Treasury Department bank regulator discloses major hack
09
Apr
2025

Treasury Department bank regulator discloses major hack

Attackers gained access to emails containing sensitive government data related to financial institutions in a cyberattack on the Department of…

Treasury bureau notifies Congress that email hack was a ‘major’ cybersecurity incident
09
Apr
2025

Treasury bureau notifies Congress that email hack was a ‘major’ cybersecurity incident

The Office of the Comptroller of the Currency has notified Congress that a February breach of its email system is…

Specops vishing
09
Apr
2025

Who’s calling? The threat of AI-powered vishing attacks

Imagine receiving a call from a high-ranking official, urgently requesting a wire transfer to resolve a national crisis. This was…

Windows Active Directory Domain Vulnerability Let Attackers Escalate Privileges
09
Apr
2025

Windows Active Directory Domain Vulnerability Let Attackers Escalate Privileges

Microsoft has disclosed a significant security vulnerability in Active Directory Domain Services that could allow attackers to elevate their privileges…

New Double-Edged Email Attack Steals Office 365 Credentials and Delivers Malware
09
Apr
2025

New Double-Edged Email Attack Steals Office 365 Credentials and Delivers Malware

Cybersecurity experts have uncovered a sophisticated phishing campaign that employs a double-edged tactic to compromise Office 365 credentials and deliver…

New AkiraBot Abuses OpenAI API, Spammed 400K Sites with Fake SEO
09
Apr
2025

New AkiraBot Abuses OpenAI API to Spam Website Contact Forms

Cybersecurity researchers have identified a new spam campaign driven by ‘AkiraBot,’ an AI-powered bot that targets small business websites with…

Same Origin Policy | Daniel Miessler
09
Apr
2025

Same Origin Policy | Daniel Miessler

One of the more important topics in web application security is the same origin policy. It is a browser-based defense…

Q&A with Crowdsource hacker Gehaxelt
09
Apr
2025

Q&A with Crowdsource hacker Gehaxelt

Detectify Crowdsource hacker Sebastian Neef, otherwise known as Gehaxelt, has an inspirational background in ethical hacking. Driven by curiosity, a…

Windows CLFS zero-day exploited in ransomware attacks
09
Apr
2025

Windows CLFS zero-day exploited in ransomware attacks

Dive Brief: Attackers are exploiting a zero-day vulnerability in the Windows Common Log File System to deploy ransomware against various…

Fortinet
09
Apr
2025

Critical FortiSwitch flaw lets hackers change admin passwords remotely

Fortinet has released security patches for a critical vulnerability in its FortiSwitch devices that can be exploited to change administrator…

VMware Patches Multiple 47 Vulnerabilities VMware Tanzu Greenplum Backup & Components
09
Apr
2025

VMware Patches Multiple 47 Vulnerabilities VMware Tanzu Greenplum Backup & Components

VMware has released critical security updates to address 47 vulnerabilities across multiple VMware Tanzu Greenplum products, including 29 issues in…

Windows Kerberos Vulnerability Enables Security Feature Bypass
09
Apr
2025

Windows Kerberos Vulnerability Enables Security Feature Bypass

Microsoft has disclosed a new security vulnerability in Windows operating systems, tracked as CVE-2025-29809. This flaw, classified with Important severity, impacts the Kerberos…