This month in security with Tony Anscombe – November 2025 edition
29
Nov
2025

This month in security with Tony Anscombe – November 2025 edition

Data exposure by top AI companies, the Akira ransomware haul, Operation Endgame against major malware families, and more of this…

Albiriox Malware Emerges, Targeting Android Users for Full Device Takeover
29
Nov
2025

Albiriox Malware Emerges, Targeting Android Users for Full Device Takeover

A dangerous new Android malware called Albiriox has been discovered by security researchers, posing a serious threat to mobile banking and cryptocurrency…

Mystery OAST Tool Exploits 200 CVEs Using Google Cloud for Large-Scale Attacks
29
Nov
2025

Mystery OAST Tool Exploits 200 CVEs Using Google Cloud for Large-Scale Attacks

A sophisticated threat actor has been operating a private Out-of-band Application Security Testing (OAST) service hosted on Google Cloud infrastructure…

Tomiris Hacker Group Unveils New Tools and Techniques for Global Attacks
29
Nov
2025

Tomiris Hacker Group Unveils New Tools and Techniques for Global Attacks

A new wave of cyberattacks has been discovered targeting government officials and diplomats across Russia and Central Asia. The group,…

Japanese beer giant Asahi says data breach hit 1.5 million people
29
Nov
2025

Japanese beer giant Asahi says data breach hit 1.5 million people

Asahi Group Holdings, Japan’s largest beer producer, has finished the investigation into the September cyberattack and found that the incident has…

HashJack Attack Uses URL ‘#’ to Control AI Browser Behavior
29
Nov
2025

HashJack Attack Uses URL ‘#’ to Control AI Browser Behavior – Hackread – Cybersecurity News, Data Breaches, Tech, AI, Crypto and More

On November 25, 2025, cybersecurity firm Cato Networks revealed HashJack, a new threat where the simple pound sign (#) in…

CISA Warns of OpenPLC ScadaBR cross-site scripting vulnerability Exploited in Attacks
29
Nov
2025

CISA Warns of OpenPLC ScadaBR cross-site scripting vulnerability Exploited in Attacks

The Cybersecurity and Infrastructure Security Agency (CISA) has officially updated its Known Exploited Vulnerabilities (KEV) catalog to include a critical…

The WIRED Guide to Digital Opsec for Teens
29
Nov
2025

The WIRED Guide to Digital Opsec for Teens

Expand your mind, man. Opsec is really all about time travel—taking small, protective steps now before you have a disaster…

GPT
29
Nov
2025

Leak confirms OpenAI is preparing ads on ChatGPT for public roll out

OpenAI is now internally testing ‘ads’ inside ChatGPT that could redefine the web economy. Up until now, the ChatGPT experience…

French Football Federation, FFF, Data Breach
29
Nov
2025

French Football Federation Discloses Data Breach After Attackers Compromise Administrative Software

The French Football Federation confirmed this week that attackers used stolen credentials to breach centralized administrative software managing club memberships…

New Albiriox Malware Attacking Android Users to Take Complete Control of their Device
29
Nov
2025

New Albiriox Malware Attacking Android Users to Take Complete Control of their Device

A sophisticated new Android malware family dubbed “Albiriox” has emerged on the cybercrime landscape, offering advanced remote access capabilities as…

Weaponized Google Meet ClickFix
29
Nov
2025

Beware of Weaponized Google Meet page that uses ClickFix to deliver Malicious Payload

A new, highly sophisticated malware campaign has been identified targeting remote workers and organizations through a fake Google Meet landing…