105Articles
8Categories
2025-07-16Date
🚨
CISA adds serious Wing FTP Server vulnerability to must-fix list - iTnewssubmitted by kid to cybersecurity 1 points | 0 comments https://www.itnews.com.au/news/cisa-adds-serious-wing-ftp-server-vulnerability-to-must-fix-list-618754
🐛
Google Chrome 0-Day Vulnerability Under Active Exploitation
KEV
🐛
Node.js Vulnerabilities Leave Windows Apps Vulnerable to Path Traversal and HashDoS
🐛
Google AI "Big Sleep" Stops Exploitation of Critical SQLite Vulnerability Before Hackers Act
KEV
🐛
Command-Line Editor Vim Hit by Vulnerability Allowing File Overwrites
🐛
Urgent: Google Releases Critical Chrome Update for CVE-2025-6558 Exploit Active in the Wild
KEV
🐛
Salt Typhoon hacked the US National Guard for 9 months, and accessed networks in every state
🐛
Google’s AI ‘Big Sleep’ Detects Critical SQLite 0-Day, Halts Ongoing Attacks
🐛
New Fortinet FortiWeb hacks likely linked to public RCE exploits
🐛
Chromium: CVE-2025-7657 Use after free in WebRTC
🐛
Chromium: CVE-2025-6558 Incorrect validation of untrusted input in ANGLE and GPU
🐛
Chromium: CVE-2025-7656 Integer overflow in V8
🐛
CVE-2024-36350 AMD: CVE-2024-36350 Transient Scheduler Attack in Store Queue
🐛
NoBooze1 Malware Targets TP-Link Routers via CVE-2019-9082
🐛
NoBooze1 Malware Targets TP-Link Routers via CVE-2019-9082
⚠️
Alert: Nvidia GPUs are vulnerable to Rowhammer attacks
⚠️
7 fundamentale Cloud-Bedrohungen
⚠️
Google Gemini vulnerability enables hidden phishing attacks
⚠️
So endet die Dienstreise nicht in Gewahrsam
⚠️
VMware ESXi and Workstation Vulnerabilities Allow Host-Level Code Execution
⚠️
Cybersecurity Today: GPU Vulnerabilities, Microsoft's Security Overhaul, and Major Flaws in Automotive Bluetooth
⚠️
Chrome Update Patches Fifth Zero-Day of 2025
⚠️
7 obsolete security practices that should be terminated immediately
KEV
⚠️
Hackers Exploit Ivanti and Fortinet VPN Vulnerabilities in Attacks on Japanese Companies
⚠️
A Little-Known Microsoft Program Could Expose the U.S. Defense Department to Chinese Hackers
⚠️
A Little-Known Microsoft Program Could Expose the U.S. Defense Department to Chinese Hackers
⚠️
Google fixes actively exploited sandbox escape zero day in Chrome
KEV
⚠️
Konfety Android Malware Exploits ZIP Tricks to Masquerade as Legit Apps on Google Play
⚠️
NimDoor MacOS Malware Abuses Zoom SDK Updates to Steal Keychain Credentials
⚠️
Google Says AI Agent Thwarted Exploitation of Critical Vulnerability
⚠️
Gmail Message Exploit Triggers Code Execution in Claude, Bypassing Protections
⚠️
Marks & Spencer hackers hit US retailer Belk | Cybernews
⚠️
Critical Golden dMSA Attack in Windows Server 2025 Enables Cross-Domain Attacks and Persistent Access
⚠️
Samsung WLAN AP Flaws Let Remote Attackers Run Commands as Root
⚠️
Zyxel security advisory for path traversal vulnerability in APs | Zyxel Networks
⚠️
Lenovo Vantage Flaws Enable Attackers to Gain SYSTEM-Level Privileges
⚠️
One click to compromise: Oracle Cloud Code Editor flaw exposed users to RCE
⚠️
Europol disrupts pro-Russian NoName057(16) DDoS hacktivist group
⚠️
Nvidia-GPUs anfällig für Rowhammer-Angriffe
⚠️
1Password releases MCP Server for Trelica
📢
CISA's NIMBUS 2000 Initiative: Understanding Key Findings and Strengthening Cloud Identity Security
📢
Oracle security advisory – July 2025 quarterly rollup (AV25-425)
📢
Google Chrome security advisory (AV25-426)
📢
Afghans burnt by UK data leak because someone used email to send a large sensitive dataset -- which email service, anyone know?
📢
Hacking Trains
📢
Joint Advisory: Cyber officials warn Canadians of malicious campaign to impersonate high-profile public figures
📢
HPE security advisory (AV25-427)
📢
Cisco security advisory (AV25-428)
📢
GUEST ESSAY: Why IoT security must start at the module—a blueprint for scaling IoT security
🔥
Former U.S. Army Member Pleads Guilty in Telecom Hacking Case
🔥
Former US Soldier Who Hacked AT&T and Verizon Pleads Guilty
🔥
Authorities Take Down ‘Diskstation’ Ransomware Gang Targeting Synology NAS Globally
🔥
China’s Salt Typhoon Hacked US National Guard
🔥
US National Guard unit was 'extensively' hacked by Salt Typhoon in 2024, memo says | Reuters
🔥
Chinese ‘Salt Typhoon’ Hackers Infiltrated US National Guard Network for Almost a Year
🔥
Compumedics Ransomware Attack Led to Data Breach Impacting 318,000
🔥
How to protect your router from being hacked and becoming a residential proxy | Kaspersky official blog
🔥
More Free File Sharing Services Abuse, (Wed, Jul 16th)
🔥
Police dismantle DiskStation ransomware gang targeting NAS devices, arrest suspected ringleader
🔥
United Natural Foods Projects Up to $400M Sales Hit from June Cyberattack
🔥
SonicWall SMA devices hacked with OVERSTEP rootkit tied to ransomware
🔥
Cloudflare says 1.1.1.1 outage not caused by attack or BGP hijack
🔥
Hackers Leverage Microsoft Teams to Spread Matanbuchus 3.0 Malware to Targeted Firms
🔥
Europol and Eurojust disrupt pro-Russian hacktivist group NoName057(16) that has claimed responsibility for 1,000+ DDoS attacks since 2022, and make two arrests
🔥
Europol and Eurojust disrupt pro-Russian hacktivist group NoName057(16) that has claimed responsibility for 1,000+ DDoS attacks since 2022, and make two arrests
🔥
Louis Vuitton says regional data breaches tied to same cyberattack
🔥
Digital Factories, Digital Dangers: Why Manufacturing is a Prime Target for Cyberattacks
🔥
Welcoming Aura to Have I Been Pwned's Partner Program
🔥
Co-op confirms data of 6.5 million members stolen in cyberattack
🕵️
ISC Stormcast For Wednesday, July 16th, 2025 https://isc.sans.edu/podcastdetail/9528, (Wed, Jul 16th)
🕵️
IoT Security Firm Exein Raises $81 Million
🕵️
Abacus Dark Web Market Suspected of Exit Scam with Held Bitcoin Funds
🕵️
Curl 8.15.0 Officially Released: 233 Bugs Fixed in Major Update
🕵️
Unit 42 MDR Recognized as a Leader in MDR, Again
🕵️
Minimize SAP Migration Challenges, Cybersecurity Maturity, and Radical Transparency - ... - BSW #404
🕵️
Massive DDoS Attack Slams Internet with 7.3 Tbps and 4.8 Billion Packets Per Second
🕵️
Email Filters Defeated by Polyglot File Trick Used in Malware Campaigns
🕵️
Oracle Issues Critical Update Fixing 309 Vulnerabilities Across Products
🕵️
Dark Partners Hacker Group Drains Crypto Wallets Using Fake AI Tools and VPN Services
🕵️
Windows Secure Boot Certificate Expired in June, Microsoft Issues Warning
🕵️
Threat Actors Use SVG Smuggling for Browser-Native Redirection - SecurityWeek
🕵️
Cyber Intelligence Firm iCOUNTER Emerges From Stealth With $30 Million in Funding
🕵️
Hyper-volumetric DDoS attacks skyrocket: Cloudflare’s 2025 Q2 DDoS threat report
🕵️
Insecure Shopify plugin exposed hundreds of stores| Cybernews
🕵️
Konfety Returns: Classic Mobile Threat with New Evasion Techniques
🕵️
SonicWall SMA Appliances Targeted With New ‘Overstep’ Malware
🕵️
UNC6148 Backdoors Fully-Patched SonicWall SMA 100 Series Devices with OVERSTEP Rootkit
🕵️
Protecting customers from Octo Tempest attacks across multiple industries
🕵️
Europol-Coordinated Global Operation Takes Down Pro-Russian Cybercrime Network
🕵️
Microsoft is named a Leader in the 2025 Gartner® Magic Quadrant™ for Endpoint Protection Platforms
🕵️
SquidLoader Deploys Stealthy Malware with Near-Zero Detection to Evade Security Measures
🕵️
Threat Actors Weaponize WordPress Sites to Redirect Visitors to Malicious Domains
🕵️
Critical Golden dMSA Attack in Windows Server 2025 Enables Cross-Domain Attacks and Persistent Access
🕵️
Hackers Leverage 607 Malicious Domains to Spread APK Malware with Remote Command Execution
🕵️
Cracked Apps Delivering Infostealers Identified as Leading Attack Vector in June 2025
🕵️
Engineered To Evade: How Phishing Attacks Are Designed To Get Through Your Secure Email Gateway
🕵️
Google finds custom backdoor being installed on SonicWall network devices
🌐
New Konfety Malware Variant Evades Detection by Manipulating APKs and Dynamic Code
📡
Deepfakes. Fake Recruiters. Cloned CFOs — Learn How to Stop AI-Driven Attacks in Real Time
📡
Chinese authorities are using a new tool to hack seized phones and extract data
📡
Grok 4 benchmark results: Tops math, ranks second in coding
📡
AI Agents Act Like Employees With Root Access—Here's How to Regain Control
📡
UK retail giant Co-op confirms hackers stole all 6.5 million customer records
📡
Call of Duty cheaters complain after Activision launches new wave of mass-bans
📡
U.S. Army soldier pleads guilty to extorting 10 tech, telecom firms