TARmageddon Flaw in Async-Tar Rust Library Could Enable Remote Code Execution

22/10/2025 0 Comments 0 tags

Cybersecurity researchers have disclosed details of a high-severity flaw impacting the popular async-tar Rust library and its forks, including tokio-tar, that could result in remote code execution under certain conditions.

TP-Link Patches Four Omada Gateway Flaws, Two Allow Remote Code Execution

22/10/2025 0 Comments 0 tags

TP-Link has released security updates to address four security flaws impacting Omada gateway devices, including two critical bugs that could result in arbitrary code execution. The vulnerabilities in question are

Meta Rolls Out New Tools to Protect WhatsApp and Messenger Users from Scams

21/10/2025 0 Comments 0 tags

Meta on Tuesday said it’s launching new tools to protect Messenger and WhatsApp users from potential scams. To that end, the company said it’s introducing new warnings on WhatsApp when

PolarEdge Targets Cisco, ASUS, QNAP, Synology Routers in Expanding Botnet Campaign

21/10/2025 0 Comments 0 tags

Cybersecurity researchers have shed light on the inner workings of a botnet malware called PolarEdge. PolarEdge was first documented by Sekoia in February 2025, attributing it to a campaign targeting

Securing AI to Benefit from AI

21/10/2025 0 Comments 0 tags

Artificial intelligence (AI) holds tremendous promise for improving cyber defense and making the lives of security practitioners easier. It can help teams cut through alert fatigue, spot patterns faster, and

Google Identifies Three New Russian Malware Families Created by COLDRIVER Hackers

21/10/2025 0 Comments 0 tags

A new malware attributed to the Russia-linked hacking group known as COLDRIVER has undergone numerous developmental iterations since May 2025, suggesting an increased “operations tempo” from the threat actor. The

Hackers Used Snappybee Malware and Citrix Flaw to Breach European Telecom Network

21/10/2025 0 Comments 0 tags

A European telecommunications organization is said to have been targeted by a threat actor that aligns with a China-nexus cyber espionage group known as Salt Typhoon. The organization, per Darktrace,

Five New Exploited Bugs Land in CISA’s Catalog — Oracle and Microsoft Among Targets

20/10/2025 0 Comments 0 tags

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added five security flaws to its Known Exploited Vulnerabilities (KEV) Catalog, officially confirming a recently disclosed vulnerability impacting Oracle E-Business

⚡ Weekly Recap: F5 Breached, Linux Rootkits, Pixnapping Attack, EtherHiding & More

20/10/2025 0 Comments 0 tags

It’s easy to think your defenses are solid — until you realize attackers have been inside them the whole time. The latest incidents show that long-term, silent breaches are becoming

Analysing ClickFix: 3 Reasons Why Copy/Paste Attacks Are Driving Security Breaches

20/10/2025 0 Comments 0 tags

ClickFix, FileFix, fake CAPTCHA — whatever you call it, attacks where users interact with malicious scripts in their web browser are a fast-growing source of security breaches.  ClickFix attacks prompt