Google fixed the second actively exploited Chrome zero-day since the start of the year
03
Jun
2025

Google fixed the second actively exploited Chrome zero-day since the start of the year

Google fixed the second actively exploited Chrome zero-day since the start of the year Pierluigi Paganini June 03, 2025 Google…

Threat Actors Target PerimeterX CAPTCHA to Automate Microsoft Account Creation
03
Jun
2025

Threat Actors Target PerimeterX CAPTCHA to Automate Microsoft Account Creation

A recent post on an underground forum has brought renewed attention to the escalating arms race between cybercriminals and anti-bot…

Scammers are impersonating Interactive Brokers: Here's what you need to know
03
Jun
2025

Scammers are impersonating Interactive Brokers: Here’s what you need to know

Interactive Brokers is warning customers to be on high alert due to a wave of scams involving fraudsters posing as…

Threat Actor Glossary
03
Jun
2025

Microsoft and CrowdStrike Launch Shared Threat Actor Glossary to Cut Attribution Confusion

Jun 03, 2025Ravie LakshmananThreat Intelligence / Cyber Threats Microsoft and CrowdStrike have announced that they are teaming up to align…

National Grid starts building large-scale substation to support growth of West London datacentres
03
Jun
2025

National Grid starts building large-scale substation to support growth of West London datacentres

The National Grid has confirmed that it is in the process of building its largest new electrical substation in response…

APT threat actor naming
03
Jun
2025

Microsoft, CrowdStrike Lead Effort to Map Threat Actor Names

Microsoft and CrowdStrike announced on Monday that they are leading an industry effort to map threat actor naming, with the…

Certificate Authorities
03
Jun
2025

Google Chrome to Distrust Two Certificate Authorities Over Compliance and Conduct Issues

Jun 03, 2025Ravie LakshmananWeb Security / Digital Identity Google has revealed that it will no longer trust digital certificates issued…

Cryptojacking campaign relies on DevOps tools
03
Jun
2025

Cryptojacking campaign relies on DevOps tools

Cryptojacking campaign relies on DevOps tools Pierluigi Paganini June 03, 2025 A cryptojacking campaign is targeting exposed DevOps servers like…

Multiple HPE StoreOnce Vulnerabilities Let Attackers Execute Malicious Code Remotely
03
Jun
2025

Multiple HPE StoreOnce Vulnerabilities Let Attackers Execute Malicious Code Remotely

Multiple security vulnerabilities in Hewlett-Packard Enterprise (HPE) StoreOnce software platform that could allow remote attackers to execute malicious code, bypass…

SolarWinds Dameware Vulnerability Could Let Attackers Gain Elevated Privileges
03
Jun
2025

SolarWinds Dameware Vulnerability Could Let Attackers Gain Elevated Privileges

June 3, 2025 – SolarWinds Worldwide, LLC has announced the release of Dameware 12.3.2, a critical service update focused on…

Splunk Enterprise XSS Vulnerability Let Attackers Execute Unauthorized JavaScript Code
03
Jun
2025

Splunk Enterprise XSS Vulnerability Let Attackers Execute Unauthorized JavaScript Code

A significant security vulnerability in the Splunk Enterprise platform could allow low-privileged attackers to execute unauthorized JavaScript code through a…

Critical HPE StoreOnce Flaws Allow Remote Code Execution by Attackers
03
Jun
2025

Critical HPE StoreOnce Flaws Allow Remote Code Execution by Attackers

Hewlett-Packard Enterprise (HPE) has issued a critical security bulletin (HPESBST04847 rev. 1) warning users of multiple high-impact vulnerabilities in its…