81Articles
9Categories
2025-12-01Date
🚨
CISA Adds Actively Exploited XSS Bug CVE-2021-26829 in OpenPLC ScadaBR to KEVsubmitted by kid to cybersecurity 2 points | 0 comments https://thehackernews.com/2025/11/cisa-adds-actively-exploited-xss-bug.html
KEV
🐛
PoC Released for Outlook “MonikerLink” RCE Flaw Allowing Remote Code Execution
🐛
CISA Warns of ScadaBR Vulnerability After Hacktivist ICS Attack
KEV
⚠️
Cybersecurity Today: QR Code Parking Scams, Evil Twin WiFi Attacks & Microsoft's Teams Flaw
⚠️
Linux 6.18 Rolls Out With Major Hardware Support Upgrades and Driver Enhancements
⚠️
Police takes down Cryptomixer cryptocurrency mixing service
⚠️
Zilvia.net - 287,863 breached accounts
⚠️
From Misconfigurations to Mission Control: Lessons from InfoSec World 2025 - ESW #435
⚠️
Korea’s Coupang says data breach exposed nearly 34M customers’ personal information
⚠️
⚡ Weekly Recap: Hot CVEs, npm Worm Returns, Firefox RCE, M365 Email Raid & More
⚠️
Authorities Shut Down ‘Cryptomixer’ Platform Used for Cybercrime and Money Laundering
⚠️
Operation Hanoi Thief: Pseudo-Polyglot Payloads Targeting IT Professionals
⚠️
Devolutions Server Hit by SQL Injection Flaw Allowing Data Theft
⚠️
Scammers Are Exploiting the Holiday Shopping Season
⚠️
The CISO’s paradox: Enabling innovation while managing risk
⚠️
Critical Apache bRPC Framework Vulnerability Let Attackers Crash the Server
⚠️
$29 Million Worth of Bitcoin Seized in Cryptomixer Takedown
⚠️
Contagious Interview attackers go ‘full stack’ to fool developers
⚠️
Bin ich Teil eines Botnets? Jetzt kostenlos nachprüfen
⚠️
Microsoft gives Windows admins a legacy migration headache with WINS sunset
⚠️
NETSCOUT wins “Overall Network Security Solution of the Year”
⚠️
What are zero-day attacks and why do they work?
⚠️
The first line of defense is still the network. But that’s only the beginning
⚠️
European cops shut down crypto mixing website that helped launder 1.3 billion euros
⚠️
SmartTube YouTube app for Android TV breached to push malicious update
📋
Qualcomm Alerts Users to Critical Flaws That Compromise the Secure Boot Process
📢
Tomiris Shifts to Public-Service Implants for Stealthier C2 in Attacks on Government Targets
📢
12 signs the CISO-CIO relationship is broken — and steps to fix it
📢
Kevin Lancaster Joins the usecure Board to Accelerate North American Channel Growth
KEV
📢
Chinese Front Companies Offering Advanced Steganography Tools for APT Groups
📢
IBM security advisory (AV25-790)
📢
Ubuntu security advisory (AV25-792)
📢
Dell security advisory (AV25-791)
📢
[Control systems] CISA ICS security advisories (AV25-793)
📢
HPE security advisory (AV25-794)
📢
India Orders Phone Makers to Pre-Install Sanchar Saathi App to Tackle Telecom Fraud
📢
Red Hat security advisory (AV25-795)
📢
VMware security advisory (AV25-796)
📢
Qualcomm security advisory – December 2025 monthly rollup (AV25-797)
🔥
Weekly Update 480
🔥
Brsk confirms breach as bidding begins for 230K+ records
🔥
KimJongRAT Strikes Windows Users via Malicious HTA Files
🔥
Hackers Shift to ‘Living Off the Land’ Tactics to Evade EDR on Windows Systems
🔥
Data copied in Kensington and Chelsea council cyber attack
🔥
Retail giant Coupang suffers data breach impacting 33.7 million people
🔥
BreachLock Named a Leader in 2025 GigaOm Radar Report for Penetration Testing as a Service (PTaaS) for Third Consecutive Year
🕵️
ISC Stormcast For Monday, December 1st, 2025 https://isc.sans.edu/podcastdetail/9718, (Mon, Dec 1st)
🕵️
APT36 Deploys Python-Based ELF Malware in Targeted Attacks on Indian Government Agencies
🕵️
Australian Man Sentenced to Prison for Wi-Fi Attacks at Airports and on Flights
🕵️
Ermittler zerschlagen Plattform für Online-Geldwäsche
🕵️
AppSec: It's All About Developer Skills
🕵️
Leak confirms OpenAI is preparing ads on ChatGPT for public roll out
🕵️
Public GitLab repositories exposed more than 17,000 secrets
🕵️
Scattered Lapsus$ Hunters target Zendesk users with fake domains
🕵️
Banning VPNs
🕵️
Security researchers caution app developers about risks in using Google Antigravity
🕵️
Australian Man Jailed for Running Fake Wi-Fi Attacks at Airports and Onboard Flights
🕵️
Kevin Lancaster Joins the usecure Board to Accelerate North American Channel Growth
KEV
🕵️
Hackers Launch 2,000+ Fake Holiday Shops in Massive Payment Theft Scheme
🕵️
Shai-hulud 2.0 Campaign Targets Cloud and Developer Ecosystems
🕵️
Contagious Interview campaign expands with 197 npm Ppackages spreading new OtterCookie malware
🕵️
New Albiriox Android Malware Developed by Russian Cybercriminals
🕵️
Facial Recognition’s Trust Problem
🕵️
Kindness: The Leader's Currency
🕵️
ShadyPanda Turns Popular Browser Extensions with 4.3 Million Installs Into Spyware
🕵️
South Korea's Coupang Confirms 34 Million Customer Data Leak
🕵️
Albiriox Exposed: A New RAT Mobile Malware Targeting Global Finance and Crypto Wallets
🕵️
News alert: usecure adds channel heavyweight Kevin Lancaster to guide North America push
KEV
🕵️
High Schooler's DEFCON Badge Journey
🌐
New Albiriox MaaS Malware Targets 400+ Apps for On-Device Fraud and Screen Control
🌐
Webinar: The "Agentic" Trojan Horse: Why the New AI Browsers War is a Nightmare for Security Teams
🌐
ShadyPanda browser extensions amass 4.3M installs in malicious campaign
🌐
When Hackers Wear Suits: Protecting Your Team from Insider Cyber Threats
🌐
Glassworm malware returns in third wave of malicious VS Code packages
📡
Google deletes X post after getting caught using a ‘stolen’ AI recipe infographic
📡
Kaspersky Embedded Systems Security: what's new?
📡
Microsoft says new Outlook can't open some Excel attachments
📡
[Guest Diary] Hunting for SharePoint In-Memory ToolShell Payloads, (Tue, Dec 2nd)
📡
What’s your CNAPP maturity?
📡
Oversharing is not caring: What’s at stake if your employees post too much online
📡
Elevate Your Cloud Security Strategy