Controller Vulnerability Allows RCE Without Authentication

25/03/2025 0 Comments 0 tags

A set of five critical security shortcomings have been disclosed in the Ingress NGINX Controller for Kubernetes that could result in unauthenticated remote code execution, putting over 6,500 clusters at

Critical Next.js Vulnerability Allows Attackers to Bypass Middleware Authorization Checks

24/03/2025 0 Comments 0 tags

A critical security flaw has been disclosed in the Next.js React framework that could be potentially exploited to bypass authorization checks under certain conditions. The vulnerability, tracked as CVE-2025-29927, carries

How to Balance Password Security Against User Experience

24/03/2025 0 Comments 0 tags

If given the choice, most users are likely to favor a seamless experience over complex security measures, as they don’t prioritize strong password security. However, balancing security and usability doesn’t

VSCode Marketplace Removes Two Extensions Deploying Early-Stage Ransomware

24/03/2025 0 Comments 0 tags

Cybersecurity researchers have uncovered two malicious extensions in the Visual Studio Code (VSCode) Marketplace that are designed to deploy ransomware that’s under development to its users. The extensions, named “ahban.shiba”