68Articles
7Categories
2025-09-26Date
🐛
Critical Cisco Flaw Lets Remote Attackers Execute Code on Firewalls and Routers
🐛
Recent Fortra GoAnywhere MFT Vulnerability Exploited as Zero-Day
🐛
Cisco ASA 0-Day RCE Flaw Actively Exploited in the Wild
KEV
🐛
Apache Airflow Vulnerability Lets Read-Only Users Access Sensitive Data
🐛
Maximum severity GoAnywhere MFT flaw exploited as zero day
⚠️
Cisco Warns of Actively Exploited SNMP Vulnerability Allowing RCE or DoS in IOS Software
KEV
⚠️
Salesforce AI Agent Vulnerability Lets Attackers Steal Sensitive Data
⚠️
Cisco ASA Firewall Zero-Day Exploits Deploy RayInitiator and LINE VIPER Malware
⚠️
The Gravity of Process: Why New Tech Never Fixes Broken Process and Can AI Change It?
⚠️
AI Shadow Leak Avoids Detection
⚠️
SpyCloud Report: 2/3 Orgs Extremely Concerned About Identity Attacks Yet Major Blind Spots Persist
⚠️
Cisco Firewall Zero-Days Exploited in China-Linked ArcaneDoor Attacks
⚠️
Qantas cutting CEO pay signals new era of cyber accountability
⚠️
Hackers Exploit Cisco ASA 0-Day to Deploy RayInitiator and LINE VIPER Malware
⚠️
Unveiling LummaStealer’s Technical Details Through ML-Based Detection Approach
⚠️
Fortra GoAnywhere CVSS 10 Flaw Exploited as 0-Day a Week Before Public Disclosure
⚠️
Researchers Map Links Between Major Hacker Groups: LAPSUS$, Scattered Spider, ShinyHunters
⚠️
New Botnet ‘Loader-as-a-Service’ Turns Home Routers and IoT into Mirai Farms
⚠️
Digital Threat Modeling Under Authoritarianism
⚠️
Okta introduces Identity Security Fabric to secure AI agents
⚠️
Trust on MCP takes first in-the-wild hit via squatted Postmark connector
⚠️
Trust in MCP takes first in-the-wild hit via squatted Postmark connector
⚠️
In Other News: LockBit 5.0, Department of War Cybersecurity Framework, OnePlus Vulnerability
⚠️
TruSources to show off its on-device identity-checking tech at TechCrunch Disrupt 2025
⚠️
Top 10 Best AI Penetration Testing Companies in 2025
⚠️
News alert: Living Security unveils HRMCon 2025 lineup amid 81% human cyber risk visibility gap
⚠️
Meet LockBit 5.0: Faster ESXi drive encryption, better at evading detection
📢
Crash Tests for Security: Why BAS Is Proof of Defense, Not Assumptions
📢
US investors to take over TikTok operations in the country
📢
Microsoft Edge security advisory (AV25-621)
📢
GitLab security advisory (AV25-620)
📢
Google Chrome security advisory (AV25-622)
📢
Foxit security advisory (AV25-623)
🔥
LockBit 5.0 Ransomware Targets Windows, Linux, and VMware ESXi Systems
🔥
New XCSSET Malware Variant Targets macOS App Developers
🔥
Cyberangriff: Britischer Co-op-Gruppe entgeht Millionengewinn
🔥
LAMEHUG: An LLM-Driven Malware for Dynamic Reconnaissance and Data Exfiltration
🔥
Hackers Breach Active Directory, Steal NTDS.dit for Full Domain Compromise
🔥
GenAI-Infrastruktur anfällig für Cyberattacken
🔥
North Korea’s Fake Recruiters Feed Stolen Data to IT Workers
🔥
New COLDRIVER Malware Campaign Joins BO Team and Bearlyfy in Russia-Focused Cyberattacks
🔥
Malicious MCP Server Discovered Stealing Sensitive Emails Using AI Agents
🔥
Hacking Campaign Has Breached Cisco Devices in US Government
🔥
New tool: convert-ts-bash-history.py, (Fri, Sep 26th)
🔥
Roblox executors: It’s all fun and games until someone gets hacked
🕵️
Broadcom, LastPass, SEO Poisoning, QR codes, H1B visas, Distributed Computing... - PSW #893
🕵️
ISC Stormcast For Friday, September 26th, 2025 https://isc.sans.edu/podcastdetail/9630, (Fri, Sep 26th)
🕵️
New macOS XCSSET Variant Targets Firefox with Clipper and Persistence Module
🕵️
New XCSSET macOS Malware Variant Hijacks Cryptocurrency Transactions
🕵️
No Patches for Vulnerabilities Allowing Cognex Industrial Camera Hacking
🕵️
Malware Gangs Enlist Covert North Korean IT Workers in Corporate Attacks
🕵️
Microsoft Reduces Israel’s Access to Cloud and AI Products Over Reports of Mass Surveillance in Gaza
🕵️
Interpol Says 260 Suspects in Online Romance Scams Have Been Arrested in Africa
🕵️
The Behavioral Science Behind the Click
🕵️
News alert: Gcore Radar flags record-breaking DDoS surge — 41% spike in first half of 2025
🕵️
Friday Squid Blogging: Jigging for Squid
🕵️
Riker's Curse, River City, EDR-Freeze, MCP, WordPress, GitHub, Josh Marpet, and More. - SWN #515
🌐
Researchers Expose SVG and PureRAT Phishing Threats Targeting Ukraine and Vietnam
🌐
How scammers have mastered AI: deepfakes, fake websites, and phishing emails | Kaspersky official blog
📡
Thousands of Indian bank transfer records found online
📡
HeartCrypt’s wholesale impersonation effort
📡
Microsoft releases the final Windows 10 22H2 preview update
📡
The hidden cyber risks of deploying generative AI
📡
CNAPP is the Solution to Multi-cloud Flexibility
📡
Microsoft Edge to block malicious sideloaded extensions
📡
Microsoft shares temp fix for Outlook encrypted email errors
📡
Microsoft’s new AI feature will organize your photos automatically
📡
Cloud Security in the CNAPP Era: Eight Important Takeaways