Category: Securityaffairs

U.S. CISA adds Sitecore CMS and XP, and GitHub Action flaws to its Known Exploited Vulnerabilities catalog
27
Mar
2025

U.S. CISA adds Sitecore CMS and XP, and GitHub Action flaws to its Known Exploited Vulnerabilities catalog

U.S. CISA adds Sitecore CMS and XP, and GitHub Action flaws to its Known Exploited Vulnerabilities catalog Pierluigi Paganini March…

Google fixed the first actively exploited Chrome zero-day since the start of the year
27
Mar
2025

Google fixed the first actively exploited Chrome zero-day since the start of the year

Google fixed the first actively exploited Chrome zero-day since the start of the year Pierluigi Paganini March 26, 2025 Google…

BlackLock Ransomware Targeted by Cybersecurity Firm
27
Mar
2025

BlackLock Ransomware Targeted by Cybersecurity Firm

BlackLock Ransomware Targeted by Cybersecurity Firm Pierluigi Paganini March 26, 2025 Resecurity found an LFI flaw in the leak site…

New ReaderUpdate malware variants target macOS users
27
Mar
2025

New ReaderUpdate malware variants target macOS users

New ReaderUpdate malware variants target macOS users Pierluigi Paganini March 26, 2025 New ReaderUpdate malware variants, now written in Crystal,…

Arkana Security group claims the hack of US telco provider WideOpenWest (WOW!)
27
Mar
2025

Arkana Security group claims the hack of US telco provider WideOpenWest (WOW!)

Arkana Security group claims the hack of US telco provider WideOpenWest (WOW!) Pierluigi Paganini March 27, 2025 Arkana Security, a…

Medusa ransomware uses malicious Windows driver ABYSSWORKER to disable security tools
24
Mar
2025

Medusa ransomware uses malicious Windows driver ABYSSWORKER to disable security tools

Medusa ransomware uses malicious Windows driver ABYSSWORKER to disable security tools Pierluigi Paganini March 24, 2025 Medusa ransomware uses a…

Attackers can bypass middleware auth checks by exploiting critical Next.js flaw
24
Mar
2025

Attackers can bypass middleware auth checks by exploiting critical Next.js flaw

Attackers can bypass middleware auth checks by exploiting critical Next.js flaw Pierluigi Paganini March 24, 2025 A critical flaw in…

FBI warns of malicious free online document converters spreading malware
24
Mar
2025

FBI warns of malicious free online document converters spreading malware

FBI warns of malicious free online document converters spreading malware Pierluigi Paganini March 24, 2025 The FBI warns of a…

Cloak ransomware group hacked the Virginia Attorney General’s Office
24
Mar
2025

Cloak ransomware group hacked the Virginia Attorney General’s Office

Cloak ransomware group hacked the Virginia Attorney General’s Office Pierluigi Paganini March 24, 2025 The Cloak ransomware group claims responsibility…

UAT-5918 ATP group targets critical Taiwan
23
Mar
2025

UAT-5918 ATP group targets critical Taiwan

UAT-5918 ATP group targets critical Taiwan Pierluigi Paganini March 23, 2025 Cisco Talos found UAT-5918, active since 2023, using web…

U.S. Treasury removed sanctions against the crypto mixer service Tornado Cash
22
Mar
2025

U.S. Treasury removed sanctions against the crypto mixer service Tornado Cash

U.S. Treasury removed sanctions against the crypto mixer service Tornado Cash Pierluigi Paganini March 22, 2025 The U.S. Treasury is…

Zero-day broker Operation Zero offers up to $4 million for Telegram exploits
22
Mar
2025

Zero-day broker Operation Zero offers up to $4 million for Telegram exploits

Zero-day broker Operation Zero offers up to $4 million for Telegram exploits Pierluigi Paganini March 22, 2025 Russian zero-day broker…