News
Entertainment
Science & Technology
Sport
Business & Money
Life
Culture & Art
Hobbies
8 | Follower
Security Affairs
15.07.2025
Louis Vuitton data breach affects customers in the UK, South Korea, Turkey, and possibly more countries, with notifications underway.
Experts devised a new hack targeting Kigen eSIM tech, used in over 2B devices, exposing smartphones and IoT users to serious security risks.
Interlock ransomware group deploys new PHP-based RAT via FileFix (a ClickFix variant) in a widespread campaign targeting multiple industries.
A 20-year-old flaw in End-of-Train and Head-of-Train systems could let hackers trigger emergency braking, finally getting proper attention.
FBI seizes multiple piracy sites for Nintendo Switch and PlayStation 4 games, dismantling their infrastructure.
14.07.2025
Russian basketball player arrested in France over alleged ties to a ransomware group accused of targeting US firms and federal institutions.
Hackers exploit critical Wing FTP flaw (CVE-2025-47812) for remote code execution with root/system rights after details leaked on June 30.
PoC exploits released for critical Fortinet FortiWeb flaw allowing pre-auth RCE. Fortinet urges users to patch.
A new round of the weekly Security Affairs newsletter is out! Every week, the best security articles from Security Affairs in your email box
Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape
Spain gives Huawei wiretap contracts, sparking concerns over potential Chinese government access due to Huawei’s links to Beijing.
13.07.2025
Vulnerabilities in McDonald’s McHire chatbot exposed data from 64 million job applicants due to insecure internal APIs.
12.07.2025
U.S. CISA adds U.S. CISA adds Citrix NetScaler ADC and Gateway flaw to its Known Exploited Vulnerabilities catalog.
11.07.2025
Researchers found critical PerfektBlue flaws in OpenSynergy BlueSDK, allowing remote code execution to hack millions of vehicles' systems.
NCA arrested four people in UK, including three teens, over cyberattacks on M&S, Co-op, and Harrods, per its investigation.
Australia’s largest airline Qantas has confirmed that the recent data breach impacted 5.7 million individuals.
10.07.2025
Nippon Steel Solutions reported a data breach caused by hackers exploiting a zero-day vulnerability in their network equipment.
DoNot APT, likely an India-linked cyberespionage group, targets European foreign ministries with LoptikMod malware.
An Iranian ransomware group, Pay2Key.I2P, has intensified attacks on U.S. and Israeli targets, offering affiliates higher profits.
Hackers are abusing the legitimate red teaming tool Shellter to spread stealer malware after a licensed copy was leaked.
09.07.2025
Since March 2025, fake contract emails have been spreading Batavia spyware in targeted attacks on Russian organizations.
Microsoft released Patch Tuesday security updates for July 2025, which addressed 130 flaws, including one a Microsoft SQL Server zero-day.
Italian police arrested a Chinese national linked to Silk Typhoon APT group at Milan's Malpensa Airport on a U.S. warrant.
U.S. CISA adds MRLG, PHPMailer, Rails Ruby on Rails, and Synacor ZCS flaws to its Known Exploited Vulnerabilities catalog.
08.07.2025
Taiwan warns Chinese apps like TikTok and WeChat pose security risks due to excessive data collection and data transfers to China.
Brazil arrests IT worker João Roque for aiding $100M PIX cyber heist, one of Brazil’s biggest banking system breaches.
07.07.2025
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Chromium V8 vulnerability to its Known Exploited Vulnerabilities catalog.
Hunters International ransomware gang announced its shutdown, citing unspecified "recent developments" and acknowledging its impact.
06.07.2025
North Korea-linked hackers use fake Zoom updates to spread macOS NimDoor malware, targeting crypto firms with stealthy backdoors.
05.07.2025
Critical Sudo flaws let local users gain root access on Linux systems, the vulnerabilities affect major Linux distributions.
Google must pay $314M after a California court ruled it misused idle Android users' data. The case ends a class-action suit filed in 2019
04.07.2025
Resecurity found a breach in Brazil’s CIEE One platform, exposing PII and documents, later sold by data broker "888" on the dark web.
A flaw in Catwatchful spyware exposed logins of 62,000 users, turning the spy tool into a data leak, security researcher Eric Daigle revealed.
China-linked group UNC5174 hit French govt, telecom, media, finance and transport sectors using Ivanti CSA zero-days, says France’s ANSSI.
Europol shuts down Archetyp Market, longest-running dark web drug site, the police arrested the admin in Spain, top vendors hit in Sweden.
03.07.2025
Communications technology giant Cisco addressed a static SSH credentials vulnerability in its Unified Communications Manager (Unified CM).