ASD Warns of Ongoing BADCANDY Attacks Exploiting Cisco IOS XE Vulnerability

01/11/2025 0 Comments 0 tags

The Australian Signals Directorate (ASD) has issued a bulletin about ongoing cyber attacks targeting unpatched Cisco IOS XE devices in the country with a previously undocumented implant known as BADCANDY.

OpenAI Unveils Aardvark: GPT-5 Agent That Finds and Fixes Code Flaws Automatically

31/10/2025 0 Comments 0 tags

OpenAI has announced the launch of an “agentic security researcher” that’s powered by its GPT-5 large language model (LLM) and is programmed to emulate a human expert capable of scanning,

Nation-State Hackers Deploy New Airstalk Malware in Suspected Supply Chain Attack

31/10/2025 0 Comments 0 tags

A suspected nation-state threat actor has been linked to the distribution of a new malware called Airstalk as part of a likely supply chain attack. Palo Alto Networks Unit 42

China-Linked Tick Group Exploits Lanscope Zero-Day to Hijack Corporate Systems

31/10/2025 0 Comments 0 tags

The exploitation of a recently disclosed critical security flaw in Motex Lanscope Endpoint Manager has been attributed to a cyber espionage group known as Tick. The vulnerability, tracked as CVE-2025-61932

China-Linked Hackers Exploit Windows Shortcut Flaw to Target European Diplomats

31/10/2025 0 Comments 0 tags

A China-affiliated threat actor known as UNC6384 has been linked to a fresh set of attacks exploiting an unpatched Windows shortcut vulnerability to target European diplomatic and government entities between

The MSP Cybersecurity Readiness Guide: Turning Security into Growth

31/10/2025 0 Comments 0 tags

MSPs are facing rising client expectations for strong cybersecurity and compliance outcomes, while threats grow more complex and regulatory demands evolve. Meanwhile, clients are increasingly seeking comprehensive protection without taking

CISA and NSA Issue Urgent Guidance to Secure WSUS and Microsoft Exchange Servers

31/10/2025 0 Comments 0 tags

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) and National Security Agency (NSA), along with international partners from Australia and Canada, have released guidance to harden on-premise Microsoft Exchange Server

Eclipse Foundation Revokes Leaked Open VSX Tokens Following Wiz Discovery

31/10/2025 0 Comments 0 tags

Eclipse Foundation, which maintains the open-source Open VSX project, said it has taken steps to revoke a small number of tokens that were leaked within Visual Studio Code (VS Code)

CISA Flags VMware Zero-Day Exploited by China-Linked Hackers in Active Attacks

31/10/2025 0 Comments 0 tags

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a high-severity security flaw impacting Broadcom VMware Tools and VMware Aria Operations to its Known Exploited Vulnerabilities (KEV) catalog,

A New Security Layer for macOS Takes Aim at Admin Errors Before Hackers Do

31/10/2025 0 Comments 0 tags

A design firm is editing a new campaign video on a MacBook Pro. The creative director opens a collaboration app that quietly requests microphone and camera permissions. MacOS is supposed