China cyberspies exploiting Ivanti vulnerabilities
23
May
2025

Chinese Spies Exploit Ivanti Vulnerabilities Against Critical Sectors

A China-linked cyberespionage group has been exploiting two recent Ivanti Endpoint Manager Mobile (EPMM) vulnerabilities in attacks targeting critical sectors…

Russian Hacker Indicted Over $24 Million Qakbot Ransomware Operation
23
May
2025

Russian Hacker Indicted Over $24 Million Qakbot Ransomware Operation

The U.S. Department of Justice has unsealed a federal indictment against Rustam Rafailevich Gallyamov, 48, of Moscow, Russia, alleging he…

U.S. Dismantles DanaBot Malware Network, Charges 16 in $50M Global Cybercrime Operation
23
May
2025

U.S. Dismantles DanaBot Malware Network, Charges 16 in $50M Global Cybercrime Operation

The U.S. Department of Justice (DoJ) on Thursday announced the disruption of the online infrastructure associated with DanaBot (aka DanaTools)…

Cetus Protocol, DeFi Hack, DeFi, Decentralized Finance, Cetus
23
May
2025

$223M Exploit Halts Cetus Protocol: Here’s What We Know

In the ever-volatile world of decentralized finance (DeFi), yet another major exploit has shaken investor confidence—this time with a staggering…

Police raid
23
May
2025

Police takes down 300 servers in ransomware supply-chain crackdown

In the latest phase of Operation Endgame, an international law enforcement operation, national authorities from seven countries seized 300 servers…

23
May
2025

New infosec products of the week: May 23, 2025

Here’s a look at the most interesting products from the past week, featuring releases from Anchore, Cyble, Outpost24, and ThreatMark….

CVE-2025-37899
23
May
2025

AI Finds CVE-2025-37899 Zero-Day In Linux SMB Kernel

A zero-day vulnerability in the Linux kernel’s SMB (Server Message Block) implementation, identified as CVE-2025-37899, has been discovered using OpenAI’s…

Chinese threat actors exploited Trimble Cityworks Flaw to breach U.S. local government networks
23
May
2025

Chinese threat actors exploited Trimble Cityworks Flaw to breach U.S. local government networks

Chinese threat actors exploited Trimble Cityworks flaw to breach U.S. local government networks Pierluigi Paganini May 23, 2025 A Chinese…

Global Crackdown Nets 270 Dark Web Vendors in Major Arrests
23
May
2025

Global Crackdown Nets 270 Dark Web Vendors in Major Arrests

A sweeping international crackdown, codenamed Operation RapTor, has dealt a significant blow to the criminal underworld operating on the dark…

23
May
2025

Outsourcing cybersecurity: How SMBs can make smart moves

Outsourcing cybersecurity can be a practical and affordable option. It allows small businesses to get the protection they need without…

GitLab Duo Vulnerability
23
May
2025

GitLab Duo Vulnerability Enabled Attackers to Hijack AI Responses with Hidden Prompts

Cybersecurity researchers have discovered an indirect prompt injection flaw in GitLab’s artificial intelligence (AI) assistant Duo that could have allowed…

Qakbot Malware
23
May
2025

$24M Seized As DOJ Indicts Alleged Qakbot Malware Architect

The U.S. Justice Department has unsealed an indictment against Rustam Rafailevich Gallyamov, a Russian national accused of running a cybercrime…