111Articles
10Categories
2025-07-23Date
🚨
CISA Warns of SysAid Vulnerability ExploitationCISA has added two recent SysAid vulnerabilities, CVE-2025-2776 and CVE-2025-2775, to its KEV catalog. The post CISA Warns of SysAid Vulnerability Exploitation appeared first on SecurityWeek .
KEV
🐛
CISA Orders Urgent Patching After Chinese Hackers Exploit SharePoint Flaws in Live Attacks
KEV
🐛
CISA Warns: SysAid Flaws Under Active Attack Enable Remote File Access and SSRF
KEV
🐛
Critical JavaScript Library Vulnerability Exposes Apps to Remote Attacks
🐛
Synology BeeDrive for Desktop on Windows Vulnerabilities Let Hackers Run Malicious Code
🐛
Analyzing Sharepoint Exploits (CVE-2025-53770, CVE-2025-53771), (Wed, Jul 23rd)
⚠️
UK proposal would forbid ransom payments by gov’t agencies, but will it meaningfully decrease ransomware attacks?
⚠️
Warning to feds: US infrastructure is under silent attack
⚠️
Die besten DAST- & SAST-Tools
⚠️
Chinese Hackers Exploit Active 0-Day Vulnerability in SharePoint Servers
⚠️
CISA Alerts on Active Exploitation of Microsoft SharePoint Code Injection and Authentication Vulnerabilities
⚠️
Top 10 MCP vulnerabilities: The hidden risks of AI integrations
⚠️
Hacker aus China nutzen neue Sharepoint-Lücke aus
⚠️
Researchers Expose Russia’s Most Secretive FSB Spy Network
⚠️
CISA Alerts on Chinese Hackers Actively Exploiting SharePoint 0-Day
⚠️
Hackers Start Exploiting Critical Cisco ISE Vulnerabilities
⚠️
Coyote Malware Targets WILS, Abusing Microsoft UI Automation to Exfiltrate Logins
⚠️
Lumma Stealer Malware Returns After Takedown Attempt
⚠️
Google Launches OSS Rebuild to Expose Malicious Code in Widely Used Open-Source Packages
⚠️
Google Sues the Badbox Botnet Operators
⚠️
Interlock ransomware threat expands across the US and Europe, hits healthcare and smart cities
⚠️
New ZuRu Malware Variant Targets macOS via Termius SSH Exploit
⚠️
Windows 11 Introduces Powerful New AI Features – What’s New!
⚠️
Clorox sues Cognizant for $380M over alleged helpdesk failures in cyberattack
⚠️
Lumma Stealer Masquerades as Pirated Apps to Steal Logins and Data
⚠️
Malicious LNK File Posing as Credit Card Security Email Steals User Data
⚠️
US Nuclear Weapons Data Compromised via SharePoint Zero-Day Attack
⚠️
Cyberattack on Germany’s AMEOS Hospital Network Exposes Patient Data
⚠️
New Coyote Malware Variant Exploits Windows UI Automation to Steal Banking Credentials
⚠️
CISA warns of hackers exploiting SysAid vulnerabilities in attacks
⚠️
Mimo Targets Magento CMS to Steal Card Details and Monetize Bandwidth
⚠️
New ACRStealer Exploits Google Docs and Steam for C2 Server Using DDR Technique
⚠️
CyberRiskTV Live Coverage from BlackHat 2025 - Day 2
⚠️
US nuclear weapons agency reportedly hacked in SharePoint attacks
⚠️
US nuclear weapons agency hacked in Microsoft SharePoint attacks
⚠️
Threat Actor Mimo Targets Magento and Docker to Deploy Crypto Miners and Proxyware
⚠️
Smashing Security podcast #427: When 2G attacks, and a romantic road trip goes wrong
⚠️
White House AI plan heavy on cyber, light on implementation
📋
Chrome High-Severity Vulnerabilities Allow Hackers to Gain Full Control
📋
High-Severity Flaws Patched in Chrome, Firefox
📢
Mozilla Launches Firefox 141 With Critical Security Fixes – Update Immediately
📢
GitLab security advisory (AV25-445)
📢
Google Chrome security advisory (AV25-444)
📢
France Says Administrator of Cybercrime Forum XSS Arrested in Ukraine
📢
HPE security advisory (AV25-446)
📢
Ukraine arrests suspected admin of XSS Russian hacking forum
📢
SonicWall security advisory (AV25-447)
📢
European authorities arrest alleged admin of notorious Russian crime forum XSS
📢
Why ‘Secure by Default’ Could Save Millions
📢
JavaScript Form-Data security advisory (AV25-448)
📢
Mitel security advisory (AV25-449)
📢
This Is How Boards Kill Cybersecurity Projects 😬
🔥
Creams Cafe - 159,652 breached accounts
🔥
Hackers Injected Malicious Firefox Packages in Arch Linux Repo
🔥
Ransomware Groups Weaponize RMM Tools to Infiltrate Networks and Exfiltrate Data
🔥
Cyberattacke auf SWMH-Mediengruppe
🔥
Organizations Warned of Interlock Ransomware Attacks
🔥
UK’s Ransomware Payment Ban: Bold Strategy or Dangerous Gamble?
🔥
Hundreds of organizations breached by SharePoint mass-hacks
🔥
CyberRiskTV Live Coverage from BlackHat 2025 - Day 1
🔥
Clorox Files Lawsuit Against Cognizant Over Employee Password Leak to Hackers
🔥
CyberRiskTV Live Coverage from BlackHat 2025 - Day 3
🔥
NPM package ‘is’ with 2.8M weekly downloads infected devs with malware
🔥
Hackers fooled Cognizant help desk, says Clorox in $380M cyberattack lawsuit
🔥
UK to ban public sector from paying ransomware demands
🔥
Hard Truth: Endpoint Security Isn’t Enough Anymore
🕵️
Deny by Default: Genius or Dangerous?
🕵️
Lawsuit says Clorox hackers got passwords simply by asking
🕵️
TapTrap: new attack on Android that lures you into performing actions you did not intend to do. This allows an app to access your camera or location, or erase your device—all without your consent.
🕵️
ISC Stormcast For Wednesday, July 23rd, 2025 https://isc.sans.edu/podcastdetail/9538, (Wed, Jul 23rd)
🕵️
Kali Linux Introduces Two New Tools for Raspberry Pi to Boost Wi-Fi Performance
🕵️
Windows 11 Introduces Black Screen of Death and Auto Recovery
🕵️
Hackerangriff auf die SWMH-Mediengruppe
🕵️
Getting Consensus as a CISO, While Calculating Cybersecurity ROI and Building a Team -... - BSW #405
🕵️
Critical Vulnerabilities Patched in Sophos Firewall
🕵️
"The Irish State pays for China's surveillance in Ireland:" Rights group criticizes government as thousands of China's Hikvision cameras are installed across Ireland despite bans in other countries
🕵️
"The Irish State pays for China's surveillance in Ireland:" Rights group criticizes government as thousands of China's Hikvision cameras are installed across Ireland despite bans in other countries
🕵️
Five fundamentals for a cyber-resilient future
🕵️
Brave Browser Block Microsoft Recall Over Privacy Issues
🕵️
STRATEGIC REEL: From guesswork to ground truth — stopping threats before they spread
🕵️
Redefining DNS Protection
🕵️
Coyote Banking Trojan First to Abuse Microsoft UIA
🕵️
Should We Trust AI? Three Approaches to AI Fallibility
🕵️
OpenAI’s Sam Altman Warns of AI Voice Fraud Crisis in Banking
🕵️
Silicon Valley Engineer Pleads Guilty in U.S. Missile Detection Data Theft Case
🕵️
‘If you are reading…’: This password ‘mistake’ shuts down a 158-year-old company
🕵️
Operation CargoTalon Targets Russian Aerospace & Defense to Deploy EAGLET Implant
🕵️
Hidden Backdoor in WordPress Plugins Grants Attackers Ongoing Access to Websites
🕵️
Hacker Com: Cyber Criminal Subset of The Community (Com) is a Rising Threat to Youth Online
🕵️
In Real Life (IRL) Com: Violent Subset of The Community (Com) is a Rising Threat to Youth Online(
🕵️
The Com: Theft, Extortion, and Violence are a Rising Threat to Youth Online
🕵️
This Tiny Bias in AI Could Lead to Massive Problems
🕵️
[JS Required] xss.is got shutdown.
🕵️
Brave blocks Windows Recall from screenshotting your browsing activity
🕵️
Operation Grayskull Culminates in Lengthy Sentences for Managers of Dark Web Site Dedicated to Sexual Abuse of Children
🌐
Kerberoasting Detections: A New Approach to a Decade-Old Challenge
🌐
Risky Business #799 -- Everyone's Sharepoint gets shelled
🎙️
Having some technical problems with podcast distribution.
📡
Small world: The revitalization of small AI models for cybersecurity
📡
Microsoft fixes bug behind incorrect Windows Firewall errors
📡
Operator of Jetflix illegal streaming service gets 7 years in prison
📡
How to set up security and privacy in Garmin apps | Kaspersky official blog
📡
npm 'accidentally' removes Stylus package, breaks builds and pipelines
📡
OpenAI prepares Sora 2 to take on Google's Veo 3
📡
OpenAI confirms ChatGPT's new study feature, helps with exams
📡
How to harden your Active Directory against Kerberoasting
📡
Security considerations when developing and managing your website (ITSAP.60.005)
📡
ChatGPT is rolling out 'personality' toggles to become your assistant
📡
Beyond “Better Together”: Maximize your Microsoft 365 security with Sophos MDR
📡
Proton launches privacy-respecting encrypted AI assistant Lumo
📡
How do hackers get passwords? Sometimes, they just ask.