SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 70
30
Nov
2025

SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 73

Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware…

Security Affairs newsletter Round 549 by Pierluigi Paganini – INTERNATIONAL EDITION
30
Nov
2025

Security Affairs newsletter Round 552 by Pierluigi Paganini – INTERNATIONAL EDITION

Security Affairs newsletter Round 552 by Pierluigi Paganini – INTERNATIONAL EDITION Pierluigi Paganini November 30, 2025 A new round of…

Quttera Launches “Evidence-as-Code” API to Automate Security Compliance for SOC 2 and PCI DSS v4.0
30
Nov
2025

Quttera Launches “Evidence-as-Code” API to Automate Security Compliance for SOC 2 and PCI DSS v4.0

Quttera today announced major enhancements to its Web Malware Scanner API that transform static security scanning into automated compliance evidence….

CSP Bypasses: Advanced Exploitation Guide
30
Nov
2025

CSP Bypasses: Advanced Exploitation Guide

Content Security Policies (CSPs) are often deployed as the last line of defense against client-side attacks such as cross-site scripting…

CISA Adds Actively Exploited XSS Bug CVE-2021-26829 in OpenPLC ScadaBR to KEV
30
Nov
2025

CISA Adds Actively Exploited XSS Bug CVE-2021-26829 in OpenPLC ScadaBR to KEV

Nov 30, 2025Ravie LakshmananHacktivism / Vulnerability The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has updated its Known Exploited Vulnerabilities…

Week in review: Fake “Windows Update” fuels malware, Salesforce details Gainsight breach
30
Nov
2025

Week in review: Fake “Windows Update” fuels malware, Salesforce details Gainsight breach

Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Quantum encryption is pushing satellite…

Contagious Interview campaign expands with 197 npm Ppackages spreading new OtterCookie malware
30
Nov
2025

Contagious Interview campaign expands with 197 npm Ppackages spreading new OtterCookie malware

Contagious Interview campaign expands with 197 npm Ppackages spreading new OtterCookie malware Pierluigi Paganini November 30, 2025 North Korea-linked actors…

This month in security with Tony Anscombe – November 2025 edition
29
Nov
2025

This month in security with Tony Anscombe – November 2025 edition

Data exposure by top AI companies, the Akira ransomware haul, Operation Endgame against major malware families, and more of this…

Albiriox Malware Emerges, Targeting Android Users for Full Device Takeover
29
Nov
2025

Albiriox Malware Emerges, Targeting Android Users for Full Device Takeover

A dangerous new Android malware called Albiriox has been discovered by security researchers, posing a serious threat to mobile banking and cryptocurrency…

Mystery OAST Tool Exploits 200 CVEs Using Google Cloud for Large-Scale Attacks
29
Nov
2025

Mystery OAST Tool Exploits 200 CVEs Using Google Cloud for Large-Scale Attacks

A sophisticated threat actor has been operating a private Out-of-band Application Security Testing (OAST) service hosted on Google Cloud infrastructure…

Tomiris Hacker Group Unveils New Tools and Techniques for Global Attacks
29
Nov
2025

Tomiris Hacker Group Unveils New Tools and Techniques for Global Attacks

A new wave of cyberattacks has been discovered targeting government officials and diplomats across Russia and Central Asia. The group,…

Japanese beer giant Asahi says data breach hit 1.5 million people
29
Nov
2025

Japanese beer giant Asahi says data breach hit 1.5 million people

Asahi Group Holdings, Japan’s largest beer producer, has finished the investigation into the September cyberattack and found that the incident has…