85Articles
8Categories
2025-11-25Date
🐛
Fluent Bit vulnerabilities could enable full cloud takeover
⚠️
New Shai-Hulud worm spreading through npm, GitHub
⚠️
Years-old bugs in open source took out major clouds at risk • The Register
⚠️
Figuring Out Where to Start with Secure Code - ASW #358
⚠️
Dartmouth College confirms data breach after Clop extortion attack
⚠️
3 SOC Challenges You Need to Solve Before 2026
⚠️
Hackers Hijack Blender 3D Assets to Deploy StealC V2 Data-Stealing Malware
⚠️
Critical Fluent Bit Vulnerabilities Allow Remote Attacks on Cloud Environments
⚠️
Retail Finance Giant SitusAMC Hit by Breach Exposing Confidential Files
⚠️
Apache Syncope Flaw Lets Attackers Access Internal Database Content
⚠️
CISA Warns of Commercial Spyware Targeting Signal and WhatsApp Users
⚠️
Threat Actors Exploit Blender Files to Deploy StealC V2 Infostealer
⚠️
Tokenization: The Hidden Risks in Modern Payment Systems
⚠️
Weaponized file name flaw allows RCE through glob • The Register
⚠️
ShadowPad Malware Actively Exploits WSUS Vulnerability for Full System Access
⚠️
Fluent Bit Vulnerabilities Expose Cloud Services to Takeover
⚠️
New Fluent Bit Flaws Expose Cloud to RCE and Stealthy Infrastructure Intrusions
⚠️
Telecom security reboot: Why zero trust is the only way forward
⚠️
A Vulnerability in SonicOS Could Allow for Denial of Service (DoS)
⚠️
Critical Oracle Identity Manager Flaw Under Attack
⚠️
Shai-Hulud round 2 on GitHub, massive leaks of data and propagation of stealer
⚠️
Shai-Hulud round 2 on GitHub, massive leaks of data and propagation of stealer
⚠️
Canon Allegedly Breached by Clop Ransomware via Oracle E-Business Suite 0-Day Hack
⚠️
CISA Releases Seven Industrial Control Systems Advisories
⚠️
Developers left large cache of credentials exposed on code generation websites
📋
ClickFix Attack Uses Steganography to Hide Malware in Fake Windows Security Update
📋
JackFix Uses Fake Windows Update Pop-Ups on Adult Sites to Deliver Multiple Stealers
📢
CISA Warns of Active Spyware Campaigns Hijacking High-Value Signal and WhatsApp Users
📢
7 signs your cybersecurity framework needs rebuilding
📢
HashiCorp security advisory (AV25-785)
📢
Hackers compromise devices via messaging apps​Hackers target WhatsApp, Signal apps with spyware, compromising personal devices, CISA warns | Cybernews
📢
CISA Warns of Spyware Targeting Messaging App Users
📢
The Black Friday 2025 Cybersecurity, IT, VPN, & Antivirus Deals
🔥
Canon Says Subsidiary Impacted by Oracle EBS Hack
🔥
Hackerangriff auf Hochschule Mainz
🔥
Major US Banks Impacted by SitusAMC Hack
🔥
Russian and North Korean Hackers Forge Global Cyberattack Alliance
🔥
Major Data Breach at Delta Dental of Virginia Hits Over 146,000 Customers’ Info
🔥
Sha1-Hulud Supply Chain Attack: 800+ npm Packages and Thousands of GitHub Repos Compromised
🔥
ToddyCat’s New Hacking Tools Steal Outlook Emails and Microsoft 365 Access Tokens
🔥
146,000 Impacted by Delta Dental of Virginia Data Breach - SecurityWeek
🔥
Harvard University discloses data breach affecting alumni, donors
🔥
Dartmouth College confirms data breach after Clop extortion attack
🔥
Detego Global Launches Case Management Platform for Digital Forensics and Incident Response Teams
🔥
OnSolve CodeRED cyberattack disrupts emergency alert systems nationwide
🕵️
News alert: Veteran-led Blast Security launches, pushing proactive cloud defense over response
🕵️
ISC Stormcast For Tuesday, November 25th, 2025 https://isc.sans.edu/podcastdetail/9714, (Tue, Nov 25th)
🕵️
Hackers Replace 'm' with 'rn' in Microsoft(.)com to Steal Users' Login Credentials
🕵️
Malicious app developers offering to buy old apps from developers who are no longer active, so they can push malware onto those users
🕵️
640 NPM Packages Infected in New ‘Shai-Hulud’ Supply Chain Attack
🕵️
Four Ways AI Is Being Used to Strengthen Democracies Worldwide
🕵️
Microsoft Warns of Security Risks in New Agentic AI Feature
🕵️
Sha1-Hulud Attack Hits 800+ npm Packages and Thousands of GitHub Repos
🕵️
Department 40 Exposed: Inside the IRGC Unit Connecting Cyber Ops to Assassinations - Nariman Gharib
🕵️
Mazda Says No Data Leakage or Operational Impact From Oracle Hack - SecurityWeek
🕵️
WormGPT 4 and KawaiiGPT: New Dark LLMs Boost Cybercrime Automation
🕵️
New ClickFix attacks use fake Windows Updates to swipe creds • The Register
🕵️
Alumni, Student, and Staff Information Stolen From Harvard University
🕵️
Shai-Hulud malware infects 500 npm packages, leaks secrets on GitHub
🕵️
CyberheistNews Vol 15 #47 [Be Prepared] How to Block New Mobile Malware Holiday Attacks
🕵️
Microsoft cracks down on malicious meeting invites - Help Net Security
🕵️
Malicious Blender model files deliver StealC infostealing malware
🕵️
How Quickly Can AI Crack Your Password?
🕵️
The AI Fix #78: The big AI bubble, and robot Grandma in the cloud
🕵️
CISOs: Product & Enterprise Security
🕵️
Years of JSONFormatter and CodeBeautify Leaks Expose Thousands of Passwords and API Keys
🕵️
Charting the future of SOC: Human and AI collaboration for better security
🕵️
Cobalt Strike 4.12 Adds New Injection, UAC Bypasses & C2 Features
🕵️
VSCode Marketplace Hit by Rogue Prettier Extension Delivering Anivia Stealer
🕵️
'JackFix' Attack Circumvents ClickFix Mitigations
🕵️
AI Agent Security Firm Vijil Raises $17 Million
🕵️
Hackers knock out systems at Moscow-run postal operator in occupied Ukraine
🕵️
2026 Predictions for Autonomous AI
🕵️
AI's Impact on Medical Imaging Doctors
🕵️
AI with Dr. Shakour Abuzneid - Shakour Abuzneid - SWN #532
🌐
The cyber threat to Canada’s water systems: Assessment and mitigation
🌐
Influencers in the crosshairs: How cybercriminals are targeting content creators
📡
Code-formatters expose thousands of secrets from banks, govt, tech orgs
📡
Don't take the bait: Recognize and avoid phishing attacks - ITSAP.00.101
📡
Year-end approaches: How to maximize your cyber spend
📡
Microsoft is speeding up the Teams desktop client for Windows
📡
Code beautifiers expose credentials from banks, govt, tech orgs
📡
Microsoft: Exchange Online outage blocks access to Outlook mailboxes
📡
Tor switches to new Counter Galois Onion relay encryption algorithm
📡
FBI: Cybercriminals stole $262M by impersonating bank support teams