Category: SecurityWeek

Cybersecurity News tidbits
23
May
2025

In Other News: Volkswagen App Hacked, DR32 Sentenced, New OT Security Solution

SecurityWeek’s cybersecurity news roundup provides a concise compilation of noteworthy stories that might have slipped under the radar. We provide…

Signal adds screenshot-blocker
23
May
2025

Signal Adds Screenshot-Blocker to Thwart ‘Windows Recall’ 

Signal on Friday shipped a new feature that automatically blocks all screenshots of its chat window, positioning it as a…

Russian hacker charged
23
May
2025

Russian Qakbot Gang Leader Indicted in US

A Russian national has been indicted in the US for leading the cybercrime group behind the infamous Qakbot malware and…

CISA warning
23
May
2025

Companies Warned of Commvault Vulnerability Exploitation

The ongoing exploitation of a Commvault vulnerability that was targeted as a zero-day is likely part of a broader campaign…

Cityworks Zero-Day Exploited by Chinese Hackers in US Local Government Attacks
23
May
2025

Cityworks Zero-Day Exploited by Chinese Hackers in US Local Government Attacks

A China-linked threat actor exploited a Trimble Cityworks zero-day vulnerability in attacks against local government entities in the US, Cisco…

DanaBot botnet disrupted
23
May
2025

DanaBot Botnet Disrupted, 16 Suspects Charged

The notorious DanaBot botnet has been severely disrupted as part of an international law enforcement operation, which also involved charges…

China cyberspies exploiting Ivanti vulnerabilities
23
May
2025

Chinese Spies Exploit Ivanti Vulnerabilities Against Critical Sectors

A China-linked cyberespionage group has been exploiting two recent Ivanti Endpoint Manager Mobile (EPMM) vulnerabilities in attacks targeting critical sectors…

Microsoft passwordless authentication
22
May
2025

Akamai, Microsoft Disagree on Severity of Unpatched ‘BadSuccessor’ Flaw

Akamai’s security team kicked off a new spat in the vulnerability disclosure world by publishing full exploitation details for “BadSuccessor,”…

Security Theater or Real Defense? The KPIs That Tell the Truth
22
May
2025

Security Theater or Real Defense? The KPIs That Tell the Truth

A critical step in maturing any cybersecurity program is the ability to measure and report on its performance. Yet measuring…

Healthcare data breach
22
May
2025

Marlboro-Chesterfield Pathology Data Breach Impacts 235,000 People

Marlboro-Chesterfield Pathology (MCP), a full service anatomic pathology lab in North Carolina, was recently targeted in a ransomware attack that…

Marks&Spencer cyberattack
22
May
2025

Marks & Spencer Expects Ransomware Attack to Cost $400 Million

UK retailer Marks & Spencer (MKS.L) has shared another update on the impact of the recent cyberattack, and the company…

Taming the Hacker Storm: Why Millions in Cybersecurity Spending Isn't Enough
22
May
2025

Taming the Hacker Storm: Why Millions in Cybersecurity Spending Isn’t Enough

According to the AV-TEST Institute, more than 450,000 new malicious applications are found every day, illustrating the rapid rate of…