78Articles
7Categories
2025-10-27Date
🐛
706,000+ BIND 9 DNS Resolvers Exposed to Cache Poisoning – PoC Released
⚠️
Pwn2Own Ireland 2025: Major Cybersecurity Revelations & Critical Vulnerabilities
⚠️
WhatsApp 0-Click Exploit Disclosed to Meta at Pwn2Own Security Event
⚠️
Critical CoPhish Exploit Uses Copilot Studio to Hijack OAuth Tokens
⚠️
Qilin Ransomware Exploits MSPaint and Notepad to Locate Sensitive Files
⚠️
Securing AI Agents with Dave Lewis, Enterprise News, and interviews from Oktane 2025 - ESW #430
⚠️
Chrome Zero-Day Exploitation Linked to Hacking Team Spyware
⚠️
Qilin Ransomware Combines Linux Payload With BYOVD Exploit in Hybrid Attack
⚠️
Data sovereignty proof: How to verify controls like ‘Project Texas’
⚠️
Year-Old WordPress Plugin Flaws Exploited to Hack Websites
⚠️
ChatGPT’s Atlas Browser Jailbroken to Hide Malicious Prompts Inside URLs
⚠️
Cross-platform ransomware: Qilin weaponizes Linux binaries against Windows hosts
⚠️
Dell Storage Manager Vulnerabilities Allow Full System Compromise
⚠️
Critical HashiCorp Vault Vulnerabilities Allow Authentication Bypass and DoS Attacks
⚠️
⚡ Weekly Recap: WSUS Exploited, LockBit 5.0 Returns, Telegram Backdoor, F5 Breach Widens
⚠️
New EDR-Redir Tool Bypasses EDRs by Exploiting Bind Filter and Cloud Filter Driver
⚠️
CISA orders feds to patch actively exploited Windows Server WSUS flaw
KEV
⚠️
Hackers launch mass attacks exploiting outdated WordPress plugins
⚠️
Critical Chrome 0-Day Under Attack: Mem3nt0 Mori Hackers Actively Exploiting Vulnerability
⚠️
706,000+ BIND 9 Resolver Instances Vulnerable to Cache Poisoning Exposed Online - PoC Released
⚠️
The State of Exposure Management in 2025: Insights From 3,000+ Organizations
⚠️
New ChatGPT Atlas Browser Exploit Lets Attackers Plant Persistent Hidden Commands
⚠️
Italian spyware vendor linked to Chrome zero-day attacks
⚠️
QNAP warns of critical ASP.NET flaw in its Windows backup software
⚠️
Google disputes false claims of massive Gmail data breach
📢
Dell security advisory (AV25-697)
📢
IBM security advisory (AV25-696)
📢
Ubuntu security advisory (AV25-698)
📢
Microsoft: New policy removes pre-installed Microsoft Store apps
📢
[Control systems] CISA ICS security advisories (AV25–699)
📢
Red Hat security advisory (AV25-700)
📢
HashiCorp security advisory (AV25-701)
🔥
MyVidster (2025) - 3,864,364 breached accounts
🔥
How We (Almost) Found Chromium's Bug via Crash Reports to Report URI
🔥
Ransomware Payments Dropped in Q3 2025: Analysis
🔥
Predatory Sparrow Strikes: Coordinated Cyberattacks Seek to Cripple Critical Infrastructure
🔥
Defective block grant scheme firm hit by cyber attack
🔥
[Cyber Security Awareness Month] Doppelgänger Promotes Incident Hiding: Why Saying Something When You See Something Is So Important
🔥
iOS 26 Overwrites ‘shutdown.log’ on Reboot, Erasing Forensic Evidence of Pegasus and Predator Spyware
🔥
Risiken bei der Wiederherstellung nach Ransomware-Angriffen
🔥
Fake LastPass death claims used to breach password vaults
🔥
Everest Ransomware Says It Stole 1.5M Dublin Airport Passenger Records – Hackread – Cybersecurity News, Data Breaches, Tech, AI, Crypto and More
🔥
Ransomware profits drop as victims stop paying hackers
🔥
Gmail Passwords Confirmed As Part Of 183 Million Account Data Leak
🕵️
ISC Stormcast For Monday, October 27th, 2025 https://isc.sans.edu/podcastdetail/9672, (Mon, Oct 27th)
🕵️
North Korean Chollima Actors Added BeaverTail and OtterCookie to its Arsenal
🕵️
Microsoft Adds Wi-Fi-Based Work Location Auto-Detection to Teams
🕵️
First Wap: A Surveillance Computer You’ve Never Heard Of
🕵️
New Firefox Extensions Required to Disclose Data Collection Practices
🕵️
Smishing Triad Linked to 194,000 Malicious Domains in Global Phishing Operation
🕵️
Europol has put an end to network behind 49 million fake accounts
🕵️
Massive China-Linked Smishing Campaign Leveraged 194,000 Domains
🕵️
Blitz Spear Phishing Campaign Targets NGOs Supporting Ukraine - Infosecurity Magazine
🕵️
Hackers steal Discord accounts with RedTiger-based infostealer
🕵️
New CoPhish attack steals OAuth tokens via Copilot Studio agents
🕵️
Hackers Target 81% of Routers with Default Admin Passwords
🕵️
1inch partners with Innerworks to strengthen DeFi security through AI-Powered threat detection
🕵️
IR Trends Q3 2025: ToolShell attacks dominate, highlighting criticality of segmentation and rapid response
🕵️
Louvre Jewel Heist
🕵️
Chainguard Raises $280 Million in Growth Funding
🕵️
CyberRiskTV Live Coverage from Oktane 2025 - Day 2
🕵️
CyberRiskTV Live Coverage from InfoSec World 2025 - Day 1
🕵️
CyberRiskTV Live Coverage from Oktane 2025 - Day 2
🕵️
CyberRiskTV Live Coverage from Oktane 2025 - Day 2
🕵️
CyberRiskTV Live Coverage from Oktane 2025 - Day 2
🕵️
nsKnox Launches Adaptive Payment Security™, Revolutionizing B2B Fraud Prevention by Solving the ‘Impossible Triangle’ of Speed, Certainty, and Effor
🕵️
CyberRiskTV Live Coverage from Oktane 2025 - Day 2
🕵️
Predatory Sparrow Group Attacking Critical Infrastructure to Destroy Data and Cause Disruption
🕵️
Report: More Than Half of Adults Encountered a Scam Last Year
🌐
Bytes over DNS, (Mon, Oct 27th)
🌐
LeetAgent: a tool shared by ForumTroll and Dante
🌐
Active Water Saci Campaign Spreading Via WhatsApp Features Multi-Vector Persistence and Sophisticated C&C
📡
ChatGPT Atlas Browser Can Be Tricked by Fake URLs into Executing Hidden Commands
📡
Google says everyone will be able to vibe code video games
📡
X Warns Users With Security Keys to Re-Enroll Before November 10 to Avoid Lockouts
📡
Windows will soon prompt for memory scans after BSOD crashes
📡
X: Re-enroll 2FA security keys by November 10 or get locked out
📡
How MDR can give MSPs the edge in a competitive market