88Articles
9Categories
2025-10-06Date
🚨
U.S. CISA adds Smartbedded Meteobridge, Samsung, Juniper ScreenOS, Jenkins, and GNU Bash flaws to its Known Exploited Vulnerabilities catalogsubmitted by kid to cybersecurity 0 points | 0 comments https://securityaffairs.com/182925/hacking/u-s-cisa-adds-smartbedded-meteobridge-samsung-juniper-screenos-jenkins-and-gnu-bash-flaws-to-its-known-exploited-vulnerabilities-catalog.html
KEV
🚨
CISA Adds Seven Known Exploited Vulnerabilities to CatalogCISA has added seven new vulnerabilities to its  Known Exploited Vulnerabilities (KEV) Catalog , based on evidence of active exploitation. CVE-2010-3765 Mozilla Multiple Products Remote Code Execution Vulnerability CVE-2010-3962 Microsoft Internet Explorer Uninitialized Memo…
KEV
🐛
Quick and Dirty Analysis of Possible Oracle E-Business Suite Exploit Script (CVE-2025-61882), (Mon, Oct 6th)
🐛
PoC Released for Remotely Exploitable Oracle E-Business Suite 0-Day
🐛
PoC Published for Sudo Flaw Lets Attackers Escalate to Root
🐛
Chinese hackers exploiting VMware zero-day since October 2024
KEV
🐛
Chinese hackers exploiting VMware zero-day since October 2024
KEV
🐛
Oracle Rushes Patch for CVE-2025-61882 After Cl0p Exploited It in Data Theft Attacks
🐛
QNAP NetBak Replicator Vulnerability Allow Malicious Code Execution
🐛
Redis Server Use-After-Free Vulnerability Allows Remote Code Execution
🐛
Zimbra Zero-Day Exploited to Target Brazilian Military via Malicious ICS Files
🐛
Oracle E-Business Suite Zero-Day Exploited in Cl0p Attacks
🐛
Zabbix Agent/Agent2 for Windows Vulnerability Could Allow Privilege Escalation
🐛
CISA Flags Meteobridge CVE-2025-4008 Flaw as Actively Exploited in the Wild
KEV
🐛
Cl0p nutzt Schwachstelle bei Oracle aus
🐛
Oracle issues emergency patch for zero-day flaw exploited by Cl0p ransomware gang
🐛
Investigating active exploitation of CVE-2025-10035 GoAnywhere Managed File Transfer vulnerability
⚠️
CLOUD Act and pCloud
⚠️
AI Browser Steals Data
⚠️
WARMCOOKIE Malware Operators Introduce Advanced Capabilities
⚠️
Weekly Update 472
⚠️
CISOs rethink the security organization for the AI era
⚠️
Ransomware Gangs Exploit Remote Access Tools to Stay Hidden and Maintain Control
⚠️
Hackers Exploit WordPress Sites by Silently Injecting Malicious PHP Code
⚠️
AI & IAM: Where Security Gets Superhuman (Or Supremely Stuck) - Dor Fledel, Alexander ... - ESW #427
⚠️
Technical Details and Exploit Released for Chrome Remote Code Execution Flaw
⚠️
Integrate Gemini CLI into Your Kali Terminal to Speed Up Pentesting Tasks
⚠️
Hackers Extorting Salesforce After Stealing Data From Dozens of Customers
⚠️
Stealing JWT Tokens via OAuth redirect_uri Manipulation: A Critical Vulnerability | by Shah kaif | Oct, 2025 | InfoSec Write-ups
⚠️
Hackers exploited Zimbra flaw as zero-day using iCalendar files
⚠️
The DEEP Matrix: Your Map to a Unified Defense
⚠️
Gemini Trifecta: AI autonomy without guardrails opens new attack surface
⚠️
⚡ Weekly Recap: Oracle 0-Day, BitLocker Bypass, VMScape, WhatsApp Worm & More
⚠️
Hackers Allegedly Breach Huawei Technologies, Leak Source Code and Internal Tools
⚠️
Oracle patches EBS zero-day exploited in Clop data theft attacks
⚠️
Microsoft and Steam Take Action as Unity Vulnerability Puts Games at Risk
⚠️
Steam and Microsoft warn of Unity flaw exposing gamers to attacks
⚠️
The role of Artificial Intelligence in today’s cybersecurity landscape
⚠️
Ransomware Gangs Exploit Remote Access Tools to Stay Hidden and Maintain Control
⚠️
gbhackers.com
⚠️
Redis warns of critical flaw impacting thousands of instances
⚠️
Zeroday Cloud hacking contest offers $4.5 million in bounties
⚠️
Clop hackers caught exploiting Oracle zero-day bug to steal executives’ personal data
⚠️
Microsoft: Critical GoAnywhere bug exploited in ransomware attacks
📋
Sora 2 Unveiled To Mixed Reviews
📢
5 Critical Questions For Adopting an AI Security Solution
📢
Oracle security advisory (AV25-640)
📢
IBM security advisory (AV25-641)
📢
Your KnowBe4 Compliance Plus Fresh Content Updates from September 2025
📢
Ubuntu security advisory (AV25-643)
📢
Dell security advisory (AV25-642)
📢
Red Hat security advisory (AV25-645)
📢
[Control systems] CISA ICS security advisories (AV25–644)
📢
New Report Links Research Firms BIETA and CIII to China’s MSS Cyber Operations
📢
Redis security advisory (AV25-646)
🔥
Beer Giant Asahi Says Data Stolen in Ransomware Attack
🔥
Yurei Ransomware leverages SMB shares and removable drives to Encrypt Files
🔥
Cyberbedrohungslage für KMUs spitzt sich zu
🔥
Data Breach at Doctors Imaging Group Impacts 171,000 People
🔥
XWorm malware resurfaces with ransomware module, over 35 plugins
🔥
TamperedChef Malware Disguised as PDF Editor Hijacks Browser Credentials and Opens Backdoors
🔥
Chinese Cybercrime Group Runs Global SEO Fraud Ring Using Compromised IIS Servers
🔥
Discord users’ data stolen by hackers in third-party data breach
🔥
XWorm malware resurfaces with ransomware module, over 35 plugins
🔥
Discord Says User Information Stolen in Third-Party Data Breach
🔥
Red Hat data breach escalates as ShinyHunters joins extortion
🔥
Inside Microsoft Threat Intelligence: Calm in the chaos
🕵️
ISC Stormcast For Monday, October 6th, 2025 https://isc.sans.edu/podcastdetail/9642, (Mon, Oct 6th)
🕵️
Hackers Turn AWS X-Ray into Command-and-Control Platform
🕵️
Asgard Malware Protector Reversed: Researchers Expose Its Antivirus Bypass Methods
🕵️
$4.5 Million Offered in New Cloud Hacking Competition
🕵️
AI in the 2026 Midterm Elections
🕵️
Ghost in the Cloud: Weaponizing AWS X-Ray for Command & Control
🕵️
Massive surge in scans targeting Palo Alto Networks login portals
🕵️
New Study Warns Several Free iOS and Android VPN Apps Leak Data
🕵️
New ‘Fully Undetectable’ Android RAT Discovered on GitHub
🕵️
Rhadamanthys 0.9.x - walk through the updates - Check Point Research
🕵️
[Cybersecurity Awareness Month] Watch Out for the Cyberpunks: Outsmarting Social Engineering in Retro Arcade Style
🕵️
Paris, France, October 6th, 2025, CyberNewsWire
🕵️
Security Leaders Cite AI-Driven Phishing Attacks as a Top Concern
🌐
Beware of threats lurking in booby-trapped PDF files
📡
Detecting DLL hijacking with ML | Kaspersky official blog
📡
Case Study: How Advance2000 keeps 10K+ users secure with Sophos
📡
Inside Microsoft’s AI bet with CTO Kevin Scott at TechCrunch Disrupt 2025
KEV
📡
LinkedIn sues ProAPIs for using 1M fake accounts to scrape user data
📡
OpenAI is testing ChatGPT-powered Agent Builder
📡
ChatGPT Pulse is coming to the web, but no word on free or Plus roll out
📡
Microsoft: Running multiple Office apps causes Copilot issues