Author: Cybernoz

Libraesva ESG vulnerability exploited
24
Sep
2025

Libraesva Email Security Gateway Vulnerability Exploited by Nation-State Hackers

Libraesva has addressed a vulnerability in its integrated email security platform that has been exploited in the wild. Tracked as…

CISA Warns of Shai-Hulud Self-Replicating Worm Compromised 500+ Packages in npm Registry
24
Sep
2025

CISA Warns of Shai-Hulud Self-Replicating Worm Compromised 500+ Packages in npm Registry

CISA has issued an urgent security Alert in response to a large-scale software supply chain attack on npmjs.com, the world’s…

Hackers Exploit Pandoc CVE-2025-51591 to Target AWS IMDS and Steal EC2 IAM Credentials
24
Sep
2025

Hackers Exploit Pandoc CVE-2025-51591 to Target AWS IMDS and Steal EC2 IAM Credentials

Cloud security company Wiz has revealed that it uncovered in-the-wild exploitation of a security flaw in a Linux utility called…

Jaguar Land Rover Factory Reopening Delayed After Cyber Attack
24
Sep
2025

Jaguar Land Rover Factory Reopening Delayed After Cyber Attack

Jaguar Land Rover (JLR) has announced a further delay to the reopening of its production lines following a sophisticated cyber…

APIs and hardware are under attack, and the numbers don't look good
24
Sep
2025

APIs and hardware are under attack, and the numbers don’t look good

Attackers have a new favorite playground, and it’s not where many security teams are looking. According to fresh data from…

Libraesva Email Security Gateway Vulnerability
24
Sep
2025

State-Sponsored Hackers Exploiting Libraesva Email Security Gateway Vulnerability

Sep 24, 2025Ravie LakshmananVulnerability / Email Security Libraesva has released a security update to address a vulnerability in its Email…

CISA Details That Hackers Gained Access to a U.S. Federal Agency Network Via GeoServer RCE Vulnerability
24
Sep
2025

CISA Details That Hackers Gained Access to a U.S. Federal Agency Network Via GeoServer RCE Vulnerability

CISA has released a comprehensive cybersecurity advisory detailing how threat actors successfully compromised a U.S. federal civilian executive branch agency’s…

ShadowV2 Botnet Infects AWS Docker Containers to Launch DDoS Campaign
24
Sep
2025

ShadowV2 Botnet Infects AWS Docker Containers to Launch DDoS Campaign

Darktrace’s latest investigation uncovered a novel campaign that blends traditional malware with modern DevOps technology. At the center of this…

Building a stronger SOC through AI augmentation
24
Sep
2025

Building a stronger SOC through AI augmentation

In this Help Net Security interview, Tim Bramble, Director of Threat Detection and Response at OpenText, discusses how SOC teams…

Cloudflare mitigates largest-ever DDoS attack at 22.2 Tbps
24
Sep
2025

Cloudflare mitigates largest-ever DDoS attack at 22.2 Tbps

Cloudflare mitigates largest-ever DDoS attack at 22.2 Tbps Pierluigi Paganini September 24, 2025 Cloudflare blocked a new record-breaking DDoS attack…

New “YiBackdoor” Malware Lets Hackers Run Commands and Steal Data
24
Sep
2025

New “YiBackdoor” Malware Lets Hackers Run Commands and Steal Data

Cybersecurity researchers at Zscaler ThreatLabz have identified a sophisticated new malware strain dubbed YiBackdoor, first detected in June 2025. This…

Nosey Parker: Open-source tool finds sensitive information in textual data and Git history
24
Sep
2025

Nosey Parker: Open-source tool finds sensitive information in textual data and Git history

Nosey Parker is an open-source command-line tool that helps find secrets and sensitive information hidden in text files. It works…