Category: Securityaffairs

DragonForce operator chained SimpleHelp flaws to target an MSP and its customers
28
Sep
2025

Ohio’s Union County suffers ransomware attack impacting 45,000 people

Ohio’s Union County suffers ransomware attack impacting 45,000 people Pierluigi Paganini September 27, 2025 A ransomware attack resulted in the…

ForcedLeak flaw in Salesforce Agentforce exposes CRM data via Prompt Injection
27
Sep
2025

ForcedLeak flaw in Salesforce Agentforce exposes CRM data via Prompt Injection

ForcedLeak flaw in Salesforce Agentforce exposes CRM data via Prompt Injection Pierluigi Paganini September 27, 2025 Researchers disclosed a critical…

Microsoft uncovers new variant of XCSSET macOS malware in targeted attacks
26
Sep
2025

Microsoft uncovers new variant of XCSSET macOS malware in targeted attacks

Microsoft uncovers new variant of XCSSET macOS malware in targeted attacks Pierluigi Paganini September 26, 2025 Microsoft Threat Intelligence researchers…

Fortra addressed a maximum severity flaw in GoAnywhere MFT software
26
Sep
2025

Hackers exploit Fortra GoAnywhere flaw before public alert

Hackers exploit Fortra GoAnywhere flaw before public alert Pierluigi Paganini September 26, 2025 watchTowr Labs says hackers exploited the Fortra…

UK NCSC warns that attackers exploited Cisco firewall zero-days to deploy RayInitiator and LINE VIPER malware
26
Sep
2025

UK NCSC warns that attackers exploited Cisco firewall zero-days to deploy RayInitiator and LINE VIPER malware

UK NCSC warns that attackers exploited Cisco firewall zero-days to deploy RayInitiator and LINE VIPER malware Pierluigi Paganini September 26,…

Dutch intelligence warns that China-linked APT Salt Typhoon targeted local critical infrastructure
26
Sep
2025

Google warns of Brickstorm backdoor targeting U.S. legal and tech sectors

Google warns of Brickstorm backdoor targeting U.S. legal and tech sectors Pierluigi Paganini September 26, 2025 China-linked actors used Brickstorm…

U.S. CISA adds CISCO Secure Firewall ASA and Secure FTD flaws to its Known Exploited Vulnerabilities catalog
25
Sep
2025

U.S. CISA adds CISCO Secure Firewall ASA and Secure FTD flaws to its Known Exploited Vulnerabilities catalog

U.S. CISA adds CISCO Secure Firewall ASA and Secure FTD flaws to its Known Exploited Vulnerabilities catalog Pierluigi Paganini September…

Operation HAECHI VI seized $439M from global cybercrime rings
25
Sep
2025

Operation HAECHI VI seized $439M from global cybercrime rings

Operation HAECHI VI seized $439M from global cybercrime rings Pierluigi Paganini September 25, 2025 Interpol announced that Operation HAECHI VI…

Volvo North America disclosed a data breach following a ransomware attack on IT provider Miljödata
25
Sep
2025

Volvo North America disclosed a data breach following a ransomware attack on IT provider Miljödata

Volvo North America disclosed a data breach following a ransomware attack on IT provider Miljödata Pierluigi Paganini September 25, 2025…

Cisco confirms active exploitation of ISE and ISE-PIC flaws
25
Sep
2025

Cisco fixed actively exploited zero-day in Cisco IOS and IOS XE software

Cisco fixed actively exploited zero-day in Cisco IOS and IOS XE software Pierluigi Paganini September 25, 2025 Cisco addressed a…

Nation-State hackers exploit Libraesva Email Gateway flaw
24
Sep
2025

Nation-State hackers exploit Libraesva Email Gateway flaw

Pierluigi Paganini September 24, 2025 State-sponsored hackers exploited a vulnerability, tracked as CVE-2025-59689, in Libraesva Email Gateway via malicious attachments….

SolarWinds fixed a critical RCE flaw in its Web Help Desk software
24
Sep
2025

SolarWinds fixed a critical RCE flaw in its Web Help Desk software

SolarWinds fixed a critical RCE flaw in its Web Help Desk software Pierluigi Paganini September 24, 2025 SolarWinds fixed a…