Iran-Linked MuddyWater Targets 100+ Organisations in Global Espionage Campaign

22/10/2025 0 Comments 0 tags

The Iranian nation-state group known as MuddyWater has been attributed to a new campaign that has leveraged a compromised email account to distribute a backdoor called Phoenix to various organizations

Fake Nethereum NuGet Package Used Homoglyph Trick to Steal Crypto Wallet Keys

22/10/2025 0 Comments 0 tags

Cybersecurity researchers have uncovered a new supply chain attack targeting the NuGet package manager with malicious typosquats of Nethereum, a popular Ethereum .NET integration platform, to steal victims’ cryptocurrency wallet

Chinese Threat Actors Exploit ToolShell SharePoint Flaw Weeks After Microsoft’s July Patch

22/10/2025 0 Comments 0 tags

Threat actors with ties to China exploited the ToolShell security vulnerability in Microsoft SharePoint to breach a telecommunications company in the Middle East after it was publicly disclosed and patched

Why You Should Swap Passwords for Passphrases

22/10/2025 0 Comments 0 tags

The advice didn’t change for decades: use complex passwords with uppercase, lowercase, numbers, and symbols. The idea is to make passwords harder for hackers to crack via brute force methods.

Bridging the Remediation Gap: Introducing Pentera Resolve

22/10/2025 0 Comments 0 tags

From Detection to Resolution: Why the Gap Persists A critical vulnerability is identified in an exposed cloud asset. Within hours, five different tools alert you about it: your vulnerability scanner,

Researchers Identify PassiveNeuron APT Using Neursite and NeuralExecutor Malware

22/10/2025 0 Comments 0 tags

Government, financial, and industrial organizations located in Asia, Africa, and Latin America are the target of a new campaign dubbed PassiveNeuron, according to findings from Kaspersky. The cyber espionage activity

TARmageddon Flaw in Async-Tar Rust Library Could Enable Remote Code Execution

22/10/2025 0 Comments 0 tags

Cybersecurity researchers have disclosed details of a high-severity flaw impacting the popular async-tar Rust library and its forks, including tokio-tar, that could result in remote code execution under certain conditions.

TP-Link Patches Four Omada Gateway Flaws, Two Allow Remote Code Execution

22/10/2025 0 Comments 0 tags

TP-Link has released security updates to address four security flaws impacting Omada gateway devices, including two critical bugs that could result in arbitrary code execution. The vulnerabilities in question are

PolarEdge Targets Cisco, ASUS, QNAP, Synology Routers in Expanding Botnet Campaign

21/10/2025 0 Comments 0 tags

Cybersecurity researchers have shed light on the inner workings of a botnet malware called PolarEdge. PolarEdge was first documented by Sekoia in February 2025, attributing it to a campaign targeting

Meta Rolls Out New Tools to Protect WhatsApp and Messenger Users from Scams

21/10/2025 0 Comments 0 tags

Meta on Tuesday said it’s launching new tools to protect Messenger and WhatsApp users from potential scams. To that end, the company said it’s introducing new warnings on WhatsApp when