Oracle Rushes Patch for CVE-2025-61882 After Cl0p Exploited It in Data Theft Attacks

06/10/2025 0 Comments 0 tags

Oracle has released an emergency update to address a critical security flaw in its E-Business Suite that it said has been exploited in the recent wave of Cl0p data theft

CometJacking: One Click Can Turn Perplexity’s Comet AI Browser Into a Data Thief

04/10/2025 0 Comments 0 tags

Cybersecurity researchers have disclosed details of a new attack called CometJacking targeting Perplexity’s agentic AI browser Comet by embedding malicious prompts within a seemingly innocuous link to siphon sensitive data,

Scanning Activity on Palo Alto Networks Portals Jump 500% in One Day

04/10/2025 0 Comments 0 tags

Threat intelligence firm GreyNoise disclosed on Friday that it has observed a spike in scanning activity targeting Palo Alto Networks login portals. The company said it observed a nearly 500%

Detour Dog Caught Running DNS-Powered Malware Factory for Strela Stealer

03/10/2025 0 Comments 0 tags

A threat actor named Detour Dog has been outed as powering campaigns distributing an information stealer known as Strela Stealer. That’s according to findings from Infoblox, which found the threat

Rhadamanthys Stealer Evolves: Adds Device Fingerprinting, PNG Steganography Payloads

03/10/2025 0 Comments 0 tags

The threat actor behind Rhadamanthys has also advertised two other tools called Elysium Proxy Bot and Crypt Service on their website, even as the flagship information stealer has been updated

Researchers Warn of Self-Spreading WhatsApp Malware Named SORVEPOTEL

03/10/2025 0 Comments 0 tags

Brazilian users have emerged as the target of a new self-propagating malware that spreads via the popular messaging app WhatsApp. The campaign, codenamed SORVEPOTEL by Trend Micro, weaponizes the trust

Product Walkthrough: How Passwork 7 Addresses Complexity of Enterprise Security

03/10/2025 0 Comments 0 tags

Passwork is positioned as an on-premises unified platform for both password and secrets management, aiming to address the increasing complexity of credential storage and sharing in modern organizations. The platform

New “Cavalry Werewolf” Attack Hits Russian Agencies with FoalShell and StallionRAT

03/10/2025 0 Comments 0 tags

A threat actor that’s known to share overlaps with a hacking group called YoroTrooper has been observed targeting the Russian public sector with malware families such as FoalShell and StallionRAT.

CISA Flags Meteobridge CVE-2025-4008 Flaw as Actively Exploited in the Wild

03/10/2025 0 Comments 0 tags

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a high-severity security flaw impacting Smartbedded Meteobridge to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation.

Confucius Hackers Hit Pakistan With New WooperStealer and Anondoor Malware

02/10/2025 0 Comments 0 tags

The threat actor known as Confucius has been attributed to a new phishing campaign that has targeted Pakistan with malware families like WooperStealer and Anondoor. “Over the past decade, Confucius