SOC Analysts – Reimagining Their Role Using AI

30/01/2025 0 Comments 0 tags

The job of a SOC analyst has never been easy. Faced with an overwhelming flood of daily alerts, analysts (and sometimes IT teams who are doubling as SecOps) must try

DeepSeek AI Database Exposed: Over 1 Million Log Lines, Secret Keys Leaked

30/01/2025 0 Comments 0 tags

Buzzy Chinese artificial intelligence (AI) startup DeepSeek, which has had a meteoric rise in popularity in recent days, left one of its databases exposed on the internet, which could have

Unpatched PHP Voyager Flaws Leave Servers Open to One-Click RCE Exploits

30/01/2025 0 Comments 0 tags

Three security flaws have been disclosed in the open-source PHP package Voyager that could be exploited by an attacker to achieve one-click remote code execution on affected instances. “When an

New Aquabot Botnet Exploits CVE-2024-41710 in Mitel Phones for DDoS Attacks

30/01/2025 0 Comments 0 tags

A Mirai botnet variant dubbed Aquabot has been observed actively attempting to exploit a medium-severity security flaw impacting Mitel phones in order to ensnare them into a network capable of

Lazarus Group Uses React-Based Admin Panel to Control Global Cyber Attacks

29/01/2025 0 Comments 0 tags

The North Korean threat actor known as the Lazarus Group has been observed leveraging a “web-based administrative platform” to oversee its command-and-control (C2) infrastructure, giving the adversary the ability to

New SLAP & FLOP Attacks Expose Apple M-Series Chips to Speculative Execution Exploits

29/01/2025 0 Comments 0 tags

A team of security researchers from Georgia Institute of Technology and Ruhr University Bochum has demonstrated two new side-channel attacks targeting Apple silicon that could be exploited to leak sensitive

How Interlock Ransomware Infects Healthcare Organizations

29/01/2025 0 Comments 0 tags

Ransomware attacks have reached an unprecedented scale in the healthcare sector, exposing vulnerabilities that put millions at risk. Recently, UnitedHealth revealed that 190 million Americans had their personal and healthcare

Critical Cacti Security Flaw (CVE-2025-22604) Enables Remote Code Execution

29/01/2025 0 Comments 0 tags

A critical security flaw has been disclosed in the Cacti open-source network monitoring and fault management framework that could allow an authenticated attacker to achieve remote code execution on susceptible

UAC-0063 Expands Cyber Attacks to European Embassies Using Stolen Documents

29/01/2025 0 Comments 0 tags

The advanced persistent threat (APT) group known as UAC-0063 has been observed leveraging legitimate documents obtained by infiltrating one victim to attack another target with the goal of delivering a

Broadcom Warns of High-Severity SQL Injection Flaw in VMware Avi Load Balancer

29/01/2025 0 Comments 0 tags

Broadcom has alerted of a high-severity security flaw in VMware Avi Load Balancer that could be weaponized by malicious actors to gain entrenched database access. The vulnerability, tracked as CVE-2025-22217