New PassiveNeuron Attacking Servers of High-Profile Organizations to Implant Malware
22
Oct
2025

New PassiveNeuron Attacking Servers of High-Profile Organizations to Implant Malware

A sophisticated cyberespionage campaign dubbed PassiveNeuron has resurfaced with infections targeting government, financial, and industrial organizations across Asia, Africa, and…

Bitter APT Exploiting Old WinRAR Vulnerability in New Backdoor Attacks
22
Oct
2025

Bitter APT Exploiting Old WinRAR Vulnerability in New Backdoor Attacks – Hackread – Cybersecurity News, Data Breaches, Tech, AI, Crypto and More

A cyber-espionage group known as Bitter (APT-Q-37), widely thought to operate from South Asia, is using new, sneaky methods to…

Ukraine Aid Groups Targeted Through Fake Zoom Meetings and Weaponized PDF Files
22
Oct
2025

Ukraine Aid Groups Targeted Through Fake Zoom Meetings and Weaponized PDF Files

Cybersecurity researchers have disclosed details of a coordinated spear-phishing campaign dubbed PhantomCaptcha targeting organizations associated with Ukraine’s war relief efforts…

TP-Link urges immediate updates for Omada Gateways after critical flaws discovery
22
Oct
2025

TP-Link urges immediate updates for Omada Gateways after critical flaws discovery

TP-Link urges immediate updates for Omada Gateways after critical flaws discovery Pierluigi Paganini October 22, 2025 TP-Link warns of critical…

Here's How to Solve It 
22
Oct
2025

Here’s How to Solve It 

QR codes used to be harmless, now they’re one of the sneakiest ways attackers slip past defenses. Quishing, or QR code phishing, hides malicious…

Iran-Linked MuddyWater Targets 100+ Organisations in Global Espionage Campaign
22
Oct
2025

Iran-Linked MuddyWater Targets 100+ Organisations in Global Espionage Campaign

Oct 22, 2025Ravie LakshmananMalware / Cyber Espionage The Iranian nation-state group known as MuddyWater has been attributed to a new…

Vidar Stealer 2.0 Boosts Infostealer's Theft And Evasion
22
Oct
2025

Vidar Stealer 2.0 Boosts Infostealer’s Theft And Evasion

Vidar Stealer 2.0 has been released, and the updated infostealer claims to offer improved performance with advanced credential stealing and…

Box
22
Oct
2025

TARmageddon flaw in abandoned Rust library enables RCE attacks

A high-severity vulnerability in the now-abandoned async-tar Rust library and its forks can be exploited to gain remote code execution…

Critical Vulnerability in MCP Server Platform Exposes 3,000 Servers and Thousands of API Keys
22
Oct
2025

Critical Vulnerability in MCP Server Platform Exposes 3,000 Servers and Thousands of API Keys

A critical vulnerability in Smithery.ai, a popular registry for Model Context Protocol (MCP) servers. This issue could have allowed attackers…

Canada Fines Cybercrime Friendly Cryptomus $176M – Krebs on Security
22
Oct
2025

Canada Fines Cybercrime Friendly Cryptomus $176M – Krebs on Security

Financial regulators in Canada this week levied $176 million in fines against Cryptomus, a digital payments platform that supports dozens…

Greg Otto
22
Oct
2025

Open letter calls for prohibition on superintelligent AI, highlighting growing mainstream concern

An open letter released Wednesday has called for a ban on the development of artificial intelligence systems considered to be…

Critical Argument Injection Vulnerability in Popular AI Agents Let Attackers Execute Remote Code
22
Oct
2025

Critical Argument Injection Vulnerability in Popular AI Agents Let Attackers Execute Remote Code

A critical argument injection flaw in three unnamed popular AI agent platforms enables attackers to bypass human approval safeguards and…