96Articles
6Categories
2025-08-11Date
🐛
7-Zip Vulnerability Lets Hackers Write Files and Run Malicious Code
🐛
Xerox FreeFlow Flaws Enable SSRF and Remote Code Execution
🐛
WinRAR Zero-Day Under Active Exploitation – Update to Latest Version Immediately
KEV
🐛
Windows RPC Protocol Exploited to Launch Server Spoofing Attacks
🐛
Russian Hackers Exploited WinRAR Zero-Day in Attacks on Europe, Canada
🐛
15,000 Jenkins Servers at Risk from RCE Vulnerability (CVE-2025-53652)
🐛
‘Win-DDoS’: Researchers unveil botnet technique exploiting Windows domain controllers
🐛
Researchers Spot Surge in Erlang/OTP SSH RCE Exploits, 70% Target OT Firewalls
🐛
Erlang/OTP SSH RCE Vulnerability Actively Exploited to Target OT Networks
KEV
🐛
Details emerge on WinRAR zero-day attacks that infected PCs with malware
🐛
Netherlands: Citrix Netscaler flaw CVE-2025-6543 exploited to breach orgs
⚠️
Security-Infotainment: Die besten Hacker-Dokus
KEV
⚠️
GPT-5 Compromised Using Echo Chamber and Storytelling Exploits
⚠️
Efimer Trojan Targets Crypto Wallets Using Phony Legal Notices and Booby-Trapped Torrents
⚠️
SSHamble: New Open-Source Tool Targets SSH Protocol Flaws
⚠️
CSO hiring on the rise: How to land a top security exec role
⚠️
Multiple Critical Flaws Hit Zero Trust Products from Check Point, Zscaler, and Netskope
⚠️
Over 29,000 Exchange servers unpatched against high-severity flaw
⚠️
Report Reveals Tool Overload Driving Fatigue and Missed Threats in MSPs
⚠️
Legitimate System Functions Exploited to Steal Secrets in Shared Linux Setups
⚠️
Linux Webcams Weaponized to Inject Keystrokes and Execute Attacks
⚠️
WinRAR zero-day exploited to plant malware on archive extraction
⚠️
Smart Bus System Flaw Allows Hackers to Remotely Track and Control Vehicles
⚠️
⚡ Weekly Recap: BadCam Attack, WinRAR 0-Day, EDR Killer, NVIDIA Flaws, Ransomware Attacks & More
⚠️
Chrome Sandbox Escape Earns Researcher $250,000
⚠️
7-Zip Arbitrary File Write Vulnerability Let Attackers Execute Arbitrary Code
⚠️
Is Microsoft Gaslighting Us? 💻 #WindowsUpdate
⚠️
New TETRA Radio Encryption Flaws Expose Law Enforcement Communications
⚠️
Win-DoS’ Zero-Click Exploit Could Weaponize Windows Infrastructure for DDoS Attacks
⚠️
Hackers Exploit ClickFix Technique to Compromise Windows and Run PowerShell Commands
⚠️
U.S. government seized $1 million from Russian ransomware gang
⚠️
They Used Google Tag Manager to Hijack WordPress?!
⚠️
Reimagining Security Operations: SOC as a Service and the Role of AI - Kevin Nikkhoo - CSP #215
KEV
⚠️
WinRAR zero-day exploited in espionage attacks against high-value targets
⚠️
Update WinRAR tools now: RomCom and others exploiting zero-day vulnerability
KEV
📢
IBM security advisory (AV25-493)
📢
Dell security advisory (AV25-494)
📢
This Is Why Compliance ≠ Risk Management
📢
Ubuntu security advisory (AV25-495)
📢
Red Hat security advisory (AV25-496)
📢
Gemini per Kalendereinladung gehackt
📢
[Control systems] CISA ICS security advisories (AV25–497)
📢
[Control systems] ABB security advisory (AV25-498)
📢
WinRAR security advisory (AV25-499)
🔥
New Win-DDoS Flaws Let Attackers Turn Public Domain Controllers into DDoS Botnet via RPC, LDAP
🔥
Cyber Attacks, Jailbreaking GPT-5, and Hacker Summer Camp 2025 Highlights
🔥
Connex Credit Union data breach impacts 172,000 members
🔥
SoupDealer Malware Evades Sandboxes, AVs, and EDR/XDR in Real-World Attacks
🔥
Australian Regulator Sues Optus Over 2022 Data Breach
🔥
CastleLoader Malware Hits 400+ Devices via Cloudflare-Themed ClickFix Phishing Attack
🔥
Boeing, US Navy supplier Jamco Aerospace claimed in ransomware attack | Cybernews
🔥
Connex Credit Union Data Breach Impacts 172,000 People
🔥
Cancer care provider breach exposes 113K+ patients​ | Cybernews
🔥
U.S. Judiciary confirms breach of court electronic records service
🔥
Silent Watcher Targets Windows Systems, Steals Data via Discord Webhooks
🔥
How to implement a blameless approach to cybersecurity | Kaspersky official blog
🔥
Ransomware Attacks Fall by Almost Half in Q2
🔥
MuddyWater’s DarkBit ransomware cracked for free data recovery
🔥
Microsoft tests cloud-based Windows 365 disaster recovery PCs
🔥
Connex Credit Union data breach impacts 172,000 members
🔥
MuddyWater’s DarkBit ransomware cracked for free data recovery
🔥
North Korean Kimsuky hackers exposed in alleged data breach
🕵️
ISC Stormcast For Monday, August 11th, 2025 https://isc.sans.edu/podcastdetail/9564, (Mon, Aug 11th)
🕵️
AI Coding Assistant: Creating the Perfect Blueprint for Attackers
🕵️
BadCam: New BadUSB Attack Turns Linux Webcams Into Persistent Threats
🕵️
INE Named to Training Industry’s 2025 Top 20 Online Learning Library List
🕵️
Malware Campaign Masquerades as Tesla in Poisoned Google Ads
🕵️
Report Reveals Tool Overload Driving Fatigue and Missed Threats in MSPs
🕵️
Automatic License Plate Readers Are Coming to Schools
🕵️
Flaws in Major Automaker’s Dealership Systems Allowed Car Hacking, Personal Data Theft
🕵️
GreedyBear Steals $1M in Crypto Using 150+ Malicious Firefox Wallet Extensions
🕵️
Google Calendar invites let researchers hijack Gemini to leak user data
🕵️
Data Dump From APT Actor Yields Clues to Attacker Capabilities
🕵️
Meta’s New Feature Turns Instagram into a Real-Time Location Broadcaster
🕵️
Managing the Trust-Risk Equation in AI: Predicting Hallucinations Before They Strike
🕵️
Critical Vulnerabilities Uncovered in Zero Trust Network Access Products of Check Point, Zscaler, and NetSkope
🕵️
UAC-0099 Tactics, Techniques, Procedures and Attack Methods Revealed
🕵️
Would You Work for a Robot Boss?
🕵️
ESW at BlackHat and the weekly enterprise security news - ESW #419
🕵️
Bootkits Are Scarier Than SIM Swaps 😨
🕵️
This Isn’t Deepfake—It’s Way Worse
🕵️
Hackers Extradited to US Over $100 Million Romance Scams and Other Frauds
🕵️
The Night I Crashed the Mainframe by Accident 🤫
🕵️
Cybersecurity vs. The Insurance Terminator 🤖
🕵️
Cyber Alert: Excel Links Can Steal Your Data 🧠
🕵️
MY TAKE: Black Hat 2025 vendors define early contours for a hard pivot to AI security architecture
🕵️
Corporate SaaS: China’s New Battlefield?
📡
Security flaws in a carmaker’s web portal let one hacker remotely unlock cars from anywhere
📡
How to restore GPT-4o when you've GPT-5
📡
6 Lessons Learned: Focusing Security Where Business Value Lives
📡
'Chairmen' of $100 million scam operation extradited to US
📡
xAI is testing Grok 4.20 to take on GPT-5, may launch this month
📡
OneNote finally gets "paste text only" feature on Windows and Mac
📡
Electronic Arts blocks more than 300,000 attempts to cheat after launching Battlefield 6 beta
📡
The Rise of Native Phishing: Microsoft 365 Apps Abused in Attacks
📡
OpenAI is testing 3,000-per-week limit for GPT-5 Thinking