Hackers Using Evilginx to Steal Session Cookies and Bypass Multi-Factor Authentication Tokens
04
Dec
2025

Hackers Using Evilginx to Steal Session Cookies and Bypass Multi-Factor Authentication Tokens

A sophisticated phishing toolkit known as Evilginx is empowering attackers to execute advanced attacker-in-the-middle (AiTM) campaigns with alarming success. These…

Fujitsu police contract ‘complicates’ Post Office investigation
04
Dec
2025

Fujitsu police contract ‘complicates’ Post Office investigation

The Metropolitan Police officer leading the national investigation into crimes committed during the Post Office scandal said Fujitsu’s contact to…

Vim for Windows Vulnerability Let Attackers Execute Arbitrary Code
04
Dec
2025

Vim for Windows Vulnerability Let Attackers Execute Arbitrary Code

A critical security vulnerability has been discovered in Vim for Windows that could allow attackers to execute malicious code on…

GoldFactory Hits Southeast Asia with Modified Banking Apps Driving 11,000+ Infections
04
Dec
2025

GoldFactory Hits Southeast Asia with Modified Banking Apps Driving 11,000+ Infections

Cybercriminals associated with a financially motivated group known as GoldFactory have been observed staging a fresh round of attacks targeting…

Cloudflare mitigates record 29.7 Tbps DDoS attack by the AISURU botnet
04
Dec
2025

Cloudflare mitigates record 29.7 Tbps DDoS attack by the AISURU botnet

Cloudflare mitigates record 29.7 Tbps DDoS attack by the AISURU botnet Pierluigi Paganini December 04, 2025 Cloudflare blocked a record…

Hackers Leverage Velociraptor DFIR Tool for Stealthy C2 & Ransomware Delivery
04
Dec
2025

Hackers Leverage Velociraptor DFIR Tool for Stealthy C2 & Ransomware Delivery

Legitimate administrative tools are increasingly becoming the weapon of choice for sophisticated threat actors aiming to blend in with normal…

Hackers Actively Exploiting Worpress Plugin Vulnerability to Execute Remote Code
04
Dec
2025

Hackers Actively Exploiting Worpress Plugin Vulnerability to Execute Remote Code

A critical remote code execution vulnerability in the Sneeit Framework WordPress plugin has come under active exploitation by threat actors,…

A day in the life of the internet tells a bigger story
04
Dec
2025

A day in the life of the internet tells a bigger story

On any given day, the internet carries countless signals that hint at how networks behave behind the scenes. Researchers from…

CISA Releases Five ICS Advisories Covering Vulnerabilities, and Exploits Surrounding ICS
04
Dec
2025

CISA Releases Five ICS Advisories Covering Vulnerabilities, and Exploits Surrounding ICS

The Cybersecurity and Infrastructure Security Agency released five critical Industrial Control Systems advisories on December 2, 2025, addressing significant security…

SandboxAQ launches AI-SPM platform to expose shadow AI risks
04
Dec
2025

SandboxAQ launches AI-SPM platform to expose shadow AI risks

SandboxAQ announced an AI-SPM offering that provides visibility into where AI is being used in organizations’ tech stacks and evaluates…

Record 29.7 Tbps DDoS Attack Linked to AISURU Botnet with up to 4 Million Infected Hosts
04
Dec
2025

Record 29.7 Tbps DDoS Attack Linked to AISURU Botnet with up to 4 Million Infected Hosts

Dec 04, 2025Ravie LakshmananDDoS Attacks / Network Security Cloudflare on Wednesday said it detected and mitigated the largest ever distributed…

New Scanner Tool for Detecting Exposed ReactJS and Next.js RSC Endpoints (CVE-2025-55182)
04
Dec
2025

New Scanner Tool for Detecting Exposed ReactJS and Next.js RSC Endpoints (CVE-2025-55182)

A new security assessment tool has been released to help researchers and administrators identify React Server Components (RSC) endpoints potentially…