102Articles
7Categories
2025-06-11Date
🐛
Insyde UEFI Flaw Enables Digital Certificate Injection via NVRAM Variable
🐛
HPE Aruba Network Flaw Exposes Sensitive Data to Potential Hackers
🐛
CVE-2025-33053: RCE in WebDAV | Kaspersky official blog
🐛
CoreDNS Vulnerability Allows Attackers to Exhaust Server Memory via Amplification Attack
🐛
Multiple Microsoft Office Vulnerabilities Enable Remote Code Execution by Attackers
🐛
CVE-2025-32711 M365 Copilot Information Disclosure Vulnerability
🐛
Windows Task Scheduler Flaw Allows Attackers to Escalate Privileges
🐛
Windows Common Log File System Driver Flaw Allows Attackers to Escalate Privileges
🐛
Vulnerability impacting Roundcube Webmail – CVE-2025-49113
🐛
Outlook Vulnerability Allows Remote Execution of Arbitrary Code by Attackers
🐛
Insyde UEFI Application Vulnerability Enables Digital Certificate Injection Through NVRAM Variable
🐛
June Patch Tuesday advice for CSOs: Defense-in-depth needed to stop RCEs
🐛
New Secure Boot Vulnerability Allows Attackers to Install Malware in PC and Server Boot Processes
⚠️
Patch Tuesday, June 2025 Edition
⚠️
Is attacker laziness enabled by genAI shortcuts making them easier to catch?
⚠️
Multiple Chrome Flaws Enable Remote Code Execution by Attackers
⚠️
8 things CISOs have learned from cyber incidents
⚠️
Cybersecurity Today: State-Backed ChatGPT Misuse, Dark Gaboon Attacks, and Starlink Installation Controversy
⚠️
Quasar RAT Delivered Through Bat Files, (Wed, Jun 11th)
⚠️
Microsoft Patches 67 Vulnerabilities Including WEBDAV Zero-Day Exploited in the Wild
KEV
⚠️
CISO who helped unmask Badbox warns: Version 3 is coming
⚠️
SinoTrack GPS Devices Vulnerable to Remote Vehicle Control via Default Passwords
⚠️
Apache CloudStack Flaw Allows Attackers to Execute Privileged Actions
⚠️
June 2025 Patch Tuesday: Microsoft Fixes 66 Bugs, Including Active 0-Day
⚠️
Recently Disrupted DanaBot Leaked Valuable Data for 3 Years
⚠️
INTERPOL Dismantles 20,000+ Malicious IPs Linked to 69 Malware Variants in Operation Secure
⚠️
VU#211341 - A vulnerability in Insyde H2O UEFI application allows for digital certificate injection via NVRAM variable
⚠️
Neues GenAI-Tool soll Open-Source-Sicherheit erhöhen
⚠️
Forgotten patches: The silent killer
⚠️
Operation Secure disrupts global infostealer malware operations
⚠️
Brute-force attacks target Apache Tomcat management panels
⚠️
The critical role that partnerships play in shrinking the cyber skills gap
⚠️
295 Malicious IPs Launch Coordinated Brute-Force Attacks on Apache Tomcat Manager
⚠️
Hackers exploited Windows WebDav zero-day to drop malware
⚠️
Salesforce Industry Cloud Hit by 20 Vulnerabilities Including 0days
⚠️
Zero-click AI data leak flaw uncovered in Microsoft 365 Copilot
⚠️
295 Malicious IPs Launch Coordinated Brute-Force Attacks on Apache Tomcat Manager
⚠️
Hackers exploited Windows WebDav zero-day to drop malware
⚠️
Interpol Dismantles 20,000 Malicious IPs and Domains Tied to 69 Malware Variants
⚠️
Erie Insurance confirms cyberattack behind business disruptions
⚠️
Smashing Security podcast #421: Toothpick flirts, Google leaks, and ICE ICE scammers
⚠️
Operation Secure: Trend Micro's Threat Intelligence Fuels INTERPOL's Infostealer Infrastructure Takedown
⚠️
Risky Business #795 -- How The Com is hacking Salesforce tenants
📋
ICS Patch Tuesday: Vulnerabilities Addressed by Siemens, Schneider, Aveva, CISA
📋
Microsoft fixes Windows Server auth issues caused by April updates
📋
Microsoft creates separate Windows 11 24H2 update for incompatible PCs
📋
ConnectWise to Update Code Signing Certificates for ScreenConnect, Automate, and RMM
📢
China-linked hackers target cybersecurity firms, governments in global espionage campaign
📢
Mitel security advisory (AV25-337)
📢
Palo Alto Networks security advisory (AV25-338)
📢
Apache CloudStack security advisory (AV25-339)
📢
Apache ActiveMQ security advisory (AV25-340)
🔥
Why DNS Security Is Your First Defense Against Cyber Attacks?
🔥
Trove of port agency’s data stolen, hackers claim | Cybernews
🔥
40,000 Security Cameras Exposed to Remote Hacking
🔥
84% of Organizations’ SOC Analysts are Unknowingly
🔥
Cybercriminals Are Getting Smarter... Are You? 🤯
🔥
They’re Already Inside… And You Didn’t Even Notice!
🔥
Former Black Basta Members Use Microsoft Teams and Python Scripts in 2025 Attacks
🔥
SmartAttack uses smartwatches to steal data from air-gapped systems
🕵️
How Scammers Are Using AI to Steal College Financial Aid
🕵️
ISC Stormcast For Wednesday, June 11th, 2025 https://isc.sans.edu/podcastdetail/9488, (Wed, Jun 11th)
🕵️
Security Money: The Index is Up, CISOs Need to Get Out, and Are You Burning Out? - BSW #399
🕵️
Chrome, Firefox Updates Resolve High-Severity Memory Bugs
🕵️
Rethinking Success in Security: Why Climbing the Corporate Ladder Isn’t Always the Goal
🕵️
Horizon3.ai Raises $100 Million in Series D Funding
🕵️
Cyera Raises $540 Million to Expand AI-Powered Data Security Platform
🕵️
Facebook malvertising reveals 4K domains spoofing 68 brands | SC Media
🕵️
Ivanti Workspace Control hardcoded key flaws expose SQL credentials
🕵️
Eggs in a Cloudy Basket: Skeleton Spider’s Trusted Cloud Malware Delivery - DomainTools Investigations | DTI
🕵️
40,000 cameras expose feeds to datacenters, health clinics • The Register
🕵️
Fortinet, Ivanti Patch High-Severity Vulnerabilities
🕵️
New BrowserVenom malware being distributed via fake DeepSeek phishing website
🕵️
New BrowserVenom malware being distributed via fake DeepSeek phishing website
🕵️
Adobe Releases Patch Fixing 254 Vulnerabilities, Closing High-Severity Security Gaps
🕵️
“Oral pleasure” app potentially leaks millions of messages and GPS locations
🕵️
“Oral pleasure” app potentially leaks millions of messages and GPS locations
🕵️
Why would you want to sign your commits with PGP? Is SSH insufficient?
🕵️
Webinar Today: Rethinking Endpoint Hardening for Today’s Attack Landscape
🕵️
What are You Working on Wednesday
🕵️
Flaw in Industrial Computer Maker’s UEFI Apps Enables Secure Boot Bypass on Many Devices
🕵️
Maze Banks $25M to Tackle Cloud Security with AI Agents
🕵️
Securonix Acquires Threat Intelligence Firm ThreatQuotient
🕵️
Human Risk Management: Cybersecurity as a Business Enabler
🕵️
OpenAI Report Describes AI-Assisted Social Engineering Attacks
🕵️
RSAC Fireside Chat: Operationalizing diverse security to assure customers, partners–and insurers
🕵️
INTERPOL Dismantles 20,000+ Malicious IPs Linked to 69 Malware Variants in Operation Secure
🕵️
New Secure Boot flaw lets attackers install bootkit malware, patch now
🕵️
Linux Malware Authors Targeting Cloud Environments with ELF Binaries
🕵️
Researchers find the first known “zero-click” attack on an AI agent; the now-fixed flaw in Microsoft 365 Copilot would let a hacker attack a user via an email
🕵️
Researchers find the first known “zero-click” attack on an AI agent; the now-fixed flaw in Microsoft 365 Copilot would let a hacker attack a user via an email
🕵️
Over 40,000 Internet-Connected Cameras Exposed, Streaming Live Online
📡
How to Build a Lean Security Model: 5 Lessons from River Island
📡
Enabling Secure AI Inference: Trend Cybertron Leverages NVIDIA Universal LLM NIM Microservices
📡
Microsoft fixes unreachable Windows Server domain controllers
📡
23andMe says 15% of customers asked to delete their genetic data since bankruptcy
📡
Chairs’ statement on G7 Cybersecurity Working Group meeting
📡
How to delete your 23andMe data
📡
US government’s vaccine website defaced with AI-generated content
📡
Innovation in the Fast Lane: Lessons from Motorsport and Cybersecurity
📡
ChatGPT o3 API 80% price drop has no impact on performance
📡
Ensuring Secure Container Deployments with Image Signature Verification