Chinese Hackers RedNovember Target Global Governments Using Pantegana and Cobalt Strike

24/09/2025 0 Comments 0 tags

A suspected cyber espionage activity cluster that was previously found targeting global government and private sector organizations spanning Africa, Asia, North America, South America, and Oceania has been assessed to

UNC5221 Uses BRICKSTORM Backdoor to Infiltrate U.S. Legal and Technology Sectors

24/09/2025 0 Comments 0 tags

Companies in the legal services, software-as-a-service (SaaS) providers, Business Process Outsourcers (BPOs), and technology sectors in the U.S. have been targeted by a suspected China-nexus cyber espionage group to deliver

Two Critical Flaws Uncovered in Wondershare RepairIt Exposing User Data and AI Models

24/09/2025 0 Comments 0 tags

Cybersecurity researchers have disclosed two security flaws in Wondershare RepairIt that exposed private user data and potentially exposed the system to artificial intelligence (AI) model tampering and supply chain risks.

How One Bad Password Ended a 158-Year-Old Business

24/09/2025 0 Comments 0 tags

Most businesses don’t make it past their fifth birthday – studies show that roughly 50% of small businesses fail within the first five years. So when KNP Logistics Group (formerly Knights of

New YiBackdoor Malware Shares Major Code Overlaps with IcedID and Latrodectus

24/09/2025 0 Comments 0 tags

Cybersecurity researchers have disclosed details of a new malware family dubbed YiBackdoor that has been found to share “significant” source code overlaps with IcedID and Latrodectus. “The exact connection to

iframe Security Exposed: The Blind Spot Fueling Payment Skimmer Attacks

24/09/2025 0 Comments 0 tags

Think payment iframes are secure by design? Think again. Sophisticated attackers have quietly evolved malicious overlay techniques to exploit checkout pages and steal credit card data by bypassing the very

Hackers Exploit Pandoc CVE-2025-51591 to Target AWS IMDS and Steal EC2 IAM Credentials

24/09/2025 0 Comments 0 tags

Cloud security company Wiz has revealed that it uncovered in-the-wild exploitation of a security flaw in a Linux utility called Pandoc as part of attacks designed to infiltrate Amazon Web

State-Sponsored Hackers Exploiting Libraesva Email Security Gateway Vulnerability

24/09/2025 0 Comments 0 tags

Libraesva has released a security update to address a vulnerability in its Email Security Gateway (ESG) solution that it said has been exploited by state-sponsored threat actors. The vulnerability, tracked

Two New Supermicro BMC Bugs Allow Malicious Firmware to Evade Root of Trust Security

23/09/2025 0 Comments 0 tags

Cybersecurity researchers have disclosed details of two security vulnerabilities impacting Supermicro Baseboard Management Controller (BMC) firmware that could potentially allow attackers to bypass crucial verification steps and update the system

Eurojust Arrests 5 in €100M Cryptocurrency Investment Fraud Spanning 23 Countries

23/09/2025 0 Comments 0 tags

Law enforcement authorities in Europe have arrested five suspects in connection with an “elaborate” online investment fraud scheme that stole more than €100 million ($118 million) from over 100 victims