99Articles
8Categories
2025-08-20Date
🐛
Chrome High-Severity Vulnerability Could Let Attackers Run Arbitrary Code
🐛
Misconfiguration, The Forgotten Vulnerability and the Power and Failure of "Yes" - Dan... - BSW #409
🐛
Kubernetes Capsule Vulnerability Enables Attackers to Inject Arbitrary Labels
🐛
CERT/CC Issues Alert on Critical Flaws in Workhorse Municipal Accounting Software
🐛
Russian Government Cyber Actors Targeting Networking Devices, Critical Infrastructure
⚠️
NIST’s attempts to secure AI yield many questions, no answers
⚠️
McDonald’s Free Nuggets Hack Exposes Sensitive Customer Data
⚠️
Cybersecurity Breaches: Salesforce, Workday, and Critical Infrastructure Hacked
⚠️
Russia-linked European attacks renew concerns over water cybersecurity
⚠️
ASPM buyer’s guide: 7 products to help secure your applications
⚠️
CodeRabbit RCE Flaw Gives Attackers Write Access to 1M Repositories
⚠️
Hackers Exploit Apache ActiveMQ Flaw to Breach Cloud Linux Servers
⚠️
UK information chiefs demand urgent regulation of AI like DeepSeek over cybersecurity risks
⚠️
UK information chiefs demand urgent regulation of AI like DeepSeek over cybersecurity risks
⚠️
Zero-Day Vulnerability allow attackers to steal users data Found in Password Managers( 1Password, Bitwarden, LastPass, Enpass, iCloud Passwords, and LogMeOnce remain unpatched— still vulnerable)
⚠️
Flaws in Software Used by Hundreds of Cities and Towns Exposed Sensitive Data
⚠️
Retbleed exploitation in realistic setting | Kaspersky official blog
⚠️
Warlock: From SharePoint Vulnerability Exploit to Enterprise Ransomware
⚠️
Lenovo chatbot breach highlights AI security blind spots in customer-facing systems
⚠️
Copilot Vulnerability Lets Attackers Bypass Audit Logs and Gain Hidden Access
⚠️
Elastic Refutes Claims of Zero-Day in EDR Product
⚠️
Experts Find AI Browsers Can Be Tricked by PromptFix Exploit to Run Malicious Hidden Prompts
⚠️
New zero-day startup offers $20 million for tools that can hack any smartphone
⚠️
Major password managers can leak logins in clickjacking attacks
⚠️
GPT-5 Has a Vulnerability: Its Router Can Send You to Older, Less Safe Models
⚠️
Threat Actors Exploit GenAI Platforms to Craft Sophisticated and Realistic Phishing Attacks
⚠️
QuirkyLoader: A New Malware Loader Spreading Infostealers and Remote Access Trojans (RATs)
⚠️
DOM-Based Extension Clickjacking Exposes Popular Password Managers to Credential and Data Theft
⚠️
FBI Warns FSB-Linked Hackers Exploiting Unpatched Cisco Devices for Cyber Espionage
⚠️
Apple fixes new zero-day flaw exploited in targeted attacks
⚠️
CVE Reviews: Obsession or Secret Cyber Superpower?
⚠️
From Human Resources to Human Risk: Why HR is the Perfect Department for Cybercriminals to Impersonate
⚠️
Google Unveils Enhanced Features to Empower Defenders and Strengthen AI Security
⚠️
Innovation First, Security Later: Is That Always the Case?
⚠️
News alert: Link11 warns of rising API and bot attacks, launches integrated WAAP platform
⚠️
RingReaper Malware Targets Linux Servers, Stealthily Evading EDR Solutions
⚠️
Risky Business #803 -- Oracle's CSO Mary Ann Davidson quietly departs
📋
Microsoft releases emergency updates to fix Windows recovery
📋
Microsoft Issues Emergency Patch for Windows Reset and Recovery Bug
📋
Microsoft fixes the fixes that broke Windows tools
📢
DOJ Charges 22-Year-Old for Running RapperBot Botnet Behind 370,000 DDoS Attacks
📢
North Korea Uses GitHub in Diplomat Cyber Attacks as IT Worker Scheme Hits 320+ Firms
📢
RapperBot Botnet Disrupted, American Administrator Indicted
📢
Google Chrome security advisory (AV25-530)
📢
Commvault security advisory (AV25-531)
📢
“Rapper Bot” malware seized, alleged developer identified and charged
📢
Cisco security advisory (AV25-532)
📢
Apple security advisory (AV25-533)
📢
HPE security advisory (AV25-534)
🔥
New Salty 2FA PhaaS Platform Targets Microsoft 365 Users to Steal Login Credentials
🔥
Pharmaceutical Company Inotiv Confirms Ransomware Attack
🔥
Legitimate Chrome VPN with 100K+ Installs Secretly Captures Screenshots and Exfiltrates Sensitive Data
🔥
Serial Hacker Sentenced for Defacing and Hacking Organizational Websites
🔥
Scaly Wolf Unleashing Attacks to Expose Organizations’ Hidden Secrets
🔥
How I Hacked McDonald's (Their Security Contact Was Harder to Find Than Their Secret Sauce Recipe) | bobdahacker
🔥
Ransomware Attacks in Japan Surge by 1.4 Times, Signaling a Significant Increase in Cyber Threats
🔥
Warlock ransomware: What you need to know
🔥
Smashing Security podcast #431: How to mine millions without paying the bill
🕵️
ISC Stormcast For Wednesday, August 20th, 2025 https://isc.sans.edu/podcastdetail/9578, (Wed, Aug 20th)
🕵️
Microsoft Teams “Couldn’t Connect” Issue After Sidebar Update Gets a Fix
🕵️
Intel Employee Data Exposed by Vulnerabilities
🕵️
New GodRAT Malware Uses Screensaver and Program Files to Target Organizations
🕵️
High-Severity Vulnerabilities Patched in Chrome, Firefox
🕵️
BLACK HAT FIRESIDE CHAT: Straiker extends ‘red teaming’ to the AI layer as AI attacks surge
🕵️
Citizen Lab Researchers Expose Hidden VPN Networks Sharing Ownership and Security Flaws Linked To China
🕵️
Citizen Lab Researchers Expose Hidden VPN Networks Sharing Ownership and Security Flaws Linked To China
🕵️
Lenovo AI Chatbot Flaw Allows Remote Script Execution on Corporate Systems
🕵️
Subverting AIOps Systems Through Poisoned Input Data
🕵️
Seemplicity Raises $50 Million for Exposure Management Platform
🕵️
Forscher entdeckt offenen Zugang zu Intel-Mitarbeiterdaten
🕵️
The Challenge of Cybersecurity Frenemies and Collaboration
🕵️
Personalie: Sotirios Siozos ist neuer CISO bei Drees & Sommer
🕵️
The Real Reason Shift Left Fails in Security
🕵️
Slow and Steady Security: Lessons from the Tortoise and the Hare
🕵️
[Meta] Can you allow the English language posts?
🕵️
Strategic Rewrite: Fixing Security Debt Without Losing Sleep
🕵️
Can You Break Modbus With Just 3 Lines of Code?
🕵️
Threat Intelligence Executive Report – Volume 2025, Number 4
🕵️
Why Continuous Threat Modeling Is Non-Negotiable 🔥
🕵️
Google’s OSS-FuzzGen Is Changing Bug Hunting 🔥
🕵️
Threat Actors Impersonate as Google Support to Sniff Out Your Login Credentials
🕵️
That ‘Urgent Payroll Update’ Email is a Trap: A Look at the Latest HR Phishing Tactics
🕵️
You’ll Lose Your Job If You Ignore This Tech Shift 😳
KEV
🕵️
Quantum-safe security: Progress towards next-generation cryptography
🌐
From Impact to Action: Turning BIA Insights Into Resilient Recovery
🌐
AI website builder Lovable increasingly abused for malicious activity
📡
Microsoft fixes Windows upgrades failing with 0x8007007F error
📡
Microsoft reportedly fixing SSD failures caused by Windows updates
📡
🕵️ Webinar: Discover and Control Shadow AI Agents in Your Enterprise Before Hackers Do
📡
Tackling the National Gap in Software Understanding
📡
Microsoft investigates outage impacting Copilot, Office.com
📡
Why email security needs its EDR moment to move beyond prevention
📡
Taegis MDR/XDR now work with Sophos Firewall’s Active Threat Response
📡
Hackers steal Microsoft logins using legitimate ADFS redirects
📡
Airtell Router Scans, and Mislabeled usernames, (Wed, Aug 20th)
📡
Harvard dropouts to launch ‘always on’ AI smart glasses that listen and record every conversation
📡
Perplexity’s Comet AI browser tricked into buying fake items online
📡
Device searches at the US border hit record high, new data shows
📡
OpenAI says GPT-6 is coming and it'll be better than GPT-5 (obviously)