97Articles
9Categories
2025-09-11Date
🚨
CISA Adds One Known Exploited Vulnerability to CatalogCISA has added one new vulnerability to its  Known Exploited Vulnerabilities (KEV) Catalog , based on evidence of active exploitation. CVE-2025-5086 Dassault Systèmes DELMIA Apriso Deserialization of Untrusted Data Vulnerability This type of vulnerability is a frequent attac…
KEV
🐛
ACSC Warns of Actively Exploited SonicWall Access Control Vulnerability
KEV
🐛
AI prompt injection gets real — with macros the latest hidden threat
🐛
NVIDIA NVDebug Tool Vulnerability Lets Attackers Gain Elevated System Access
🐛
Palo Alto Networks User-ID Agent Flaw Leaks Passwords in Cleartext
🐛
CoreDNS Vulnerability Allows Attackers to Poison DNS Cache and Block Updates
🐛
Angular SSR Vulnerability Allows Attackers to Access Sensitive Data
🐛
Akira ransomware exploiting critical SonicWall SSLVPN bug again
🐛
CVE-2025-55319 Agentic AI and Visual Studio Code Remote Code Execution Vulnerability
🐛
Chromium: CVE-2025-10201 Inappropriate implementation in Mojo
🐛
Chromium: CVE-2025-10200 Use after free in Serviceworker
⚠️
California, two other states to come down hard on GPC violators
⚠️
Managed SOC für mehr Sicherheit
⚠️
Reflected XSS Flaw Enables Attackers to Evade Amazon CloudFront Protection Using Safari
⚠️
AsyncRAT Exploits ConnectWise ScreenConnect to Steal Credentials and Crypto
⚠️
DDoS Mitigation Provider Hit by Massive 1.5 Billion Packets Per Second Attack
⚠️
OT security: Why it pays to look at open source
⚠️
Cursor AI Code Editor RCE Flaw Allows Malicious Code to Autorun on Machines
⚠️
1.5 Billion Packets Per Second DDoS Attack Detected with FastNetMon
⚠️
ZynorRAT Exploits Windows and Linux Systems to Gain Remote Access
⚠️
Fake Madgicx Plus and SocialMetrics Extensions Are Hijacking Meta Business Accounts
⚠️
kkRAT Exploits Network Protocols to Exfiltrate Clipboard Data
⚠️
SonicWall SSL VPN Flaw and Misconfigurations Actively Exploited by Akira Ransomware Hackers
KEV
⚠️
Akira Ransomware Attacks Fuel Uptick in Exploitation of SonicWall Flaw
⚠️
UAE’s K2 Think AI Jailbroken Through Its Own Transparency Features
⚠️
Docker malware breaks in through exposed APIs, then changes the locks
⚠️
Massive L7 DDoS Botnet Exploits 5.76M Hijacked Devices for Record Attacks
⚠️
Microsoft under fire: Senator demands FTC investigation into ‘arsonist selling firefighting services’
⚠️
Critical Chrome Vulnerability Earns Researcher $43,000
⚠️
Threat Actors Leveraging Open-Source AdaptixC2 in Real-world Attacks
⚠️
The Buyer’s Guide to Browser Extension Management
⚠️
CISA Releases Eleven Industrial Control Systems Advisories
⚠️
🚨 Pre-Auth SQL Injection to RCE… How Does This Still Happen?!
⚠️
China pilots village surveillance in Solomon Islands in the Pacific, where Chinese police are collecting fingerprints, palm prints to "curb social unrest"
⚠️
China pilots village surveillance in Solomon Islands in the Pacific, where Chinese police are collecting fingerprints, palm prints to "curb social unrest"
⚠️
Bulletproof Host Stark Industries Evades EU Sanctions
⚠️
Panama Ministry of Economy discloses breach claimed by INC ransomware
⚠️
The #1 Question You Should Ask Before Installing Any Package
⚠️
Top 10 Best Cloud Penetration Testing Companies in 2025
⚠️
Is Your OT Network the Next Target? 💀 #CyberSecurity
⚠️
Americans Can't Hack It - PSW #891
⚠️
France says Apple notified victims of new spyware attacks
📋
Dell PowerProtect Data Manager Flaw Allows System Compromise by Attackers
📢
Key Operators of LockerGoga, MegaCortex, and Nefilim Ransomware Gangs Arrested
📢
Cracking the Boardroom Code: Helping CISOs Speak the Language of Business
📢
Cisco security advisory (AV25-585)
📢
GitHub security advisory (AV25-586)
📢
Palo Alto Networks security advisory (AV25-587)
📢
FBI Issues Guidance for Avoiding Deepfake Scams
🔥
Hackers Reap Minimal Gains from Massive npm Supply Chain Breach
🔥
Top 10 Best External Penetration Testing Companies in 2025
🔥
Wyden Urges FTC to Investigate Microsoft Over Weak RC4 Encryption Enabling Kerberoasting
🔥
EggStreme Malware Emerges With Fileless Techniques and DLL Sideloading Payloads
🔥
Cyber Attack Exposes LNER Train Passengers’ Personal Data
🔥
100,000 Impacted by Cornwell Quality Tools Data Breach
🔥
Attackers Abuse Kubernetes DNS to Extract Git Credentials from ArgoCD
🔥
UK Train Operator LNER Warns Customers of Data Breach
🔥
Senator Wyden Urges FTC to Probe Microsoft for Ransomware-Linked Cybersecurity Negligence
🔥
Jaguar Land Rover confirms data theft after recent cyberattack
🔥
U.S. Senator accuses Microsoft of “gross cybersecurity negligence”
🕵️
DShield SIEM Docker Updates, (Wed, Sep 10th)
🕵️
ISC Stormcast For Thursday, September 11th, 2025 https://isc.sans.edu/podcastdetail/9608, (Thu, Sep 11th)
🕵️
Menschenzentrierte Cybersicherheit gewinnt an Bedeutung
🕵️
Chrome Extension Scam Exposed: Hackers Stealing Meta Accounts
🕵️
ChillyHell macOS Malware: Three Methods of Compromise and Persistence
🕵️
PoisonSeed Threat Actor Strengthens Credential Theft Operations with New Domains
🕵️
Remote CarPlay Hack Puts Drivers at Risk of Distraction and Surveillance
🕵️
Email Security Startup AegisAI Launches With $13 Million in Funding
🕵️
Senator Urges FTC Probe of Microsoft Over Security Failures
🕵️
AI Emerges as the Hope—and Risk—for Overloaded SOCs
🕵️
Kenyan Filmmakers Targeted with FlexiSPY Spyware Tracking Messages and Social Media
🕵️
Cisco Patches High-Severity IOS XR Vulnerabilities
🕵️
Nokia CEO calls on EU to remove “high-risk vendors” - specifically China's Huawei and ZTE - from European networks
🕵️
Nokia CEO calls on EU to remove “high-risk vendors” - specifically China's Huawei and ZTE - from European networks
🕵️
Webinar Today: Breaking AI – Inside the Art of LLM Pen Testing
🕵️
Top 10 Best Penetration Testing as a Service (PTaaS) Companies in 2025
🕵️
This Is Why You Can’t Trust AI Numbers 😱
🕵️
Malicious npm Code Reached 10% of Cloud Environments
🕵️
DDoS Mitigation Provider targeted In 1.5 Gpps 1.5 Billion Packets per Second DDoS Attack
🕵️
European crypto platform SwissBorg to reimburse users after $41 million theft
🕵️
Why Cybersecurity Needs to Go Where the People Are 👣
🕵️
PayPal Scam From PayPal
🕵️
Phishing Campaign Abuses iCloud Calendar Invites
🕵️
Dancing Pigs or Secure Code? You Decide
🕵️
Modern Smartphones Vulnerable to Silent ‘ChoiceJacking’ USB Attacks
🕵️
Top 10 Best Mobile Application Penetration Testing Services in 2025
🌐
France says Apple notified victims of new spyware attacks
🌐
Apple warns customers targeted in recent spyware attacks
🌐
Apple’s latest iPhone security feature just made life more difficult for spyware makers
🌐
EvilAI Operators Use AI-Generated Code and Fake Apps for Far-Reaching Attacks
📡
Kids in the UK are hacking their own schools for dares and notoriety
📡
Cybersecurity and privacy in LLM-powered AI browsers | Kaspersky official blog
📡
New VMScape attack breaks guest-host isolation on AMD, Intel CPUs
📡
Google Pixel 10 Adds C2PA Support to Verify AI-Generated Media Authenticity
📡
Microsoft adds malicious link warnings to Teams private chats
📡
Microsoft investigates Exchange Online outage in North America
📡
Are cybercriminals hacking your systems – or just logging in?