News
Entertainment
Science & Technology
Sport
Business & Money
Life
Culture & Art
Hobbies
8 | Follower
Security Affairs
11.05.2025
Law enforcement dismantled a 20-year botnet behind Anyproxy and 5socks cybercriminals services and arrested four suspects.
A data breach at Ascension, caused by a former partner's compromise, exposed the health information of over 430,000 patients.
10.05.2025
Since early 2025, Russia-linked ColdRiver has used LostKeys malware to steal files in espionage attacks on Western governments and orgs.
The FBI warns that attackers are using end-of-life routers to deploy malware and turn them into proxies sold on 5Socks and Anyproxy networks.
A cyberattack briefly disrupted South African Airways' website, app, and systems, but core flight operations remained unaffected.
09.05.2025
Lockbit ransomware group has been compromised, attackers stole and leaked data contained in the backend panel of their dark web site.
Cisco addressed a flaw in its IOS XE Wireless Controller that could enable an unauthenticated, remote attacker to upload arbitrary files.
SonicWall addressed three SMA 100 flaws, including a potential zero-day, that could allow remote code execution if chained.
08.05.2025
Polish police arrested 4 people behind DDoS-for-hire platforms used in global attacks, offering takedowns for as little as €10.
F5 Labs researchers released a PoC tool to find servers vulnerable to the Apache Parquet vulnerability CVE-2025-30065.
CISA, FBI, EPA, and DoE warn of attacks on the U.S. Energy sector carried out by unsophisticated cyber actors targeting ICS/SCADA systems.
NSO Group must pay WhatsApp over $167M in damages for a 2019 hack targeting 1,400+ users, per U.S. jury ruling after a five-year legal battle.
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds GoVision device flaws to its Known Exploited Vulnerabilities catalog.
The Play ransomware gang exploited a high-severity Windows Common Log File System flaw in zero-day attacks to deploy malware.
07.05.2025
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds FreeType flaw to its Known Exploited Vulnerabilities catalog.
New BYOI technique lets attackers bypass SentinelOne EDR,disable protection, and deploy Babuk ransomware by exploiting agent upgrade process
Google addressed 46 Android security vulnerabilities, including one issue that has been exploited in attacks in the wild.
Threat actors began exploiting a Samsung MagicINFO vulnerability just days after PoC code was published, warns Arctic Wolf researchers.
Threat actors launch second wave of attacks on SAP NetWeaver, exploiting webshells from a recent zero-day vulnerability.
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Langflow flaw to its Known Exploited Vulnerabilities catalog.
06.05.2025
Resecurity found a new smishing kit called 'Panda Shop,' mimicking Smishing Triad tactics with improved features and new templates.
Kelly Benefits has determined that the impact of the recently disclosed data breach is much bigger than initially believed.
MintsLoader is a malware loader delivering the GhostWeaver RAT via a multi-stage chain using obfuscated JavaScript and PowerShell.
A hacker stole data from TeleMessage, exposing messages from its modified Signal, WhatsApp, and other apps sold to the U.S. government.
05.05.2025
Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape
A 36-year-old Yemeni man behind Black Kingdom ransomware is indicted in the U.S. for 1,500 attacks on Microsoft Exchange servers.
Researchers found 3 malicious Go modules with hidden code that can download payloads to wipe a Linux system's main disk, making it unbootable.
Supply chain attack via 21 backdoored Magento extensions hit 500–1,000 e-stores, including a $40B multinational.
A new round of the weekly SecurityAffairs newsletter arrived! Every week the best security articles from Security Affairs are free.
04.05.2025
Hackers claim Co-op cyberattack is worse than admitted, with major customer and employee data stolen, and provide proof to the BBC.
U.S. CISA adds Yii Framework and Commvault Command Center flaws to its Known Exploited Vulnerabilities catalog.
Rhysida Ransomware gang claims the hack of the Government of Peru, the gang breached Gob.pe, the Single Digital Platform of the Peruvian State
03.05.2025
Microsoft announced that all new accounts will be "passwordless by default" to increase their level of security.
Harrods confirmed a cyberattack, following similar incidents suffered by M&S and Co-op, making it the third major UK retailer hit in one week
Ireland's Data Protection Commission (DPC) fined TikTok €530M for violating data rules by sending European user data to China.
02.05.2025
U.S. CISA adds SonicWall SMA100 and Apache HTTP Server flaws to its Known Exploited Vulnerabilities catalog.
Pro-Russia hacktivist group NoName057(16) is targeting Dutch organizations with large-scale DDoS attacks, NCSC warns.
FBI shared 42K phishing domains tied to LabHost, a PhaaS platform shut down in April 2024, to boost awareness and help identify compromises.
Canadian electric utility Nova Scotia Power and parent company Emera are facing a cyberattack that disrupted their IT systems and networks.
01.05.2025
SonicWall confirmed that threat actors actively exploited two vulnerabilities impacting its SMA100 Secure Mobile Access (SMA) appliances.