Why Executives and Practitioners See Risk Differently
24
Oct
2025

Why Executives and Practitioners See Risk Differently

Oct 24, 2025The Hacker NewsCyber Resilience / Data Protection Does your organization suffer from a cybersecurity perception gap? Findings from…

Drone, Malware, Drone Malware, North Korea, UAV, Operation DreamJob, Operation Dream Job
24
Oct
2025

North Korean Hackers Deploy “Drone” Malware In Targeting Of European UAV Manufacturers

The name said it all: DroneEXEHijackingLoader.dll. That internal file name, buried in malicious code delivered to three European defense contractors,…

Summoning Team won Master of Pwn as Pwn2Own Ireland Rewards $1,024,750
24
Oct
2025

Summoning Team won Master of Pwn as Pwn2Own Ireland Rewards $1,024,750

Summoning Team won Master of Pwn as Pwn2Own Ireland Rewards $1,024,750 Pierluigi Paganini October 24, 2025 The Pwn2Own Ireland hacking…

Nick Carroll
24
Oct
2025

Shifting from reactive to proactive: Cyber resilience amid nation-state espionage

In recent years, the cybersecurity industry has made significant strides in securing endpoints with advanced Endpoint Detection and Response (EDR)…

New PhantomCaptcha RAT Weaponized PDFs to Deliver Malware Using ‘ClickFix’-Style Cloudflare Captcha Pages
24
Oct
2025

New PhantomCaptcha RAT Weaponized PDFs to Deliver Malware Using ‘ClickFix’-Style Cloudflare Captcha Pages

A sophisticated spearphishing campaign has emerged targeting humanitarian organizations and Ukrainian government agencies, leveraging weaponized PDF attachments and fake Cloudflare…

New PDF Tool Detects Malicious Files Using PDF Object Hashing
24
Oct
2025

New PDF Tool Detects Malicious Files Using PDF Object Hashing

Proofpoint has released a new open-source tool called PDF Object Hashing that helps security teams detect and track malicious files…

Microsoft releases urgent fix for actively exploited WSUS vulnerability (CVE-2025-59287)
24
Oct
2025

Microsoft releases urgent fix for actively exploited WSUS vulnerability (CVE-2025-59287)

Microsoft has released an out-of-band security update that “comprehensively address” CVE-2025-59287, a remote code execution vulnerability in the Windows Server…

Microsoft Fixes Critical WSUS RCE Flaw CVE-2025-59287
24
Oct
2025

Microsoft Fixes Critical WSUS RCE Flaw CVE-2025-59287

Microsoft has released an urgent out-of-band security update to address a severe remote code execution (RCE) vulnerability in Windows Server…

Hackers Exploited 73 0-Day Vulnerabilities and Earned $1,024,750
24
Oct
2025

Hackers Exploited 73 0-Day Vulnerabilities and Earned $1,024,750

The hacking community celebrated the end of Pwn2Own Ireland 2025. Researchers demonstrated their skills by identifying 73 unique zero-day vulnerabilities…

IIS Servers Hijacked via Exposed ASP.NET Machine Keys — Malicious Modules Injected in the Wild
24
Oct
2025

IIS Servers Hijacked via Exposed ASP.NET Machine Keys — Malicious Modules Injected in the Wild

Security researchers have uncovered a sophisticated cyberattack campaign that exploited publicly exposed ASP.NET machine keys to compromise hundreds of Internet…

Baohuo Android Malware Hijacks Telegram Accounts via Fake Telegram X App
24
Oct
2025

Baohuo Android Malware Hijacks Telegram Accounts via Fake Telegram X – Hackread – Cybersecurity News, Data Breaches, Tech, AI, Crypto and More

A new Android threat is spreading fast through fake versions of Telegram X, giving attackers complete control over users’ accounts….

3,000 YouTube Videos Exposed as Malware Traps in Massive Ghost Network Operation
24
Oct
2025

3,000 YouTube Videos Exposed as Malware Traps in Massive Ghost Network Operation

Oct 24, 2025Ravie LakshmananMalware / Hacking News A malicious network of YouTube accounts has been observed publishing and promoting videos…