Category: SecurityWeek

GitHub boosts NPM security
24
Sep
2025

GitHub Boosting Security in Response to NPM Supply Chain Attacks 

In the light of recent supply chain attacks targeting the NPM ecosystem, GitHub will implement tighter authentication and publishing rules…

Record DDoS attack
24
Sep
2025

Record-Breaking DDoS Attack Peaks at 22 Tbps and 10 Bpps

Web performance and security company Cloudflare reported on Tuesday that its systems blocked another record-breaking distributed denial-of-service (DDoS) attack. The…

SonicWall malware
24
Sep
2025

SonicWall Updates SMA 100 Appliances to Remove Overstep Malware

SonicWall has released a fresh software update for its SMA 100 appliances to help users remove the Overstep malware deployed…

Libraesva ESG vulnerability exploited
24
Sep
2025

Libraesva Email Security Gateway Vulnerability Exploited by Nation-State Hackers

Libraesva has addressed a vulnerability in its integrated email security platform that has been exploited in the wild. Tracked as…

SIM Server takedown
24
Sep
2025

A Massive Telecom Threat Was Stopped Right As World Leaders Gathered at UN Headquarters in New York

While close to 150 world leaders prepared to descend on Manhattan for the U.N. General Assembly, the U.S. Secret Service…

Jaguar Land Rover cyberattack
24
Sep
2025

Jaguar Land Rover Says Shutdown Will Continue Until at Least Oct 1 After Cyberattack

Jaguar Land Rover said Tuesday that its production lines, shut down after a cyberattack in August, will remain at a…

Supermicro BMC vulnerability
23
Sep
2025

Patch Bypassed for Supermicro Vulnerability Allowing BMC Hack

Supermicro has patched two BMC vulnerabilities that can be exploited to perform malicious firmware updates on impacted devices. According to…

23
Sep
2025

Patch Bypassed for Supermicro Vulnerability Allowing BMC Hack

Supermicro has patched two BMC vulnerabilities that can be exploited to perform malicious firmware updates on impacted devices. According to…

SolarWinds patches vulnerability
23
Sep
2025

SolarWinds Makes Third Attempt at Patching Exploited Vulnerability

SolarWinds on Tuesday announced a hotfix for a remote code execution (RCE) vulnerability in Web Help Desk, and this is…

DDoS botnet
23
Sep
2025

ShadowV2 DDoS Service Lets Customers Self-Manage Attacks

A newly discovered distributed denial-of-service (DDoS) botnet targets misconfigured Docker containers for infection and offers a new service model where…

MIND Raises $30 Million for Data Loss Prevention
23
Sep
2025

Unit 221B Raises $5 Million for Threat Intel Aiding Hacker Arrests 

Threat intelligence firm Unit 221B has announced raising $5 million in a seed funding round led by J2 Ventures, with…

Microsoft Entra attack
23
Sep
2025

All Microsoft Entra Tenants Were Exposed to Silent Compromise via Invisible Actor Tokens: Researcher

The strength of responsible disclosure is that it can solve problems before they are actioned. The weakness is that it…