CISA/NSA Warn of BRICKSTORM Backdoor: China APT Targets VMware and ADFS for Long-Term Espionage Malware CISA/NSA Warn of BRICKSTORM Backdoor: China APT Targets VMware and ADFS for Long-Term Espionage Do Son December 8, 2025 0 Read More Read more about CISA/NSA Warn of BRICKSTORM Backdoor: China APT Targets VMware and ADFS for Long-Term Espionage
High-Severity lz4-java Flaw (CVE-2025-66566) Leaks Uninitialized Memory During Decompression Vulnerability Report High-Severity lz4-java Flaw (CVE-2025-66566) Leaks Uninitialized Memory During Decompression Do Son December 8, 2025 0 Read More Read more about High-Severity lz4-java Flaw (CVE-2025-66566) Leaks Uninitialized Memory During Decompression
Critical Cal.com Flaw (CVE-2025-66489, CVSS 9.9) Allows Authentication Bypass by Submitting Fake TOTP Codes Vulnerability Report Critical Cal.com Flaw (CVE-2025-66489, CVSS 9.9) Allows Authentication Bypass by Submitting Fake TOTP Codes Do Son December 8, 2025 0 Read More Read more about Critical Cal.com Flaw (CVE-2025-66489, CVSS 9.9) Allows Authentication Bypass by Submitting Fake TOTP Codes
High-Severity WatchGuard Flaws Risk VPN DoS and RCE via IKEv2 Memory Corruption Vulnerability Report High-Severity WatchGuard Flaws Risk VPN DoS and RCE via IKEv2 Memory Corruption Do Son December 8, 2025 0 Read More Read more about High-Severity WatchGuard Flaws Risk VPN DoS and RCE via IKEv2 Memory Corruption
Iran-Linked MuddyWater Deploys UDPGangster Backdoor, Using UDP Protocol for Covert C2 Malware Iran-Linked MuddyWater Deploys UDPGangster Backdoor, Using UDP Protocol for Covert C2 Do Son December 8, 2025 0 Read More Read more about Iran-Linked MuddyWater Deploys UDPGangster Backdoor, Using UDP Protocol for Covert C2
Spyware Vendor Intellexa Used 15 Zero-Days Since 2021, Deploying Predator via “smack” iOS Exploit Chain Malware Vulnerability Report Spyware Vendor Intellexa Used 15 Zero-Days Since 2021, Deploying Predator via “smack” iOS Exploit Chain Do Son December 8, 2025 0 Read More Read more about Spyware Vendor Intellexa Used 15 Zero-Days Since 2021, Deploying Predator via “smack” iOS Exploit Chain
urllib3 Flaws Risk Client DoS via Unbounded Decompression and Streaming Resource Exhaustion Vulnerability Report urllib3 Flaws Risk Client DoS via Unbounded Decompression and Streaming Resource Exhaustion Do Son December 8, 2025 0 Read More Read more about urllib3 Flaws Risk Client DoS via Unbounded Decompression and Streaming Resource Exhaustion
ValleyRAT Targets English Job Seekers by Trojanizing Foxit PDF Reader with DLL Sideloading Malware ValleyRAT Targets English Job Seekers by Trojanizing Foxit PDF Reader with DLL Sideloading Do Son December 8, 2025 0 Read More Read more about ValleyRAT Targets English Job Seekers by Trojanizing Foxit PDF Reader with DLL Sideloading
Coordinated Reconnaissance: 7,000+ IPs Target Palo Alto GlobalProtect and SonicWall API Endpoints Cybercriminals Coordinated Reconnaissance: 7,000+ IPs Target Palo Alto GlobalProtect and SonicWall API Endpoints Do Son December 6, 2025 0 Read More Read more about Coordinated Reconnaissance: 7,000+ IPs Target Palo Alto GlobalProtect and SonicWall API Endpoints
Key AI Solutions in Cybersecurity for 2026 Technique Key AI Solutions in Cybersecurity for 2026 Do Son December 6, 2025 Read More Read more about Key AI Solutions in Cybersecurity for 2026
Critical Step CA Flaw (CVE-2025-44005, CVSS 10.0) Allows Unauthenticated Bypass to Issue Fraudulent Certificates Vulnerability Report Critical Step CA Flaw (CVE-2025-44005, CVSS 10.0) Allows Unauthenticated Bypass to Issue Fraudulent Certificates Do Son December 6, 2025 0 Read More Read more about Critical Step CA Flaw (CVE-2025-44005, CVSS 10.0) Allows Unauthenticated Bypass to Issue Fraudulent Certificates
China APT UNC5174 Hijacks Discord API as Covert C2 Channel to Evade Detection and Conduct Espionage Cybercriminals Malware China APT UNC5174 Hijacks Discord API as Covert C2 Channel to Evade Detection and Conduct Espionage Do Son December 6, 2025 0 Read More Read more about China APT UNC5174 Hijacks Discord API as Covert C2 Channel to Evade Detection and Conduct Espionage
Sprocket Security Earns Repeat Recognition in G2’s Winter 2025 Relationship Index for Penetration Testing Press Release Sprocket Security Earns Repeat Recognition in G2’s Winter 2025 Relationship Index for Penetration Testing cybernewswire December 5, 2025 0 Read More Read more about Sprocket Security Earns Repeat Recognition in G2’s Winter 2025 Relationship Index for Penetration Testing
Criminal IP to Host Webinar: Beyond CVEs – From Visibility to Action with ASM Press Release Criminal IP to Host Webinar: Beyond CVEs – From Visibility to Action with ASM cybernewswire December 5, 2025 0 Read More Read more about Criminal IP to Host Webinar: Beyond CVEs – From Visibility to Action with ASM
Honesty is the Best Policy: OpenAI Trains AI Models to ‘Confess’ Errors and Hallucinations Technology Honesty is the Best Policy: OpenAI Trains AI Models to ‘Confess’ Errors and Hallucinations Do Son December 5, 2025 0 Read More Read more about Honesty is the Best Policy: OpenAI Trains AI Models to ‘Confess’ Errors and Hallucinations
New Android Call Scam Protection Pauses Calls for 30 Seconds During Financial App Use Android New Android Call Scam Protection Pauses Calls for 30 Seconds During Financial App Use Do Son December 5, 2025 0 Read More Read more about New Android Call Scam Protection Pauses Calls for 30 Seconds During Financial App Use
Russia Imposes Network-Level Blockade on Apple’s End-to-End Encrypted FaceTime Technology Russia Imposes Network-Level Blockade on Apple’s End-to-End Encrypted FaceTime Do Son December 5, 2025 0 Read More Read more about Russia Imposes Network-Level Blockade on Apple’s End-to-End Encrypted FaceTime
Apache HTTP Server 2.4.66 Fixes SSRF Flaw (CVE-2025-59775) Exposing NTLM Hashes on Windows and suexec Bypass Vulnerability Report Apache HTTP Server 2.4.66 Fixes SSRF Flaw (CVE-2025-59775) Exposing NTLM Hashes on Windows and suexec Bypass Do Son December 5, 2025 0 Read More Read more about Apache HTTP Server 2.4.66 Fixes SSRF Flaw (CVE-2025-59775) Exposing NTLM Hashes on Windows and suexec Bypass
Stealth Cryptominer Uses USB LNK and DLL Side-Loading to Deploy “Smart Mining” Evasion Malware Stealth Cryptominer Uses USB LNK and DLL Side-Loading to Deploy “Smart Mining” Evasion Do Son December 5, 2025 0 Read More Read more about Stealth Cryptominer Uses USB LNK and DLL Side-Loading to Deploy “Smart Mining” Evasion
The PDF Trap: Critical Vulnerability (CVE-2025-66516, CVSS 10.0) Hits Apache Tika Core Vulnerability Report The PDF Trap: Critical Vulnerability (CVE-2025-66516, CVSS 10.0) Hits Apache Tika Core Do Son December 5, 2025 0 Read More Read more about The PDF Trap: Critical Vulnerability (CVE-2025-66516, CVSS 10.0) Hits Apache Tika Core
“React2Shell” Storm: China-Nexus Groups Weaponize Critical React Flaw Hours After Disclosure Vulnerability Report “React2Shell” Storm: China-Nexus Groups Weaponize Critical React Flaw Hours After Disclosure Do Son December 5, 2025 0 Read More Read more about “React2Shell” Storm: China-Nexus Groups Weaponize Critical React Flaw Hours After Disclosure
Operation DUPEHIKE Hits Russian HR: Bonus Lure Delivers DUPERUNNER and Adaptix C2 via Process Injection Malware Operation DUPEHIKE Hits Russian HR: Bonus Lure Delivers DUPERUNNER and Adaptix C2 via Process Injection Do Son December 5, 2025 0 Read More Read more about Operation DUPEHIKE Hits Russian HR: Bonus Lure Delivers DUPERUNNER and Adaptix C2 via Process Injection