Identifying Cyber Attack Patterns Through Threat Actor Infrastructure Analysis
06
Mar
2025

Identifying Cyber Attack Patterns Through Threat Actor Infrastructure Analysis

Kudelski Security Research recently published an article detailing advanced methods for tracking and analyzing threat actor infrastructure, providing valuable insights…

Ethereum
06
Mar
2025

Ethereum private key stealer on PyPI downloaded over 1,000 times

A malicious Python Package Index (PyPI)  package named “set-utils” has been stealing Ethereum private keys through intercepted wallet creation functions…

Misconfigured Apache Airflow Servers Exposes Login Credentials to Hackers
06
Mar
2025

Misconfigured Apache Airflow Servers Exposes Login Credentials to Hackers

A critical security oversight in widely used Apache Airflow instances has exposed credentials for platforms like AWS, Slack, PayPal, and…

An envelope with a question mark hides a snake inside its folds.
06
Mar
2025

Ransomware threat mailed in letters to business owners

Business owners and CEOs across the United States received customized ransomware threats this month from the most unusual of places—letters…

37K+ VMware ESXi instances vulnerable to critical zero-day
06
Mar
2025

37K+ VMware ESXi instances vulnerable to critical zero-day

Dive Brief: Broadcom on Tuesday disclosed three zero-day vulnerabilities that affect multiple VMware products, including ESXi, Workstation and Fusion. The…

VMware
06
Mar
2025

Over 37,000 VMware ESXi servers vulnerable to ongoing attacks

Over 37,000 internet-exposed VMware ESXi instances are vulnerable to CVE-2025-22224, a critical out-of-bounds write flaw that is actively exploited in…

Sitecore 0-Day Vulnerability Let Attackers Execute Remote Code
06
Mar
2025

Sitecore 0-Day Vulnerability Let Attackers Execute Remote Code

A newly disclosed critical vulnerability in Sitecore Experience Platform (CVE-2025-27218) allows unauthenticated attackers to execute arbitrary code on unpatched systems. …

Malware Infects Linux and macOS via Typosquatted Go Packages
06
Mar
2025

Malware Infects Linux and macOS via Typosquatted Go Packages

Socket exposes a typosquatting campaign delivering malware to Linux and macOS systems via malicious Go packages. Discover the tactics used,…

06
Mar
2025

Cybersecurity jobs available right now in the USA: March 6, 2025

CISO Amplitude | USA | Hybrid – View job details As a CISO, you will develop, implement, and maintain a…

European cloud providers unite over data sovereignty-focused API
06
Mar
2025

European cloud providers unite over data sovereignty-focused API

European cloud providers are being urged to adopt a newly created open source infrastructure management application programming interface (API) designed…

Microsoft 365
06
Mar
2025

Microsoft 365 apps will prompt users to back up files in OneDrive

Starting mid-March 2025, Microsoft will start prompting users of its Microsoft 365 apps for Windows to back up their files…

SquareX Unveils Polymorphic Extensions that Morph Infostealers into Any Browser Extension
06
Mar
2025

SquareX Unveils Polymorphic Extensions that Morph Infostealers into Any Browser Extension

With recent attack disclosures like Browser Syncjacking and extension infostealers, browser extensions have become a primary security concern at many…