Category: CyberSecurityNews

SAP Security Patch Day September 2025
09
Sep
2025

SAP Security Patch Day September 2025

As part of its scheduled security maintenance, SAP released its September 2025 Patch Day notes, addressing a total of 21…

New APT37 Attacking Windows Machines With New Rust and Python Based Malware
09
Sep
2025

New APT37 Attacking Windows Machines With New Rust and Python Based Malware

APT37, the North Korean-aligned threat actor also known as ScarCruft, Ruby Sleet, and Velvet Chollima, has expanded its arsenal with…

Chinese Salt Typhoon and UNC4841 Hackers Teamed Up to Attack Government and Corporate Infrastructure
09
Sep
2025

Chinese Salt Typhoon and UNC4841 Hackers Teamed Up to Attack Government and Corporate Infrastructure

Cybersecurity researchers began tracking a sophisticated campaign in the closing months of 2024, targeting both government and corporate networks across…

New Technique Uncovered To Exploit Linux Kernel Use-After-Free Vulnerability
09
Sep
2025

New Technique Uncovered To Exploit Linux Kernel Use-After-Free Vulnerability

A new technique to exploit a complex use-after-free (UAF) vulnerability in the Linux kernel successfully bypasses modern security mitigations to gain root…

Hackers Accessed Email Account Contains Valid Credentials
09
Sep
2025

Hackers Accessed Email Account Contains Valid Credentials

Elastic has disclosed a security incident stemming from a third-party breach at Salesloft Drift, which resulted in unauthorized access to…

AI-powered Email Attack Tool Used By Hackers To Launch Massive Phishing Attack
09
Sep
2025

AI-powered Email Attack Tool Used By Hackers To Launch Massive Phishing Attack

A sophisticated new cybercrime toolkit named SpamGPT is enabling hackers to launch massive and highly effective phishing campaigns by combining…

Hackers Accessed Customer Data From Salesforce
09
Sep
2025

Hackers Accessed Customer Data From Salesforce

Dynatrace has confirmed it was impacted by a third-party data breach originating from the Salesloft Drift application, resulting in unauthorized…

Hackers Hijacked 18 Very Popular npm Packages With 2 Billion Weekly Downloads
09
Sep
2025

Hackers Hijacked 18 Very Popular npm Packages With 2 Billion Weekly Downloads

In the largest supply chain attack, hackers compromised 18 popular npm packages, which together account for over two billion downloads…

PgAdmin Vulnerability Lets Attackers Gain Unauthorised Account Access
08
Sep
2025

PgAdmin Vulnerability Lets Attackers Gain Unauthorised Account Access

A significant security flaw has been discovered in pgAdmin, the widely used open-source administration and development platform for PostgreSQL databases….

Windows Defender Vulnerability Allows Service Hijacking and Disablement via Symbolic Link Attack
08
Sep
2025

Windows Defender Vulnerability Allows Service Hijacking and Disablement via Symbolic Link Attack

A severe vulnerability in Windows Defender’s update process allows attackers with administrator privileges to disable the security service and manipulate…

Progress OpenEdge AdminServer Vulnerability Let Attackers Execute Remote Code
08
Sep
2025

Progress OpenEdge AdminServer Vulnerability Let Attackers Execute Remote Code

A critical security vulnerability has been discovered in Progress OpenEdge, a platform for developing and deploying business applications. The flaw,…

Qualys Confirms Data Breach - Hackers Accessed Salesforce Data in Supply Chain Attack
08
Sep
2025

Qualys Confirms Data Breach – Hackers Accessed Salesforce Data in Supply Chain Attack

Qualys has confirmed it was impacted by a widespread supply chain attack that targeted the Salesloft Drift marketing platform, resulting…