52Articles
8Categories
2025-09-04Date
🚨
CISA Adds Three Known Exploited Vulnerabilities to CatalogCISA has added three new vulnerabilities to its  Known Exploited Vulnerabilities (KEV) Catalog , based on evidence of active exploitation. CVE-2025-38352 Linux Kernel Time-of-Check Time-of-Use (TOCTOU) Race Condition Vulnerability CVE-2025-48543 Android Runtime Unspecified V…
KEV
🐛
CISA Flags TP-Link Router Flaws CVE-2023-50224 and CVE-2025-9377 as Actively Exploited
KEV
🐛
CVE-2025-55244 Azure Bot Service Elevation of Privilege Vulnerability
🐛
CVE-2025-55242 Xbox Certification Bug Copilot Djando Information Disclosure Vulnerability
🐛
CVE-2025-54914 Azure Networking Elevation of Privilege Vulnerability
🐛
CVE-2025-55238 Dynamics 365 FastTrack Implementation Assets Information Disclosure Vulnerability
🐛
CVE-2025-55241 Azure Entra Elevation of Privilege Vulnerability
🐛
Sitecore zero-day configuration flaw under active exploitation
🐛
Reverse engineering of Apple's iOS 0-click CVE-2025-43300: 2 bytes that make size matter
⚠️
Cloudflare Fends Off A Record Breaking 11.5 Tbps DDoS Attack
⚠️
Hackers exploited Sitecore zero-day flaw to deploy backdoors
⚠️
Chess.com discloses recent data breach via file transfer app
⚠️
New TP-Link zero-day surfaces as CISA warns other flaws are exploited
⚠️
Cybercriminals Exploit X’s Grok AI to Bypass Ad Protections and Spread Malware to Millions
⚠️
Google Fined $379 Million by French Regulator for Cookie Consent Violations
⚠️
Malicious npm Packages Exploit Ethereum Smart Contracts to Target Crypto Developers
⚠️
CISA Releases Five Industrial Control Systems Advisories
⚠️
A Warrant Is Out for Your Arrest
⚠️
Datenpanne bei Palo Alto Networks, Zscaler und Cloudflare
⚠️
Avnet unlocks vendor lock-in and reinvents security data management
⚠️
Principal Financial pioneers biometric authentication to beat online fraud
⚠️
Pressure on CISOs to stay silent about security incidents growing
⚠️
Lasagna DoS, AI Slop, Hacker Ultimatums - PSW #890
⚠️
Why XSS still matters: MSRC’s perspective on a 25-year-old threat
⚠️
Multiple Vulnerabilities in Google Android OS Could Allow for Remote Code Execution
📢
France slaps Google with €325M fine for violating cookie regulations
🔥
Generative AI as a Cybercrime Assistant
🔥
CIS launches Commercial Cloud MDR, Powered by Sophos, to protect SLTT government organizations
🔥
Texas sues PowerSchool over breach exposing 62M students, 880k Texans
🔥
Report: AI Can Now Automate Entire Attack Chains
🔥
Automobilbranche fürchtet sich vor Cyberattacken
🕵️
Apple Seeks Researchers for 2026 iPhone Security Program
🕵️
AI Supply Chain Attack Method Demonstrated Against Google, Microsoft Products
🕵️
US Offers $10 Million for Three Russian Energy Firm Hackers
🕵️
Russian APT28 Deploys “NotDoor” Outlook Backdoor Against Companies in NATO Countries
🕵️
ISC Stormcast For Thursday, September 4th, 2025 https://isc.sans.edu/podcastdetail/9598, (Thu, Sep 4th)
🕵️
Hospitals Need to Prepare for AI-Powered Phishing Attacks
🕵️
Beyond the Audit Box: Building Security That Works in the Real World
🕵️
SHARED INTEL Q&A: Inside the mind of a hacker — shadowing adversaries across API pathways
🕵️
Prisma SASE 4.0: Powering the AI-Ready Enterprise
🕵️
Shift Left or Shift Blame? 🔒
🕵️
Would You Give Up Revenue to Reduce Risk? #cybersecurity
🕵️
Why Apps Keep Failing You (And It’s Getting Worse)
🕵️
Forget Certs. Secure Something First! 💡
🕵️
The number of mis-issued 1.1.1.1 certificates grows. Here’s the latest.
🕵️
AI hacking. Downloading images can allow your computer to be hijacked
🕵️
GhostRedirector poisons Windows servers: Backdoors with a side of Potatoes
🕵️
News alert: Sendmarc taps Rob Bowker to grow MSPs, DMARC adoption in North America
🌐
GhostRedirector Hacks 65 Windows Servers Using Rungan Backdoor and Gamshen IIS Module
🌐
An MDR Analysis of the AMOS Stealer Campaign Targeting macOS via ‘Cracked’ Apps
📡
Three Critical Facts About Cyber Risk Management
📡
How the SNI5GECT attack on 5G connectivity works, and how it threatens subscribers | Kaspersky official blog