83Articles
9Categories
2025-07-11Date
🚨
CISA Adds Citrix NetScaler CVE-2025-5777 to KEV Catalog as Active Exploits Target EnterprisesThe U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a critical security flaw impacting Citrix NetScaler ADC and Gateway to its Known Exploited Vulnerabilities (KEV) catalog, officially confirming the vulnerability has been weaponized in the wild. Th…
KEV
🚨
CISA Adds Citrix NetScaler CVE-2025-5777 to KEV Catalog as Active Exploits Target Enterprisessubmitted by kid to cybersecurity 1 points | 0 comments https://thehackernews.com/2025/07/cisa-adds-citrix-netscaler-cve-2025.html
KEV
🐛
Palo Alto Networks GlobalProtect Vulnerability Enabling Root-Level Access
🐛
Juniper Junos OS Flaw Allows Attackers to Cause Denial of Service
🐛
Critical D-Link Vulnerability Lets Remote Attackers Crash Servers Without Authentication
🐛
Severe WordPress Plugin Flaw Puts 200,000 Sites at Risk of Full Takeover
🐛
Critical Wing FTP Server Vulnerability Exploited
🐛
CISA Alerts on Active Exploits Targeting Citrix NetScaler ADC and Gateway Flaw
🐛
Wing FTP Server RCE Vulnerability Under Active Exploitation
🐛
Critical Wing FTP Server Vulnerability (CVE-2025-47812) Actively Being Exploited in the Wild
KEV
🐛
Critical Wing FTP Server Vulnerability (CVE-2025-47812) Actively Being Exploited in the Wild
KEV
🐛
CISA tags Citrix Bleed 2 as exploited, gives agencies a day to patch
🐛
Fortinet Releases Patch for Critical SQL Injection Flaw in FortiWeb (CVE-2025-25257)
🐛
Fortinet Releases Patch for Critical SQL Injection Flaw in FortiWeb (CVE-2025-25257)
⚠️
Laravel APP_KEY Flaw Exploited to Trigger Remote Code Execution on Hundreds of Apps
KEV
⚠️
Anatomy of a Scattered Spider attack: A growing ransomware threat evolves
⚠️
Cybersecurity Today: Marks and Spencer Hack, Brazilian Bank Breach, and McDonald's Data Vulnerability
⚠️
AMD Warns of Transient Scheduler Attacks Impacting Broad Range of Chipsets
⚠️
New eSIM Hack Allows Attackers to Clone Your eSIM Profile
⚠️
IT Giant Ingram Micro Restores Operations After Ransomware Attack
⚠️
CISA Issues 13 New Advisories on Industrial Control System Vulnerabilities and Exploits
⚠️
RapidFire Network Detective Vulnerabilities Expose Sensitive Data to Threat Actors
⚠️
Russian Basketball Star Arrested Over Ransomware Attacks on 900+ Companies
⚠️
PerfektBlue Bluetooth flaws impact Mercedes, Volkswagen, Skoda cars
⚠️
Critical mcp-remote Vulnerability Enables Remote Code Execution, Impacting 437,000+ Downloads
⚠️
McDonald’s AI hiring tool’s password? ‘123456’: Exposes data of 64M applicants
⚠️
Palo Alto Networks GlobalProtect Vulnerability Enabling Root-Level Access
⚠️
PerfektBlue Bluetooth Vulnerabilities Expose Millions of Vehicles to Remote Code Execution
⚠️
New AI Malware PoC Reliably Evades Microsoft Defender
⚠️
The zero-day that could've compromised every Cursor and Windsurf user
⚠️
CISA confirms hackers are actively exploiting critical ‘Citrix Bleed 2’ bug
⚠️
Qilin Leads in Exploiting Unpatched Fortinet Vulnerabilities
⚠️
Exploits for pre-auth Fortinet FortiWeb RCE flaw released, patch now
⚠️
'123456' password exposed info for 64 million McDonald’s job applicants
⚠️
Vulnerability-Lookup 2.13.0
⚠️
'123456' password exposed chats for 64 million McDonald’s job applicants
⚠️
'123456' password exposed chats for 64 million McDonald’s job applications
⚠️
'123456' password exposed chats for 64 million McDonald’s job chatbot applications
📋
July 2025 Breaks a Decade of Monthly Android Patches
📢
Prorussische Hacker greifen Sachsen-Anhalts Landesportal an
📢
EU Unveils AI Code of Practice to Help Businesses Comply With Bloc’s Rules
📢
Iranian APT Hackers Targeting Transportation and Manufacturing Sectors in Active Attacks
📢
Mis-scoped AWS Organizations Policy Allowed Hackers to Seize Full Control of AWS Environment
🔥
McDonald’s Chatbot Recruitment Platform Leaked 64 Million Job Applications
🔥
Iranian-Backed Pay2Key Ransomware Resurfaces with 80% Profit Share for Cybercriminals
🔥
Paddy Power and BetFair have suffered a data breach
🔥
Seven Healthcare Organizations Added to Ransomware Groups’ Data Leak Sites
🔥
McDonald’s AI Hiring Tool McHire Leaked Data of 64 Million Job Seekers
🔥
SafePay Ransomware Uses RDP and VPN Access to Infiltrate Organizational Networks
🔥
Customer, Employee Data Exposed in Nippon Steel Breach
🔥
Rockerbox Data Breach Exposes 245,949 Users’ SSNs and Driver’s Licenses
🔥
Russian basketball player arrested in ransomware case despite being “useless with computers”
🔥
Iranian-Backed Pay2Key Ransomware Resurfaces with 80% Profit Share for Cybercriminals
🔥
Infostealers Targeting macOS Users in Active Campaigns to Steal Sensitive Data
🔥
Arkana Ransomware Gang Claims Theft of 2.2 Million Customer Records
🔥
WordPress Gravity Forms developer hacked to push backdoored plugins
🕵️
ISC Stormcast For Friday, July 11th, 2025 https://isc.sans.edu/podcastdetail/9522, (Fri, Jul 11th)
🕵️
Windows 11 Users Encounter New Black Screen of Death Update
🕵️
Rowhammer Attack Demonstrated Against Nvidia GPU
🕵️
TikTok Faces Fresh European Privacy Investigation Over China Data Transfers
🕵️
Cyberstarts Launches $300M Liquidity Fund to Help Startups Retain Top Talent
🕵️
eSIM Hack Allows for Cloning, Spying  - SecurityWeek
🕵️
GreyNoise Identifies New Scraper Botnet Concentrated in Taiwan
🕵️
In Other News: Microsoft Finds AMD CPU Flaws, ZuRu macOS Malware Evolves, DoNot APT Targets Govs
🕵️
AMD Warns of New Transient Scheduler Attacks Impacting a Wide Range of CPUs
🕵️
Setting the Standard for Zero Trust Platforms
🕵️
UK Arrests Four in ‘Scattered Spider’ Ransom Group – Krebs on Security
🕵️
TikTok Faces Fresh European Privacy Investigation Over China Data Transfers - SecurityWeek
🕵️
Windows 11 now uses JScript9Legacy engine for improved security
🕵️
Rowhammer Attack Demonstrated Against Nvidia GPU - SecurityWeek
🕵️
Microsoft Removes High-Privilege Access to Strengthen Microsoft 365 Security
🕵️
AI-Generated Summaries Mistakenly Suggest Phishing Sites
🕵️
Tradecraft in the Information Age
🕵️
ChatGPT creates phisher’s paradise by serving wrong URLs
🕵️
SLOW#TEMPEST Hackers Adopt New Evasion Tactics to Bypass Detection Systems
🕵️
Squid Dominated the Oceans in the Late Cretaceous
🕵️
Tapjacking, ZuChe, PerfektBlue, McHacking, OT in the IT, Add Ons, Josh Marpet... - SWN #493
🌐
Can an ‘ethical’ spyware maker justify providing its tech to ICE?
📡
Securing Data in the AI Era
📡
AI chatbot’s simple ‘123456’ password risked exposing personal data of millions of McDonald’s job applicants
📡
What an SMS blaster is, and how to protect yourself from malicious SMS messages while traveling | Kaspersky official blog
📡
NVIDIA issues guidance to defend GDDR6 GPUs against Rowhammer attacks
📡
NVIDIA shares guidance to defend GDDR6 GPUs against Rowhammer attacks