91Articles
9Categories
2025-07-10Date
🚨
CISA Adds One Known Exploited Vulnerability to CatalogCISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog , based on evidence of active exploitation.  CVE-2025-5777 Citrix NetScaler ADC and Gateway Out-of-Bounds Read Vulnerability These types of vulnerabilities are frequent attack vectors f…
KEV
🐛
Warning to ServiceNow admins: Fix your access control lists now
🐛
Critical mcp‑remote Vulnerability Enables LLM Clients to Remote Code Execution
🐛
ServiceNow Flaw CVE-2025-3648 Could Lead to Data Exposure via Misconfigured ACLs
🐛
Hackers Exploit GeoServer RCE Flaw to Deploy Cryptocurrency Miners
🐛
AMD discloses new CPU flaws that can enable data leaks via timing attacks
🐛
ServiceNow Platform Vulnerability Enables Attackers to Exfiltrate Sensitive Data
🐛
CVE-2025-6514 Threatens LLM clients
🐛
Critical mcp-remote Vulnerability Enables Remote Code Execution, Impacting 437,000+ Downloads
⚠️
McDonald’s AI Hiring Bot Exposed with ‘123456’ Password — Millions of Job‑Seekers’ Data at Risk
⚠️
MCP is fueling agentic AI — and introducing new security risks
⚠️
Ruckus Networks leaves severe flaws unpatched in management devices
⚠️
Researchers Trick ChatGPT into Leaking Windows Product Keys
⚠️
New “Opossum” Attack Breaches Secure TLS by Injecting Malicious Messages
⚠️
Critical Ruckus Wireless Flaws Threaten Enterprise Wi‑Fi Security
⚠️
Millions of Cars Exposed to Remote Hacking via PerfektBlue Attack
⚠️
Critical Bluetooth Protocol Vulnerabilities Expose Devices to RCE Attacks
⚠️
Four Hackers Arrested by UK Police After Attacks on M&S Co‑op and Harrods
⚠️
A Vulnerability in FortiWeb Could Allow for SQL Injection
⚠️
FBI's CJIS demystified: Best practices for passwords, MFA & access control
⚠️
North American APT Uses Exchange Zero-Day to Attack China
⚠️
eSIM Hack Allows for Cloning, Spying
⚠️
PerfektBlue Bluetooth flaws impact Mercedes, Volkswagen, Skoda cars
⚠️
CISA Releases Thirteen Industrial Control Systems Advisories
⚠️
News alert: INE Security debuts advanced eMAPT certification to close mobile security talent gap
⚠️
The Solidity Language open-source package was used in a $500,000 crypto heist
⚠️
The Solidity Language open-source package was used in a $500,000 crypto heist
⚠️
Cyberattacks on User Logins Jump 156%, Fueled by Infostealers and Phishing Toolkits
⚠️
Hackers Exploit GitHub to Distribute Malware Disguised as VPN Software
⚠️
Weaponized AI Extension Used by Hackers to Swipe $500,000 in Crypto
📋
July Patch Tuesday offers 127 fixes
📢
US Treasury Department sanctions individuals and entities over illegal IT worker scheme
📢
The Czech Republic bans DeepSeek in state administration over cybersecurity concerns
📢
The Czech Republic bans DeepSeek in state administration over cybersecurity concerns
📢
CISA Warns ValveLink Products May Expose Sensitive System Information
📢
Juniper Networks security advisory (AV25-415)
📢
Drupal security advisory (AV25-416)
📢
Wing FTP security advisory (AV25-391) - Update 1
📢
Schneider Electric Flaws Expose Systems to OS Command Injection Attacks
🔥
“Ransomware, was ist das?”
🔥
Ransomware Activity Spikes Amid Qilin’s New Wave of Targeted Attacks
🔥
Four Arrested in £440M Cyber Attack on Marks & Spencer, Co-op, and Harrods
🔥
Hackerangriff legt Ameos-Kliniken lahm
🔥
Qantas Confirms 5.7 Million Impacted by Data Breach
🔥
Four arrested in UK over M&S, Co-op, Harrod cyberattacks
🔥
Four Arrested in UK Over M&S, Co-op Cyberattacks
🔥
Ransomware Attack Stops Nova Scotia Power Meter Readings - Infosecurity Magazine
🔥
Ingram Micro Restores Systems Impacted by Ransomware
🔥
SatanLock Next in Line for Ransomware Group Shutdowns
🔥
French police arrest Russian basketball player accused of ransomware: report
🔥
Russian pro basketball player arrested for alleged role in ransomware attacks
🔥
SafePay Ransomware Uses RDP and VPN Access to Infiltrate Organizational Networks
🔥
Alert: Scattered Spider is Targeting the Aviation Sector
🔥
Four arrested in UK over M&S, Co-op, Harrods cyberattacks
🕵️
AMD warns of new Meltdown, Spectre-like bugs affecting CPUs
🕵️
SSH Tunneling in Action: direct-tcp requests [Guest Diary], (Wed, Jul 9th)
🕵️
ISC Stormcast For Thursday, July 10th, 2025 https://isc.sans.edu/podcastdetail/9520, (Thu, Jul 10th)
🕵️
Qantas tells customers what data was stolen during break-in
🕵️
GitPhish: New Tool Automates GitHub Device Code Phishing Attacks
🕵️
Massive Scraper Botnet of 3,600+ Devices Targets US and UK Websites
🕵️
AirMDR Raises $15.5 Million for MDR Solution
🕵️
What Can Businesses Do About Ethical Dilemmas Posed by AI?
🕵️
GitLab Vulnerabilities Allow Execution of Malicious Actions via Content Injection
🕵️
Using Signal Groups for Activism
🕵️
Most Cryptocurrency Stocks Are Rising. Join ALR MINER And Earn $8,700 In BTC Every Day
🕵️
Brave Browser For Android via F‑Droid: Now Fully Available
🕵️
Rhadamanthys Infostealer Uses ClickFix Technique to Steal Login Credentials
🕵️
Booz Allen Invests in Machine Identity Firm Corsha
🕵️
Schlechte Security-Noten für EU-Behörden
🕵️
INE Security Launches Enhanced eMAPT Certification
🕵️
Server with Rockerbox Tax Firm Data Exposed 286GB of Records
🕵️
Pay2Key’s Resurgence: Iranian Cyber Warfare Targets the West
🕵️
Export to PDF allows local file inclusion/path traversal in Microsoft 365 - hn security
🕵️
GitHub Abused to Spread Malware Disguised as Free VPN - CYFIRMA
🕵️
5 Takeaways: Senate Banking Committee Hearing on Digital Assets
🕵️
More than $40 million stolen from GMX crypto platform | The Record from Recorded Future News
🕵️
​​Forrester names Microsoft a Leader in the 2025 Zero Trust Platforms Wave™ report
🕵️
US Sanctions Key Threat Actors Tied to North Korea’s Remote IT Worker Scheme
🕵️
Ducex Packer for Android Evades Detection with Heavy Obfuscation Techniques
🕵️
Weaponized Termius App Delivers Latest ZuRu Malware to macOS Users
🕵️
AI Attacks Are Coming in a Big Way Now!
🕵️
Citrixbleed 2, Hardware Hacking, and Failed Bans - PSW #882
🌐
New ZuRu Malware Variant Targeting Developers via Trojanized Termius macOS App
🌐
Fake Gaming and AI Firms Push Malware on Cryptocurrency Users via Telegram and Discord
📡
What Security Leaders Need to Know About AI Governance for SaaS
📡
AMD Warns of New Transient Scheduler Attacks Impacting a Wide Range of CPUs
📡
Authorities arrest four hackers linked to UK retail hacking spree
📡
How extensions from Open VSX were used to steal cryptocurrency
📡
Sophos Central firewall management update
📡
UK Charges Four in ‘Scattered Spider’ Ransom Group
📡
Windows 11 now uses JScript9Legacy engine for improved security