Critical Vulnerability in Anthropic’s MCP Exposes Developer Machines to Remote Exploits

01/07/2025 0 Comments 0 tags

Cybersecurity researchers have discovered a critical security vulnerability in artificial intelligence (AI) company Anthropic’s Model Context Protocol (MCP) Inspector project that could result in remote code execution (RCE) and allow

TA829 and UNK_GreenSec Share Tactics and Infrastructure in Ongoing Malware Campaigns

01/07/2025 0 Comments 0 tags

Cybersecurity researchers have flagged the tactical similarities between the threat actors behind the RomCom RAT and a cluster that has been observed delivering a loader dubbed TransferLoader. Enterprise security firm

New Flaw in IDEs Like Visual Studio Code Lets Malicious Extensions Bypass Verified Status

01/07/2025 0 Comments 0 tags

A new study of integrated development environments (IDEs) like Microsoft Visual Studio Code, Visual Studio, IntelliJ IDEA, and Cursor has revealed weaknesses in how they handle the extension verification process,

A New Maturity Model for Browser Security: Closing the Last-Mile Risk

01/07/2025 0 Comments 0 tags

Despite years of investment in Zero Trust, SSE, and endpoint protection, many enterprises are still leaving one critical layer exposed: the browser. It’s where 85% of modern work now happens.

Google Patches Critical Zero-Day Flaw in Chrome’s V8 Engine After Active Exploitation

01/07/2025 0 Comments 0 tags

Google has released security updates to address a vulnerability in its Chrome browser for which an exploit exists in the wild. The zero-day vulnerability, tracked as CVE-2025-6554 (CVSS score: N/A),

U.S. Arrests Key Facilitator in North Korean IT Worker Scheme, Seizes $7.74 Million

01/07/2025 0 Comments 0 tags

The U.S. Department of Justice (DoJ) on Monday announced sweeping actions targeting the North Korean information technology (IT) worker scheme, leading to the arrest of one individual and the seizure

Microsoft Removes Password Management from Authenticator App Starting August 2025

01/07/2025 0 Comments 0 tags

Microsoft has said that it’s ending support for passwords in its Authenticator app starting August 1, 2025. The changes, the company said, are part of its efforts to streamline autofill

U.S. Agencies Warn of Rising Iranian Cyberattacks on Defense, OT Networks, and Critical Infrastructure

30/06/2025 0 Comments 0 tags

U.S. cybersecurity and intelligence agencies have issued a joint advisory warning of potential cyber-attacks from Iranian state-sponsored or affiliated threat actors.  “Over the past several months, there has been increasing

Europol Dismantles $540 Million Cryptocurrency Fraud Network, Arrests Five Suspects

30/06/2025 0 Comments 0 tags

Europol on Monday announced the takedown of a cryptocurrency investment fraud ring that laundered €460 million ($540 million) from more than 5,000 victims across the world. The operation, the agency

Blind Eagle Uses Proton66 Hosting for Phishing, RAT Deployment on Colombian Banks

30/06/2025 0 Comments 0 tags

The threat actor known as Blind Eagle has been attributed with high confidence to the use of the Russian bulletproof hosting service Proton66. Trustwave SpiderLabs, in a report published last