π What's happening in cybersecurity today? π¨ #CyberAlerts Windows BitLocker Flaw Lets Attackers Bypass Encryption Without Tampering Source: Neodyme Malicious PyPI Package Steals Discord Tokens and Installs Backdoor Source: Socket Sneaky 2FA Phishing Kit Targets Microsoft 365 Accounts and Steals Credentials Source: Quentin Bourgue, and GrΓ©goire Clermont via Sekoia Microsoft Shares Temporary Fix for Outlook Crashes in Classic Version Source: Microsoft New IoT Botnet Exploits Vulnerabilities in D...
Jan 20, 2025β’10 min
π What are the latest cybersecurity alerts, incidents, and news? π¨ #CyberAlerts Star Blizzard Targets WhatsApp Accounts in New Spear-Phishing Campaign Source: Microsoft Threat Intelligence New UEFI Secure Boot Vulnerability Allows Malicious Code Execution Source: David SmolΓ‘r via ESET Misconfiguration Bypasses Microsoft's NTLMv1 Block in Active Directory Source: Dor Segal via Silverfort Malicious Code Concealed in Images to Deliver Keyloggers and Stealers Source: HP Wolf Security Over 4 Millio...
Jan 17, 2025β’10 min
π What's going on in the cyber world today? π¨ #CyberAlerts Python Malware Enables RansomHub Ransomware to Exploit Network Vulnerabilities Source: Andrew Nelson via GuidePoint Security MikroTik Botnet Exploits DNS Flaws to Spread Malware Across 20000 Domains Source: David Brunsdon via Infoblox Fake Google Ads Campaign Targets Users to Steal Credentials and Hijack Accounts Source: JΓ©rΓ΄me Segura via Malwarebytes Cybercriminals Target California Wildfire Victims With Phishing Scams Source: Veriti ...
Jan 16, 2025β’10 min
π What's trending in cybersecurity today? π¨ #CyberAlerts Google OAuth Flaw Exposes Millions to Data Breach Risk via Domain Ownership Change Source: Dylan Ayrey via Truffle Security Critical Cryptojacking Code Found in Kong Ingress Controller Image Source: Malicious Plugin Targeting 5000 WordPress Sites Exfiltrates Sensitive Data Source: Himanshu Anand via c/side Microsoft Patches 161 Vulnerabilities Including Active Exploits in 2025 Security Update Source: Microsoft Critical Security Flaws in ...
Jan 15, 2025β’10 min
π What's the latest in the cyber world today? π¨ #CyberAlerts Microsoft Uncovers a System Integrity Protection Bypass Vulnerability in macOS Source: Microsoft Threat Intelligence Codefinger Hackers Target Amazon S3 Buckets with Ransomware Encryption Attacks Source: Halcyon Critical Aviatrix Controller Flaw Exploited for Mining and Backdoors Source: Gal Nagli, Merav Bar, Gili Tikochinski, Shaked Tanchuma via Wiz CISA Adds Vulnerability in BeyondTrust Products to KEV Catalog Source: CISA Hackers ...
Jan 14, 2025β’9 min
π What's happening in cybersecurity today? π¨ #CyberAlerts Crypto Attackers Use Transaction Simulation Spoofing to Steal Ethereum Source: ScamSniffer IBM Addresses Security Flaw in Robotic Process Automation Exposing Data Source: IBM Cybercriminals Distribute Malware Through Social Media and YouTube Source: Trend Micro AI-Driven Ransomware Group FunkSec Blurs Hacktivism and Cybercrime Source: Check Point WordPress Skimmer Targets Checkout Pages with Malicious Code Source: Puja Srivastava via Su...
Jan 13, 2025β’9 min
π What are the latest cybersecurity alerts, incidents, and news? π¨ #CyberAlerts New Banshee Stealer Variant Targets macOS with Advanced Evasion Tactics Source: Antonis Terefos via Check Point Research CrowdStrike Alerts Phishing Campaign Targeting Recruitment Process Source: CrowdStrike New PayPal Phishing Scam Exploits Microsoft365 to Bypass Security Filters Source: Carl Windsor via Fortinet MirrorFace Linked Hackers Target Japanβs Security and Technology Since 2019 Source: Japan's National P...
Jan 10, 2025β’9 min
π What's going on in the cyber world today? π¨ #CyberAlerts Neglected Domains Drive Surge in Email Spoofing and Phishing Scams Source: Infoblox Motorola License Plate Readers Expose Sensitive Data Online via Unsecured IoT Source: Jason Koebler via 404 Media Scammers Pose as Government Officials to Steal Personal and Financial Data Source: Stepan Kechko via Group-IB Ivanti Warns Hackers Exploiting Vulnerability in Key Products Source: Ivanti WordPress Plugin Fancy Product Designer Has Critical V...
Jan 09, 2025β’10 min
π What's trending in cybersecurity today? π¨ #CyberAlerts Mirai Botnet Exploits Four-Faith Router Flaws to Launch Global DDoS Attacks Source: Wang Hao, Alex.Turing, Acey9 via QiAnXin XLab CISA Adds Critical Mitel MiCollab and Oracle Flaws to Exploited Vulnerabilities List Source:CISA Illumina iSeq 100 DNA Sequencer Vulnerabilities Expose Devices to Malware and Attacks Source: Alex Bazhaniuk, Mickey Shkatov via Eclypsium IBM Concert Software Faces Vulnerabilities Exposing Sensitive Data and Syst...
Jan 08, 2025β’9 min
π What's the latest in the cyber world today? π¨ #CyberAlerts BARWM Unveils Stealthy Backdoor Attacks on Deep Learning with Hidden Triggers Source: Jiali Wei, Ming Fan, Xicheng Zhang, Wenjing Jiao, Haijun Wang, and Ting Liu Xiβan via ArXiv PhishWP Plugin Creates Fake Payment Pages to Steal Sensitive Data from VictimsSource: Daniel Kelley via SlashNext Moxa Warns of Critical Vulnerabilities in Routers and Network AppliancesSource: Moxa Discord Users Warned of Infostealer Campaign Targeting Gamin...
Jan 07, 2025β’10 min
π What's happening in cybersecurity today? π¨ #CyberAlerts Russian Hackers Exploit Malicious npm Packages to Target Ethereum Developers Source: Socket Weaponized Python Scripts Used to Deploy SwaetRAT Malware with Advanced Tactics Source: Xavier Mertens via SANS Technology Institute Critical UpdraftPlus Plugin Flaw Exposes 3 Million Websites to Injection Attacks Source: Wordfence Critical Nuclei Vulnerability Enables Signature Bypass and Remote Code Execution Source: Guy Goldenberg via Wiz KGB ...
Jan 06, 2025β’9 min
π What are the latest cybersecurity alerts, incidents, and news? π¨ #CyberAlerts Over 3 Million Email Servers Exposed to Sniffing Attacks Due to Lack of Encryption Source: Shadowserver Foundation SysBumps Attack Exploits Speculative Execution to Bypass macOS Kernel Security Source: Hyerean Jang, Taehun Kim and Yungjoo Shin via ACM Digital Library Windows 11 BitLocker Encryption Bypassed to Extract Full Volume Encryption Keys Source: Jack Crouse via GitHub Bad Likert Judge Attack Bypasses AI Saf...
Jan 03, 2025β’10 min
π What's going on in the cyber world today? π¨ #CyberAlerts EC2 Grouper Hackers Exploit AWS Tools and Compromised Credentials to Target Cloud Source: Chris Hall via Fortinet New Nitrogen Ransomware Targets Organizations and Critical Sectors Source: Broadcom New DoubleClickjacking Exploit Bypasses Clickjacking Protections on Major Websites Source: Paulos Yibelo PoC Exploit Released for Windows LDAP Zero-Click Remote Code Execution Flaw Source: SafeBreach via gitHub Command Injection Vulnerabilit...
Jan 02, 2025β’9 min
π What's the latest in the cyber world today? π¨ #CyberAlerts Hackers Exploit Palo Alto Firewall Vulnerabilities to Deploy Malware Backdoor Source: MichaΓ«l Schrijver and Alex Oudenaarden via Northwave Cyber Security Tangem Resolves Security Flaw That Exposed Users' Private Keys Through Logs Source: Arijit Sarkar via Cointelegraph NFS Protocol Vulnerabilities Allow Remote File Access by Bypassing Security Source: Philipp Tekeser-Glasz and Michael Eder via hvs consulting SpyMax Targets Uzbekistan...
Dec 31, 2024β’9 min
π What's happening in cybersecurity today? π¨ #CyberAlerts New Version of NjRat Pro Edition Shared on GitHub Raises Alarm Source: AnuPriya via Cyber Press Over 15,000 Four-Faith Routers Vulnerable to Exploit Due to Default Credentials Source: Jacob Baines via VulnCheck PoC Exploit for Critical Oracle WebLogic Vulnerability Released Publicly Source: Cyber Advising via X D-Link Router Vulnerability Exposes Devices to Remote Attacks and Compromise Source: VulDB Hackers Hijack 16 Chrome Extensions ...
Dec 30, 2024β’8 min
π What are the latest cybersecurity alerts, incidents, and news? π¨ #CyberAlerts FICORA and Kaiten Botnets Exploit D-Link Vulnerabilities for Global Attacks Source: Vincent Li via Fortinet OtterCookie Malware Exploits Fake Job Offers to Target Developers Globally Source: Masaya Motoda and Rintaro Koike via NTT Security Palo Alto Networks Patches High-Severity PAN-OS DoS Vulnerability Source: Palo Alto Networks Windows 11 Installation Media Bug Prevents Security Updates in Latest Version Source:...
Dec 27, 2024β’9 min
π What's going on in the cyber world today? π¨ #CyberAlerts Malicious Python Packages Zebo and Cometlogger Found Stealing User Data Source: Jenna Wang via Fortinet Dark Web Operation Exploits KYC Data and Biometric Information to Bypass Security Source: iProov Apache Patches Critical SQL Injection Vulnerability in Traffic Control Software Source: Apache IBM AIX Vulnerability Allows Attackers to Trigger Denial of Service Condition Source: IBM Dell SupportAssist Vulnerability Allows Privilege Esc...
Dec 26, 2024β’9 min
π What's the latest in the cyber world today? π¨ #CyberAlerts Hackers Exploit ScreenConnect to Deploy AsyncRAT and SectopRAT on Windows Source: Microsoft Threat Intelligence via X Adobe Issues Emergency Patch for Critical ColdFusion Vulnerability Source: Adobe Premium WPLMS WordPress Plugins Fix Seven Critical Security Vulnerabilities Source: Rafie Muhammad via Patchstack Critical Node.js Vulnerability Exposes Millions to Remote Code Execution Attacks Source: Sebastian Hildebrandt via GitHub CI...
Dec 24, 2024β’9 min
π What's happening in cybersecurity today? π¨ #CyberAlerts FlowerStorm Sees Surge in Activity Following Rockstar2FA Service Disruption Source: Sean Gallagher and Mark Parsons via Sophos Python NodeStealer Malware Targets Facebook Business Accounts and Financial Data Source: Aira Marcelo, Bren Matthew Ebriega and Abdul Rahim via Trend Micro Critical Craft Content Management System Flaw Allows Remote Code Execution Source: Assetnote WPA3 Network Security Bypassed Using Man in The Middle Attack So...
Dec 23, 2024β’10 min
π What are the latest cybersecurity alerts, incidents, and news? π¨ #CyberAlerts Rspack npm Packages Compromised in Supply Chain Attack with Crypto Mining Malware Source: Sarah Gooding and Kush Pandya via Socket NotLockBit Ransomware Emerges as a Cross-Platform Threat to Windows and macOS Source: Pranita Pradeep Kulkarni via Qualys Hackers Sell Cracked Acunetix Tool as Araneida Scanner for Cyber Attacks Source: Silent Push Microsoft Patches Windows 11 Privilege Escalation Vulnerability in Cloud...
Dec 20, 2024β’9 min
π What's going on in the cyber world today? π¨ #CyberAlerts APT29 Uses PyRDP and Rogue Servers in Stealthy Espionage Campaigns Source: Feike Hacquebord and Stephen Hilt via Trend Micro HubPhish Exploits HubSpot Free Forms to Target European Users for Phishing Source: Shachar Roitman, Ohad Benyamin Maimon, William Gamazo via Unit 42 UAC-0125 Exploits Cloudflare Workers to Distribute Malware Disguised as Army+ App Source: Computer Emergency Response Team of Ukraine Flaws Enable Remote Code Execut...
Dec 19, 2024β’9 min
π What's trending in cybersecurity today? π¨ #CyberAlerts Phishing Campaign Uses Malicious MSC Files to Deploy Backdoor in Pakistan Attacks Source: Den Iuzvyk and Tim Peck via Securonix Bitter APT Targets Turkish Defense Sector Using WmRAT and MiyaRAT Malware Source: Nick Attfield, Konstantin Klinger, Pim Trouerbach and David Galazin via Proofpoint Hackers Use Google Calendar and Drawings for Sophisticated Phishing Attacks Source: Check Point RiseLoader Malware Uses VMProtect to Drop Multiple M...
Dec 18, 2024β’9 min
π What's the latest in the cyber world today? π¨ #CyberAlerts New DeceptionAds Campaign Uses Fake CAPTCHA Pages to Deliver Infostealer Malware Source: Nati Tal via Guardio CoinLurker Malware Exploits WebView2 to Steal Cryptocurrencies Source: Nadav Lorber via Morphisec FBI Warns of HiatusRAT Malware Targeting Vulnerable Web Cameras and DVRs Source: US Federal Bureau of Investigation Critical Hitachi Authentication Bypass Flaw Exposes Systems to Remote Attacks Source: Hitachi New NoviSpy Malware...
Dec 17, 2024β’9 min
π What's happening in cybersecurity today? π¨ #CyberAlerts Yokai Backdoor Campaign Exploits DLLβs to Target Thai Government Officials Source: Nikhil Hegde and Jan Michael Alcantara via Netskope Over 390K WordPress Credentials Stolen Through Malicious GitHub Repository Source: Datadog HeartCrypt Packer-as-a-Service Enables Malware Operators to Evade Detection Source: Jerome Tujague and Daniel Bunce via Unit42 Hackers Target YouTube Creators with Weaponized Collaboration Requests and Malware Sour...
Dec 16, 2024β’9 min
π What are the latest cybersecurity alerts, incidents, and news? π¨ #CyberAlerts New Linux Rootkit PUMAKIT Uses Advanced Stealth Techniques to Evade Detection Source: Ruben Groenewoud via Elastic Gamaredon Unleashes BoneSpy and PlainGnome Spyware in Central Asia Source: Lookout DarkGate Malware Spreads Through Vishing Attack via Microsoft Teams Source: Catherine Loveria, Jovit Samaniego and Gabriel Nicoleta via Trend Micro Flaw Exposes Over 300K Prometheus Instances to Data Leaks and Attacks So...
Dec 13, 2024β’9 min
π What's going on in the cyber world today? π¨ #CyberAlerts Secret Blizzard Uses Amadey Malware to Deploy Kazuar Backdoor in Ukraine Source: Microsoft Chinese EagleMsgSpy Spyware Found Exploiting Mobile Devices Since 2017 Source: Lookout ZLoader Malware Uses DNS Tunneling for C2 Communications and Detection Evasion Source: Zscaler Wordpress Hunk Companion Plugin Flaw Exploited to Install Malicious Plugins Source: WPScan New Malware Technique Exploits Windows UI Framework to Evade EDR Detection ...
Dec 12, 2024β’9 min
π What's trending in cybersecurity today? π¨ #CyberAlerts Ivanti Warns of Critical CSA Vulnerability Which Allows Authentication Bypass Source: Ivanti Fake Recruiters Exploit Job Seekers to Distribute Advanced Banking Trojan Apps Source: Vishnu Pratapagiri via Zimperium Cleo File Transfer Vulnerability Actively Exploited in the Wild Source: Cleo Microsoft Urges Immediate Patching for Critical Remote Desktop Protocol Flaw Source: Microsoft TCC Subsystem Vulnerability in iOS Exposes iCloud Data t...
Dec 11, 2024β’9 min
π What's the latest in the cyber world today? π¨ #CyberAlerts WPForms Plugin Vulnerability Exposes 6 Million WordPress Sites to Financial Risk Source: IstvΓ‘n MΓ‘rton via Wordfence China-linked Hackers Exploit Visual Studio Code for Cyber Espionage Campaign Source: Aleksandar Milenkoski and Luigi Martire via Sentinel Labs Nemesis Group Launches Cyber Campaign Exploiting AWS Vulnerabilities Source: vpnMentor Russia-Linked Phishing Attacks Target Ukraine's Defense and Security Forces Source: Comput...
Dec 10, 2024β’9 min
π What's happening in cybersecurity today? π¨ #CyberAlerts Ultralytics AI PyPI Library Compromised as Cryptocurrency Miner Found Source: Karlo Zanki via Reversing Labs Hackers Exploit Fake Video Apps to Steal Data from Web3 Professionals Worldwide Source: Tara Gould via Cado Security Multiple QNAP Vulnerabilities Expose NAS Systems to Remote Attacks and Data Theft Source: QNAP Transaction-Relay Jamming Flaw Threatens Bitcoin Lightning Network Security Source: Antoine Riard via GitHub Critical Q...
Dec 09, 2024β’9 min
π What are the latest cybersecurity alerts, incidents, and news? π¨ #CyberAlerts Gamaredon Exploits Cloudflare Tunnels and DNS Fast-Fluxing to Distribute Malware Source: Insikt Group Critical Mitel MiCollab Flaw Exposes Files and Enables Unauthorized Admin Actions Source: watchTowr Labs New Andromeda C2 Cluster Targets Asia Pacific Manufacturing and Logistics Sectors Source: Cybereason Critical Rockwell Automation Arena Vulnerabilities Allow Remote Code Execution Source: Rockwell Automation Lat...
Dec 06, 2024β’9 min