Week in review: Actively exploited Windows SMB flaw, trusted OAuth apps turned into cloud backdoorsHelp Net Security·Oct 26, 00:00 UTC · Oct 26, 2025Malware in the wildCVE-2025-59287CVE-2025-61932CVE-2025-54236+2 CVEs60
CVE-2025-59287: Microsoft fixes critical WSUS flaw under active attackSecurity Affairs·Oct 25, 10:49 UTC · Oct 25, 2025Vulnerability in the wildCVE-2025-59287160
New LTE attacks open users to eavesdropping, fake messages, location spoofingHelp Net Security·Oct 24, 08:58 UTC · Oct 24, 2025Vulnerability55
Stealit Malware spreads via fake game & VPN installers on Mediafire and DiscordSecurity Affairs·Oct 13, 07:26 UTC · Oct 13, 2025Malware55
Leaked Oracle EBS exploit scripts expected to drive new wave of attacks (CVE-2025-61882)Help Net Security·Oct 9, 16:24 UTC · Oct 9, 2025Vulnerability in the wildCVE-2025-6188260
XWorm 6.0 Returns with 35+ Plugins and Enhanced Data Theft CapabilitiesThe Hacker News·Oct 7, 14:26 UTC · Oct 7, 2025Ransomware60
Anthropic touts safety, security improvements in Claude Sonnet 4.5CyberScoop·Sep 30, 16:34 UTC · Sep 30, 2025Vulnerability55
Cyber Threat Detection Vendors Pull Out of MITRE Evaluations TestInfosecurity Magazine·Sep 22, 14:00 UTC · Sep 22, 2025Ransomware60
Critical CVE-2025-5086 in DELMIA Apriso Actively Exploited, CISA Issues WarningThe Hacker News·Sep 12, 12:08 UTC · Sep 12, 2025Vulnerability in the wildCVE-2025-508660
North Korea’s APT37 deploys RokRAT in new phishing campaign against academicsSecurity Affairs·Sep 1, 10:49 UTC · Sep 1, 2025Malware55
Russia-Aligned TAG-70 Targets European Government and Military Mail Servers in New Espionage CampaignRecorded Future·Aug 22, 00:00 UTC · Aug 22, 2025Threat actorCVE-2023-2339760
Chinese APT Group Targets Web Hosting Services in TaiwanInfosecurity Magazine·Aug 18, 13:45 UTC · Aug 18, 2025Threat actor60
Taiwan Web Servers Breached by UAT-7237 Using Customized OpenThe Hacker News·Aug 15, 00:00 UTC · Aug 15, 2025Data breach160
Microsoft Patch Tuesday for August 2025 — Snort rules and prominent vulnerabilitiesCisco Talos·Aug 12, 19:39 UTC · Aug 12, 2025Vulnerability in the wildCVE-2025-50176CVE-2025-50177CVE-2025-53778+10 CVEs60
Nation-state group CL-STA-0969 targeted Southeast Asian telecoms in 2024Security Affairs·Aug 4, 07:29 UTC · Aug 4, 2025Threat actorCVE-2016-5195CVE-2021-4034CVE-2021-315660
Infosec products of the month: July 2025Help Net Security·Aug 1, 00:00 UTC · Aug 1, 2025Policy & legal55
Google Launches DBSC Open Beta in Chrome and Enhances Patch Transparency via Project ZeroThe Hacker News·Jul 31, 17:01 UTC · Jul 31, 2025Vulnerability55
Google Project Zero to publicly announce bugs within a week of reporting themThe Record·Jul 30, 11:52 UTC · Jul 30, 2025Exploit / PoC60
ToolShell: a story of five vulnerabilities in Microsoft SharePointKaspersky Securelist·Jul 25, 07:00 UTC · Jul 25, 2025Vulnerability in the wildCVE-2025-49704CVE-2025-49706CVE-2025-53770+1 CVEs60
SonicWall fixed critical flaw in SMA 100 devices exploited in Overstep malware attacksSecurity Affairs·Jul 24, 13:01 UTC · Jul 24, 2025MalwareCVE-2025-40599CVE-2024-3847560
U.S. CISA urges FCEB agencies to fix two Microsoft SharePoint flaws immediately and added them to its Known Exploited Vulnerabilities catalogSecurity Affairs·Jul 23, 21:59 UTC · Jul 23, 2025Exploit / PoC in the wildCVE-2025-49704CVE-2025-49706CVE-2025-5377060
Ivanti Flaws Exploited to Drop MDifyLoader and Launch InThe Hacker News·Jul 23, 10:41 UTC · Jul 23, 2025MalwareCVE-2025-0282CVE-2025-2245760
SharePoint under fire: new ToolShell attacks target enterprisesSecurity Affairs·Jul 22, 16:13 UTC · Jul 22, 2025Exploit / PoC in the wildCVE-2025-53770CVE-2025-49704CVE-2025-4970660
UNC6148 deploys Overstep malware on SonicWall devices, possibly for ransomware operationsSecurity Affairs·Jul 17, 07:47 UTC · Jul 17, 2025RansomwareCVE-2024-3847560
NETSCOUT Adaptive Threat Analytics improves incident responseHelp Net Security·Jul 15, 00:00 UTC · Jul 15, 2025Industry55
Citrix Bleed 2 Flaw Enables Token Theft; SAP GUI Flaws Risk Sensitive Data ExposureThe Hacker News·Jun 27, 10:45 UTC · Jun 27, 2025Ransomware in the wildCVE-2025-0055CVE-2025-0056CVE-2025-0059+2 CVEs60
SolarWinds: What the Intelligence Tells UsRecorded Future·Jun 27, 00:00 UTC · Jun 27, 2025Exploit / PoC60
Decrement by one to rule them all: AsIO3.sys driver exploitationCisco Talos·Jun 26, 10:00 UTC · Jun 26, 2025Exploit / PoCCVE-2025-1533CVE-2025-346460
Attackers target Zyxel RCE vulnerability CVE-2023Security Affairs·Jun 17, 10:34 UTC · Jun 17, 2025Vulnerability in the wildCVE-2023-2877160
The Secret Defense Strategy of Four Critical Industries Combating Advanced Cyber ThreatsThe Hacker News·Jun 2, 10:55 UTC · Jun 2, 2025Vulnerability55
Friday Squid Blogging: Japanese Divers Video Giant SquidSchneier on Security·May 9, 21:05 UTC · May 9, 2025Policy & legal55
Quantum computer threat spurring quiet overhaul of internet securityCyberScoop·May 1, 20:51 UTC · May 1, 2025Exploit / PoC in the wild60
WooCommerce Users Targeted by Fake Patch Phishing Campaign Deploying Site BackdoorsThe Hacker News·Apr 28, 08:06 UTC · Apr 28, 2025Vulnerability55
JPCERT warns of DslogdRAT malware deployed in Ivanti Connect SecureSecurity Affairs·Apr 25, 17:56 UTC · Apr 25, 2025Malware in the wildCVE-2025-028260
Multi-Stage Malware Attack Uses .JSE and PowerShell to Deploy Agent Tesla and XLoaderThe Hacker News·Apr 18, 12:03 UTC · Apr 18, 2025MalwareCVE-2021-4044960
Valuable insights for making the right cybersecurity decisionsHelp Net Security·Apr 18, 08:59 UTC · Apr 18, 2025Ransomware60
Find out which cybersecurity threats organizations fear the mostHelp Net Security·Apr 18, 08:59 UTC · Apr 18, 2025Ransomware60
Chinese Hackers Breach Asian Telecom, Remain Undetected for Over 4 YearsThe Hacker News·Mar 26, 04:30 UTC · Mar 26, 2025Data breach60
Chinese APT Weaver Ant infiltrated a telco for over four yearsSecurity Affairs·Mar 24, 20:36 UTC · Mar 24, 2025Vulnerability55
Mass exploitation campaign hit 4,000+ ISP networks to deploy info stealers and crypto minersSecurity Affairs·Mar 4, 11:51 UTC · Mar 4, 2025Malware in the wild60