90Articles
9Categories
2025-09-25Date
🚨
CISA Directs Federal Agencies to Identify and Mitigate Potential Compromise of Cisco DevicesToday, CISA issued Emergency Directive ED 25-03: Identify and Mitigate Potential Compromise of Cisco Devices to address vulnerabilities in Cisco Adaptive Security Appliances (ASA) and Cisco Firepower devices. CISA has added vulnerabilities CVE-2025-30333 and CVE-2025-20362 to the…
KEV
πŸ›
Chinese spies had year-long access to US tech and legal firms
πŸ›
Cisco IOS 0-Day RCE Vulnerability Actively Targeted
KEV
πŸ›
NVIDIA Merlin Flaw Enables Remote Code Execution with Root Access
πŸ›
Linux Kernel ksmbd Flaw Lets Remote Attackers Execute Arbitrary Code
πŸ›
Cisco Warns of Actively Exploited SNMP Vulnerability Allowing RCE or DoS in IOS Software
KEV
πŸ›
ZendTo Flaw Lets Attackers Bypass Security Controls to Access Sensitive Data
πŸ›
Cisco IOS/XE Vulnerability Allows Unauthorized Access to Confidential Data
πŸ›
Vulnerability in Salesforce AI could be tricked into leaking CRM data
πŸ›
CVE-2025-59251 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
πŸ›
AL25-012 - Vulnerabilities impacting Cisco ASA and FTD devices – CVE-2025-20333, CVE-2025-20362 and CVE-2025-20363
πŸ›
Urgent: Cisco ASA Zero-Day Duo Under Attack; CISA Triggers Emergency Mitigation Directive
KEV
πŸ›
Cisco admins urged to patch IOS, IOS XE devices
πŸ›
Patch now: Attacker finds another zero day in Cisco firewall software
πŸ›
Chromium: CVE-2025-10890 Side-channel information leakage in V8
πŸ›
Chromium: CVE-2025-10891 Integer overflow in V8
πŸ›
Chromium: CVE-2025-10892 Integer overflow in V8
⚠️
Die besten Cyber-Recovery-LΓΆsungen
⚠️
Hackers Exploit Hikvision Camera Flaw to Steal Sensitive Data
⚠️
AI coding assistants amplify deeper cybersecurity risks
⚠️
LNK Malware Leverages Legit Windows Files to Slip Past Defenses
⚠️
Cisco Patches Zero-Day Flaw Affecting Routers and Switches
⚠️
Malware Deployment via Copyright Takedown Claims by Threat Actors
⚠️
SetupHijack Tool Abuses Race Conditions in Windows Installer to Hijack Setups
⚠️
Malicious Rust Crates Steal Solana and Ethereum Keys β€” 8,424 Downloads Confirmed
⚠️
Hackers Use GitHub Notifications to Impersonate Y Combinator and Steal Wallet Funds
⚠️
Chinese Spies Lurked in Networks for 393 Days, Hunted for Zero-Day Intel
⚠️
CTEM's Core: Prioritization and Validation
⚠️
New Malicious Rust Crates Impersonate fast_log to Steal Solana and Ethereum Wallet Keys
⚠️
RTX Confirms Airport Services Hit by Ransomware
⚠️
Volvo Group Reports Data Breach Following Ransomware Attack on HR Vendor
⚠️
Chinese State-Sponsored Hackers Targeting Telecommunications Infrastructure to Steal Sensitive Data
⚠️
Salesforce Patches Critical ForcedLeak Bug Exposing CRM Data via AI Prompt Injection
⚠️
CISA Releases One Industrial Control Systems Advisory
⚠️
Salesforce AI Hack Enabled CRM Data Theft
⚠️
Cisco warns of ASA firewall zero-days exploited in attacks
⚠️
CISA Issues Emergency Directive Requiring Federal Agencies to Identify and Mitigate Cisco Zero-Day Vulnerabilities
⚠️
New LockBit 5.0 Targets Windows, Linux, ESXi
⚠️
Cloud Security Alliance launches framework to improve SaaS security
⚠️
Introducing Microsoft Marketplace β€” Thousands of solutions. Millions of customers. One Marketplace.
⚠️
CISA orders agencies to patch Cisco flaws exploited in zero-day attacks
⚠️
Attackers Use AI Development Tools to Craft Phony CAPTCHA Pages
⚠️
A Vulnerability in Nx (build system) Package Could Allow for Sensitive Data Exfiltration
⚠️
Multiple Vulnerabilities in Cisco Products Could Allow for Remote Code Execution
πŸ“‹
Microsoft will offer free Windows 10 security updates in Europe
πŸ“‹
Besides them trying to upsell me a new router, what does this mean?
πŸ“’
Hackers Deploy Stealthy Malware on WordPress Sites to Gain Admin Access
πŸ“’
Evolved PXA Stealer wraps PureRAT in multi-layer obfuscation
πŸ“’
Mit ShadowV2 wird DDoS zu einem Cloud-nativen Abo-Dienst
KEV
πŸ“’
Cisco security advisory (AV25-619)
πŸ”₯
Cultura - 1,462,025 breached accounts
πŸ”₯
Steam Confirms Malware Found in BlockBlasters Game
πŸ”₯
Volvo Group Employee Data Stolen in Ransomware Attack
πŸ”₯
Threatsday Bulletin: Rootkit Patch, Federal Breach, OnePlus SMS Leak, TikTok Scandal & More
πŸ”₯
Teen suspected of Vegas casino cyberattacks released to parents
πŸ”₯
Chinese Cyberspies Hacked US Defense Contractors
πŸ”₯
How secure are passkeys, really? Here's what you need to know
πŸ”₯
BQTLOCK Ransomware Attacking Windows Users Via Telegram to Encrypt Files and Delete Backup
πŸ”₯
Co-op says it lost $107 million after Scattered Spider attack
πŸ”₯
Unofficial Postmark MCP npm silently stole users' emails
πŸ•΅οΈ
ISC Stormcast For Thursday, September 25th, 2025 https://isc.sans.edu/podcastdetail/9628, (Thu, Sep 25th)
πŸ•΅οΈ
COLDRIVER APT Group Uses ClickFix to Deliver New PowerShell-Based Backdoor BAITSWITCH
πŸ•΅οΈ
BRICKSTORM Backdoor Hits Tech and Legal Firms with Stealthy New Campaign
πŸ•΅οΈ
Gcore Radar Report Reveals 41% Surge in DDoS Attack Volumes
πŸ•΅οΈ
New Phishing Scam Aims at PyPI Maintainers to Steal Login Information
πŸ•΅οΈ
Hackers Use AI-Generated Code to Obfuscate Payloads and Bypass Traditional Defenses
πŸ•΅οΈ
CSA Unveils SaaS Security Controls Framework to Ease Complexity
πŸ•΅οΈ
Malicious-Looking URL Creation Service
πŸ•΅οΈ
RedNovember Hackers Targeting Government and Tech Organizations to Install Backdoor
πŸ•΅οΈ
Perspective: Why Politics in the Workplace is a Cybersecurity Risk
πŸ•΅οΈ
North Korean Hackers Use New AkdoorTea Backdoor to Target Global Crypto Developers
πŸ•΅οΈ
Budgetprobleme bremsen Cybersicherheit aus
πŸ•΅οΈ
PyPI Warns Users of Fresh Phishing Campaign
πŸ•΅οΈ
XCSSET evolves again: Analyzing the latest updates to XCSSET’s inventory
πŸ•΅οΈ
Exploring GrapheneOS secure allocator: Hardened Malloc
πŸ•΅οΈ
Living Security Unveils HRMCon 2025 Speakers as Report Finds Firms Detect Just 19% of Human Risk
πŸ•΅οΈ
Vane Viper Generates 1 Trillion DNS Queries to Power Global Malware and Ad Fraud Network
πŸ•΅οΈ
New AI-Driven Phishing Platform Automates Attack Campaigns
πŸ•΅οΈ
Microsoft warns of new XCSSET macOS malware variant targeting Xcode devs
πŸ•΅οΈ
DeceptiveDevelopment: From primitive crypto theft to sophisticated AI-based deception
🌐
Statement from the Canadian Centre for Cyber Security on malware targeting global organizations through Cisco Systems
🌐
Introducing the CASI Leaderboard
🌐
Introducing the CASI Leaderboards
πŸ“‘
Tech Overtakes Gaming as Top DDoS Attack Target, New Gcore Radar Report Finds
πŸ“‘
Webshells Hiding in .well-known Places, (Thu, Sep 25th)
πŸ“‘
Malicious Rust packages on Crates.io steal crypto wallet keys
πŸ“‘
EDR or XDR β€” which does your company need? | Kaspersky official blog
πŸ“‘
Amazon pays $2.5 billion to settle Prime memberships lawsuit
πŸ“‘
New Supermicro BMC vulnerabilities open servers to malicious attacks on firmware
πŸ“‘
Viral call-recording app Neon goes dark after exposing users’ phone numbers, call recordings, and transcripts