Malicious Go, npm Packages Deliver Cross-Platform Malware, Trigger Remote Data Wipes

07/08/2025 0 Comments 0 tags

Cybersecurity researchers have discovered a set of 11 malicious Go packages that are designed to download additional payloads from remote servers and execute them on both Windows and Linux systems.

6,500 Axis Servers Expose Remoting Protocol, 4,000 in U.S. Vulnerable to Exploits

07/08/2025 0 Comments 0 tags

Cybersecurity researchers have disclosed multiple security flaws in video surveillance products from Axis Communications that, if successfully exploited, could expose them to takeover attacks. “The attack results in pre-authentication remote

Microsoft Discloses Exchange Server Flaw Enabling Silent Cloud Access in Hybrid Setups

07/08/2025 0 Comments 0 tags

Microsoft has released an advisory for a high-severity security flaw affecting on-premise versions of Exchange Server that could allow an attacker to gain elevated privileges under certain conditions. The vulnerability,

The AI-Powered Security Shift: What 2025 Is Teaching Us About Cloud Defense

07/08/2025 0 Comments 0 tags

Now that we are well into 2025, cloud attacks are evolving faster than ever and artificial intelligence (AI) is both a weapon and a shield. As AI rapidly changes how

SonicWall Confirms Patched Vulnerability Behind Recent VPN Attacks, Not a Zero-Day

07/08/2025 0 Comments 0 tags

SonicWall has revealed that the recent spike in activity targeting its Gen 7 and newer firewalls with SSL VPN enabled is related to an older, now-patched bug and password reuse.

Webinar: How to Stop Python Supply Chain Attacks—and the Expert Tools You Need

07/08/2025 0 Comments 0 tags

Python is everywhere in modern software. From machine learning models to production microservices, chances are your code—and your business—depends on Python packages you didn’t write. But in 2025, that trust

Researchers Uncover ECScape Flaw in Amazon ECS Enabling Cross-Task Credential Theft

07/08/2025 0 Comments 0 tags

Cybersecurity researchers have demonstrated an “end-to-end privilege escalation chain” in Amazon Elastic Container Service (ECS) that could be exploited by an attacker to conduct lateral movement, access sensitive data, and

Fake VPN and Spam Blocker Apps Tied to VexTrio Used in Ad Fraud, Subscription Scams

06/08/2025 0 Comments 0 tags

The malicious ad tech purveyor known as VexTrio Viper has been observed developing several malicious apps that have been published on Apple and Google’s official app storefronts under the guise

AI Slashes Workloads for vCISOs by 68% as SMBs Demand More – New Report Reveals

06/08/2025 0 Comments 0 tags

As the volume and sophistication of cyber threats and risks grow, cybersecurity has become mission-critical for businesses of all sizes. To address this shift, SMBs have been urgently turning to

Microsoft Launches Project Ire to Autonomously Classify Malware Using AI Tools

06/08/2025 0 Comments 0 tags

Microsoft on Tuesday announced an autonomous artificial intelligence (AI) agent that can analyze and classify software without assistance in an effort to advance malware detection efforts. The large language model