46Articles
7Categories
2025-12-30Date
πŸ›
70,000+ MongoDB Servers Exposed After MongoBleed PoC Released
πŸ›
Patch Tuesday 2025 roundup: The biggest Microsoft vulnerabilities of the year
KEV
πŸ›
CVE-2023-52970 MariaDB Server 10.4 through 10.5.*, 10.6 through 10.6.*, 10.7 through 10.11.*, 11.0 through 11.0.*, and 11.1 through 11.4.* crashes in Item_direct_view_ref::derived_field_transformer_for_where.
πŸ›
CVE-2025-68973 In GnuPG through 2.4.8, armor_filter in g10/armor.c has two increments of an index variable where one is intended, leading to an out-of-bounds write for crafted input. (For ExtendedLTS, 2.2.51 and later are fixed versions.)
πŸ›
CSA Issues Alert on Critical SmarterMail Bug Allowing Remote Code Execution
πŸ›
Critical IBM API Connect Flaw Allows Attackers to Bypass Authentication
πŸ›
Critical SmarterMail Flaw Allows Attackers to Execute Remote Code
πŸ›
CISA Alerts on Active Exploitation of MongoDB Vulnerability CVE-2025-14847
KEV
⚠️
6 cyber insurance gotchas security leaders must avoid
⚠️
AI-Era AppSec: Transparency, Trust, and Risk Beyond the Firewall - ASW #363
⚠️
8 Cybersecurity Acquisitions Surpassed $1 Billion Mark in 2025
⚠️
Fortinet warns of 5-year-old FortiOS 2FA bypass still exploited in attacks
⚠️
Critical 0day flaw Exposes 70k XSpeeder Devices as Vendor Ignores Alert – Hackread – Cybersecurity News, Data Breaches, AI, and More
⚠️
CISA orders feds to patch MongoBleed flaw exploited in attacks
KEV
⚠️
Magecart Campaign Deploys 50+ Malicious Scripts to Hijack E-Commerce Transactions
⚠️
ESET Flags Rising Threat of AI-Driven Malware and Ransomware
⚠️
CISA Releases Two Industrial Control Systems Advisories
πŸ“’
Sieben Anzeichen dafΓΌr, dass Ihr Cybersecurity-Framework ΓΌberarbeitet werden muss
πŸ“’
New Spear-Phishing Attack Targeting Security Individuals in the Israel Region
πŸ“’
Automating Vendor Trust Issues
πŸ“’
SmarterTools security advisory (AV25-866)
πŸ”₯
EmEditor Website Breach Used to Spread Infostealer Malware
πŸ”₯
Korean Air Data Compromised in Oracle EBS Hack
πŸ”₯
Mustang Panda Uses Signed Kernel-Mode Rootkit to Load TONESHELL Backdoor
πŸ”₯
New Google-Themed Phishing Wave Hits Over 3,000 Global Organisations – Hackread – Cybersecurity News, Data Breaches, AI, and More
πŸ”₯
Romanian energy provider hit by Gentlemen ransomware attack
πŸ”₯
US cybersecurity experts plead guilty to BlackCat ransomware attacks
πŸ”₯
European Space Agency confirms breach of "external servers"
πŸ”₯
Hackers Abuse Copilot Studio’s New Connected Agents Feature to Plant Backdoors
πŸ”₯
European Space Agency confirms breach of "external servers"
πŸ”₯
New ErrTraffic service enables ClickFix attacks via fake browser glitches
πŸ”₯
SentinelOne and AWS Shape the Future of AI Security with Purple AI - SWN #542
πŸ•΅οΈ
Chinese APT Mustang Panda Caught Using Kernel-Mode Rootkit
πŸ•΅οΈ
Silver Fox Targets Indian Users With Tax-Themed Emails Delivering ValleyRAT Malware
πŸ•΅οΈ
Using AI-Generated Images to Get Refunds
πŸ•΅οΈ
27 Malicious npm Packages Used as Phishing Infrastructure to Steal Login Credentials
πŸ•΅οΈ
Researchers Spot New Shai Hulud Variant - BankInfoSecurity
πŸ•΅οΈ
New ConsentFix Technique Tricks Users Into Handing Over OAuth Tokens
πŸ•΅οΈ
Can You Trust Agentic AI?
πŸ•΅οΈ
Hackers Promote β€œVOID” AV Killer Claiming Kernel-Level Defense Evasion
πŸ•΅οΈ
Hackers Impersonated Jackson JSON Library to Infiltrate Maven Central
πŸ•΅οΈ
Chinese Hackers Deploy Rootkit to Stealthily Mask ToneShell Malware
πŸ•΅οΈ
AI's New Cyber Threats
πŸ•΅οΈ
The Strategic Imperative for OT/IT Convergence
🌐
Zoom Stealer browser extensions harvest corporate meeting intelligence
πŸ“‘
How to Integrate AI into Modern SOC Workflows