If you like what you hear, please subscribe, leave us a review and tell a friend! π What are the latest cybersecurity alerts, incidents, and news? D-Link flaw exposes routers to remote takeover, TA-ShadowCricket hijacks 2K systems, and Killnet shifts to paid attacks. Hackers steal $700K from Philly schools, Naukri fixes email leak, and Qakbotβs leader is indicted. OpenAI helps find a Linux zero-day, NIST launches LEV to rank exploits, and AI shows promise in vulnerability research. π Important...
May 26, 2025β’11 min
If you like what you hear, please subscribe, leave us a review and tell a friend! π What are the latest cybersecurity alerts, incidents, and news? Vidar spreads via TikTok videos, ZeroCrumb malware steals browser cookies, and a Commvault zero-day risks Microsoft 365 backups. Cetus loses $223M in a crypto hack, ransomware hits Marlboro-Chesterfield Pathology and United Food and Commercial Workers, and DanaBot operators face DOJ charges. The FTC probes Googleβs AI chatbot for kids, the SEC charge...
May 23, 2025β’10 min
π What's going on in the cyber world today? π¨ #CyberAlerts Function Confusion Flaw Allows Malicious Code Execution In Major Cloud Services Source: William Charles Gibson via Cisco Talos 3AM Ransomware Social Engineering Email Bombing Uses QEMU For Evasion Source: Sean Gallagher, Robert Weiland, Colin Cowie via Sophos GitLab Critical Security Update Fixes Eleven Flaws And Denial Of Service Bugs Source: GitLab π₯ #CyberIncidents Santa Fe New Mexico Confirms $324,000 Hacker Theft From Vendor Paym...
May 22, 2025β’9 min
If you like what you hear, please subscribe, leave us a review and tell a friend! π What's happening in cybersecurity today? Hazy Hawk exploits DNS misconfigs for scams, More_Eggs backdoor hits HR via fake job apps, and fake Kling AI sites spread crypto-stealing malware. Cellcom suffers voice/SMS outage, ransomware disrupts UKβs Peter Green Chilled, and Kettering Health cancels procedures after attack. Dutch expand cyber espionage law, NIST & CISA introduce LEV exploit metric, and teen admi...
May 21, 2025β’9 min
If you like what you hear, please subscribe, leave us a review and tell a friend! π What's the latest in the cyber world today? W3LL phishing kit bypasses MFA, Zoom lures steal logins, and a Windows 10 bug triggers BitLocker errors. Promises2Kids and Effortel report data breaches, RVTools spreads malware, and GDPR changes face backlash. Tor updates for privacy, CISA names a new deputy, and EU telco hacks raise leadership concerns. π Important Links: Cyber Events: https://cybersecurity.cybermat...
May 20, 2025β’9 min
π What's happening in cybersecurity today? π¨ #CyberAlerts Mozilla Released an Urgent Firefox Update to Fix RCE Flaws Source: Mozilla ModiLoader Malware Uses Fake Bank Emails to Steal Data from Windows Users Source: AhnLab SEcurity intelligence Center (ASEC) Linux Systems At Risk From Critical Glibc Flaw Allowing Local Privilege Escalation Source: Glibc π₯ #CyberIncidents Arla Foods Dairy Plant Production Halted By A Disruptive Cyberattack Source: Dean Best via Just Food Massive DDoS Attack Cri...
May 19, 2025β’9 min
π What are the latest cybersecurity alerts, incidents, and news? π¨ #CyberAlerts RoundPress Webmail Cyberespionage Uses ZeroDay Attacks Target Governments Source: Matthieu Faou via ESET FBI Warns AI Voice Deepfakes Are Being Used to Impersonate US Officials Source: FBI Fileless Remcos RAT Delivered via LNK Files in PowerShell Based Attacks Source: Akshay Thorve via Qualys π₯ #CyberIncidents Coinbase Bribery Attack Exposed Customer Data and Triggered $20M Extortion Source: Coinbase Cyberattack T...
May 16, 2025β’9 min
π What's going on in the cyber world today? π¨ #CyberAlerts Horabot Malware Targets Latin America Via Phishing To Steal Banking Credentials Source: Cara Lin via Fortinet Urgent Chrome Update Patches Bug With Public Exploit And Account Takeover Threat Source: Google New GoLang Botnet HTTPBot Uses Precision DDoS To Hit Gaming Tech And Education Source: NSFOCUS π₯ #CyberIncidents Dior Cyberattack Exposes Customer Data Across Asia Including Korea And China Source: Karen Wong via Marketing Interacti...
May 15, 2025β’10 min
π What's trending in cybersecurity today? π¨ #CyberAlerts PHP Object Injection Vulnerability In Uncanny Automator Risks 50000 WordPress Sites Source: IstvΓ‘n MΓ‘rton via Wordfence Fake Solana PyPI Package Snared Developers Stealing Their Code And Crypto Keys Source: Karlo Zanki via ReversingLabs Microsoft Patches Defender Linux Bug That Granted Full SYSTEM Level Privileges Source: Microsoft π₯ #CyberIncidents Alabama Faces Cybersecurity Event Affecting Online Services and Employee Credentials Sou...
May 14, 2025β’10 min
π What's the latest in the cyber world today? π¨ #CyberAlerts Apple Fixes Critical iOS and macOS Flaws Allowing Crashes and Code Execution Source: Apple TΓΌrkiye Hackers Use Output Messenger Zero-Day to Install Golang Backdoors Source: Microsoft Threat Intelligence ASUS Fixes Security Flaws in DriverHub That Could Enable Remote Code Execution Source: ASUS π₯ #CyberIncidents Alleged Steam Data Breach May Expose 89 Million User Records for Sale Source: Lore Apostol via TechNadu Ulhasnagar Municipa...
May 13, 2025β’10 min
π What's happening in cybersecurity today? π¨ #CyberAlerts Microsoft Copilot AI for SharePoint Exposes Sensitive Data Due to Security Flaws Source: Pen Test Partners PupkinStealer Malware Targets Sensitive Data Using Telegram for Exfiltration Source: Cyfirma Fake AI Video Tools Spread Noodlophile Malware Stealing Sensitive Data Source: Shmuel Uzan via Morphisec π₯ #CyberIncidents Mobius Token Smart Contract Exploit on BNB Chain Leads to $2.1M Loss Source: Cybers Alerts via X Cyberattack Disrupt...
May 12, 2025β’9 min
π What are the latest cybersecurity alerts, incidents, and news? π¨ #CyberAlerts FBI Warns Cybercriminals Exploit Outdated Routers for Illicit Proxy Networks Source: FBI Financial Scam on X Uses Fake Ads to Target Cryptocurrency Investors Source: Silent Push FreeDrain Phishing Operation Steals Crypto Funds Using SEO and Cloud Platforms Source: Tom Hegel , Kenneth Kinion and Sreekar Madabushi via SentinelOne and Validin π₯ #CyberIncidents LockBit Ransomware Administration Panel Hacked Leaking Da...
May 09, 2025β’10 min
π What's going on in the cyber world today? π¨ #CyberAlerts Russian COLDRIVER Hackers Target Sensitive Data Using LOSTKEYS Malware Source: Wesley Shields via Google Threat Intelligence Group Cisco Issues Fixes for Critical IOS XE Wireless Controller Vulnerability Source: Cisco CoGUI Phishing Kit Uses Advanced Tactics to Target Consumer and Finance Brands Source: Genina Po, Kyle Cucci, Selena Larson via Proofpoint π₯ #CyberIncidents Masimo Cyberattack Disrupts Manufacturing and Shipping Operatio...
May 08, 2025β’9 min
π What's trending in cybersecurity today? π¨ #CyberAlerts Mirai Botnet Targets Vulnerabilities in GeoVision IoT Devices Exposing Security Risks Source: Kyle Lefton via Akamai Critical Kibana Vulnerability Exposes Users to Arbitrary Code Execution Risks Source: Elastic New OttoKit Vulnerability Exploited to Gain Admin Access on WordPress Sites Source: Chloe Chamberland via Wordfence π₯ #CyberIncidents UK's Legal Aid Agency Hit by Cyber Incident Potentially Compromising Financial Data Source: Hen...
May 07, 2025β’9 min
π What's the latest in the cyber world today? π¨ #CyberAlerts Microsoft Warns Default Kubernetes Helm Chart Configurations Can Expose Data Source: Microsoft Google Patches Critical Android Vulnerability Exploited in the Wild and 45 Other Flaws Source: Android New EDR Bypass Technique Used in Ransomware Attacks Exploits Installer Flaw Source: Stroz Friedberg via AON π₯ #CyberIncidents Hacker Exposes Sensitive Data from TeleMessage Modified Signal and WhatsApp Apps Source: Joseph Cox and Micah Le...
May 06, 2025β’9 min
π What's happening in cybersecurity today? π¨ #CyberAlerts Malicious Go Modules Discovered Targeting Linux Systems with Destructive Payloads Source: Kush Pandya via Socket Magento Extensions Backdoored in Supply Chain Attack Affecting Hundreds of Stores Source: Sannsec SonicBoom Attack Chain Targets Enterprises to Take Over Appliances and Steal Data Source: Sina Kheirkhah via watchTowr Chimera Malware Evolves With AI to Bypass Security and Demand Ransom Source: OSINT Team via Medium Golden Chic...
May 05, 2025β’10 min
π What are the latest cybersecurity alerts, incidents, and news? π¨ #CyberAlerts FBI Warns of Scammers Targeting Employee Self Service Websites to Steal Data Source: FBI Security Flaw in macOS Lets Hackers Escape Sandbox and Access Sensitive Data Source: Microsoft Threat Intelligence Sophisticated PyPI Attack Uses Gmail SMTP to Deploy Malware and Exfiltrate Data Source: Olivia Brown via Socket MintsLoader Delivers GhostWeaver Malware Through Phishing and ClickFix Attacks Source: Insikt Group Lu...
May 02, 2025β’11 min
π What's going on in the cyber world today? π¨ #CyberAlerts WordPress Sites Targeted by Hidden Plugin That Grants Attackers Full Admin Access Source: Marco Wotschka via Wordfence APT Tool Spellbinder Hijacks App Updates Using IPv6 Spoofing to Deploy Malware Source: Facundo MuΓ±oz via ESET Nitrogen Ransomware Targets Organizations Through Malvertising and Cobalt Strike Source: Maurice Fielenbach via Nextron Hive0117 Targets Russian Firms with Using Modified DarkWatchman Malware Source: Gazeta.Ru ...
May 01, 2025β’10 min
π What's trending in cybersecurity today? π¨ #CyberAlerts AirPlay Flaws Could Enable Zero Click Remote Attacks and Device Hijacking Source: Uri Katz, Avi Lumelsky, Gal Elbaz via Oligo AWS Default Roles Exposed Critical Flaws Allowing Full Account Compromise Source: Yakir Kadkoda, Ofek Itach via Aqua Security Gremlin Stealer Malware Advertised on Telegram Steals Sensitive Data from Victims Source: Pranay Kumar Chaparwa, Benjamin Chang via Palo Alto Networksβ Unit 42 Docker Desktop for macOS Flaw...
Apr 30, 2025β’10 min
π What's the latest in the cyber world today? π¨ #CyberAlerts Kali Linux Urge All Users to Install New Signing Key to Fix Update Verification Errors Source: Kali Surge in Attacks on Git Configuration Files Raises Alarm for Organizations Worldwide Source: GreyNoise Critical Linux Kernel Vulnerability Exposes Systems to Privilege Escalation Risks Source: Hoefler Apache Tomcat Vulnerability Can Cause Denial of Service for Affected Systems Source: Apache CISA Flags Actively Exploited Flaws in Commv...
Apr 29, 2025β’10 min
π What's happening in cybersecurity today? π¨ #CyberAlerts AI Vulnerabilities Exposed with Jailbreaks Bypassing Safety Systems in Major Platforms Source: Software Engineering Institute, Carnegie Mellon University iOS Vulnerability Lets Malicious Apps Disable Devices With One Line of Code Source: Guilherme Rambo via Rambo Codes ELENOR-Corp Ransomware Group Targets Healthcare with Mimic 7.5 Variant Source: Michael Gorelik via Morphisec Flaw in SAP NetWeaver Systems Allows File Upload Leading to S...
Apr 28, 2025β’10 min
π What are the latest cybersecurity alerts, incidents, and news? π¨ #CyberAlerts Linux Rootkit Exploits io_uring to Avoid Detection by Runtime Security Tools Source: Amit Schendel via ARMO Security Critical Path Traversal Flaws in Rack Ruby Web Server Expose Sensitive Files Source: OPSWAT Cyberattack Reveals ToyMaker Exploiting Backdoors to Enable Cactus Ransomware Source: Joey Chen, Asheer Malhotra, Ashley Shen, Vitor Ventura, Brandon White via Cisco Talos SessionShark Phishing Kit Bypasses Of...
Apr 25, 2025β’10 min
π What's going on in the cyber world today? π¨ #CyberAlerts GitLab Urges Immediate Updates as XSS and Account Takeover Bugs Threaten Users Source: GitLab Google Forms Used in Surge of Phishing Attacks Targeting User Credentials Source: Phil Muncaster via ESET SonicWall Urges Patch for Critical Vulnerability in SSLVPN Affecting Remote Firewalls Source:SonicWall Russian Hackers Use Social Engineering to Access Microsoft 365 Accounts Source: Charlie Gardner, Josh Duke, Matthew Meltzer, Sean Koesse...
Apr 24, 2025β’10 min
π What's trending in cybersecurity today? π¨ #CyberAlerts Cookie-Bite Attack Bypasses MFA and Grants Persistent Access to Cloud Environments Source: Oren Bahar via Varonis Google Cloud Composer Flaw Lets Attackers Escalate Privileges and Hijack Services Source: Liv Matan via Tenable RustoBot Botnet Uses Rust to Target Routers and Gain Remote Control Access Source: Vincent Li via Fortinet Cryptojacking Malware Targets Docker Environments for Cryptocurrency Rewards Source: Darktrace Ripple's xrpl...
Apr 23, 2025β’10 min
π What's the latest in the cyber world today? π¨ #CyberAlerts Scallywag Ad Fraud Campaign Exploits WordPress Plugins for Billions in Fake Ads Source: Adam Sell via HUMAN Security Speedify VPN Flaw Exposes Users to Root Access and System Compromise on macOS Source: SecureLayer7 SSL.com Vulnerability Allowed Fraudulent TLS Certificates for Major Domains Source: Mozilla WinZip Vulnerability Bypasses Windows Security and Exposes Users to Malicious Code Source: Enis Aksu via GitHub MysterySnail RAT ...
Apr 22, 2025β’10 min
π What's happening in cybersecurity today? π¨ #CyberAlerts FBI Warns of Scammers Impersonating IC3 Employees to Steal Funds from Victims Source: FBI Hackers Use Googleβs DomainKeys Identified Mail Flaw to Trick Users with Phishing Source: Nick Johnson, lead developer of the Ethereum Name Service (ENS) SuperCard X Malware Targets Cardholders with NFC Relay Attacks Source: Cleafy Malicious npm Packages Mimic Telegram Bot to Plant SSH Backdoors on Linux Source: Kush Pandya via Socket ASUS Routers ...
Apr 21, 2025β’11 min
π What are the latest cybersecurity alerts, incidents, and news? π¨ #CyberAlerts Critical Flaw in Erlang OTP SSH Exposes Devices to Remote Code Execution Source: Openwall XorDDoS Malware Targets Docker Servers in Growing Global DDoS Attacks Source: Joey Chen via Cisco Talos CISA Warns of Active Exploitation of NTLM Vulnerability in Windows Systems Source: Cybersecurity Infrastructure Security Agency (CISA) CrazyHunter Group Uses GitHub Tools to Target Taiwanese Critical Sectors Source: Maristel...
Apr 18, 2025β’10 min
π What's going on in the cyber world today? π¨ #CyberAlerts CISA Warns of Oracle Cloud Credential Compromise Risk for Organizations and Users Source: Cybersecurity Infrastructure Security Agency (CISA) Windows Task Scheduler Flaws Let Attackers Gain Privileges and Erase Logs Source: Cymulate Mustang Panda Targets Government Entities with Evolving ToneShell Malware Variants Source: Sudeep Singh via Zscaler Apple Fixes Two Actively Exploited iOS Vulnerabilities in Targeted Attacks Source: Apple A...
Apr 17, 2025β’11 min
π What's trending in cybersecurity today? π¨ #CyberAlerts Chinese Hackers Target Linux and macOS Systems Using SNOWLIGHT and VShell RAT Source: Alessandra Rizzo via Sysdig Hackers Exploit Node.js Vulnerabilities to Deliver Malware and Steal Sensitive Data Source: Microsoft APT29 Deploys GrapeLoader Malware in European Embassy Phishing Campaign Source: Check Point Malicious PyPI Package Hijacks MEXC Cryptocurrency Orders and Steals Tokens Source: Guy Korolevski via JFrog Slow Pisces Targets Cryp...
Apr 16, 2025β’10 min
π What's the latest in the cyber world today? π¨ #CyberAlerts ResolverRAT Targets Healthcare and Pharma Through Phishing and DLL Hijacking Source: Nadav Lorber via Morphisec BPFDoor Malware Uses Reverse Shell to Deepen Access in Compromised Networks Source: Fernando MercΓͺs via Trend Micro Hackers Use Microsoft Teams Chats to Deploy Malware and Maintain Access to PCs Source: ReliaQuest Cheap Android Phones with Malware Steal Crypto via Fake WhatsApp Source: Dr. Web Apache Roller Vulnerability Le...
Apr 15, 2025β’11 min