Derek B. Johnson
15
Jul
2025

Waltz brushes off SignalGate questions, points finger at CISA 

Former White House national security adviser Mike Waltz brushed aside criticisms Tuesday that he put sensitive military operations at risk…

Windows Server
15
Jul
2025

Windows KB5064489 emergency update fixes Azure VM launch issues

Microsoft has released an emergency update to fix a bug that prevents Azure virtual machines from launching when the Trusted…

Apache Tomcat Coyote Vulnerability Let Attackers Trigger DoS Attack
15
Jul
2025

Apache Tomcat Coyote Vulnerability Let Attackers Trigger DoS Attack

A newly disclosed flaw in Apache Tomcat’s Coyote engine—tracked as CVE-2025-53506—has surfaced in the latest round of HTTP/2 security advisories….

North Korean Hackers Exploit 67 Malicious npm Packages to Spread XORIndex Malware
15
Jul
2025

North Korean Hackers Exploit 67 Malicious npm Packages to Spread XORIndex Malware

The Socket Threat Research Team has discovered a new software supply chain attack that uses a malware loader called XORIndex…

Authorities Arrested 14 Hackers in Connection With Large-Scale Tax Fraud Operation
15
Jul
2025

Authorities Arrested 14 Hackers in Connection With Large-Scale Tax Fraud Operation

Fourteen individuals have been arrested in a coordinated international operation targeting a sophisticated cybercriminal network responsible for large-scale tax fraud…

GLOBAL GROUP RaaS Adds AI-Powered Negotiation Feature for Ransom Demands
15
Jul
2025

GLOBAL GROUP RaaS Adds AI-Powered Negotiation Feature for Ransom Demands

A newly surfaced Ransomware-as-a-Service operation, dubbed GLOBAL GROUP, has begun deploying an AI‐driven negotiation tool that elevates the psychological pressure…

Current approaches to patching unsustainable, report says
15
Jul
2025

Current approaches to patching unsustainable, report says

Cyber security professionals tasked with vulnerability patch management and roll-out duties say they are struggling to effectively prioritise critical updates…

Dozens of malicious packages on NPM collect host and network data
15
Jul
2025

North Korean XORIndex malware hidden in 67 malicious npm packages

North Korean threat actors planted 67 malicious packages in the Node Package Manager (npm) online repository to deliver a new malware…

AsyncRAT New Forks Uncovered With New Features Ranging From Screamer to a USB Malware Spreader
15
Jul
2025

AsyncRAT New Forks Uncovered With New Features Ranging From Screamer to a USB Malware Spreader

A comprehensive analysis of AsyncRAT’s expanding ecosystem, revealing a labyrinthine network of malware variants that have evolved far beyond the…

Kafbat UI Vulnerabilities Allow Arbitrary Code Execution via JMX Services
15
Jul
2025

Kafbat UI Vulnerabilities Allow Arbitrary Code Execution via JMX Services

A critical security vulnerability has been discovered in Kafbat UI, a popular web-based interface for managing Apache Kafka clusters, allowing…

Attackers Hide JavaScript in SVG Images to Lure Users to Malicious Sites
15
Jul
2025

Attackers Hide JavaScript in SVG Images to Lure Users to Malicious Sites

A new form of cyberattack is on the rise, with hackers now using seemingly harmless Scalable Vector Graphics (SVG) image…

Hyper-Volumetric DDoS Attacks
15
Jul
2025

Hyper-Volumetric DDoS Attacks Reach Record 7.3 Tbps, Targeting Key Global Sectors

Jul 15, 2025Ravie LakshmananBotnet / Network Security Cloudflare on Tuesday said it mitigated 7.3 million distributed denial-of-service (DDoS) attacks in…