malicious QR codes
03
Apr
2025

QR codes sent in attachments are the new favorite for phishers

Recently we’ve been seeing quite a few phishing campaigns using QR codes in email attachments. The lure and the targets…

Europol-led operation shuts down CSAM platform Kidflix, leading to 79 arrests
03
Apr
2025

Europol-led operation shuts down CSAM platform Kidflix, leading to 79 arrests

Europol-led operation shuts down CSAM platform Kidflix, leading to 79 arrests Pierluigi Paganini April 03, 2025 An international law enforcement…

Giving Windows Mobile 5.0 A Try
03
Apr
2025

Giving Windows Mobile 5.0 A Try

So I got another phone — well, a Windows device (not quite the same thing exactly). It’s heresy, to be…

Cisco confirms cyberattacks on Smart Licensing Utility flaw
03
Apr
2025

Cisco confirms cyberattacks on Smart Licensing Utility flaw

Dive Brief: CISA earlier this week added CVE-2024-20439, a critical flaw in the Cisco Smart Licensing Utility, to its known…

Oracle Health
03
Apr
2025

Oracle privately confirms Cloud breach to customers

Oracle has finally acknowledged to some customers that attackers have stolen old client credentials after breaching a “legacy environment” last…

SonicWall Firewall Vulnerability Enables Unauthorized Access
03
Apr
2025

SonicWall Firewall Vulnerability Enables Unauthorized Access

Researchers from Bishop Fox have successfully exploited CVE-2024-53704, an authentication bypass vulnerability that affects SonicWall firewalls. This critical flaw allows remote…

Taking a ‘good enough’ approach with cloud security isn't enough
03
Apr
2025

Taking a ‘good enough’ approach with cloud security isn’t enough

Thanks to cloud computing, organisations of all shapes and sizes have benefitted from the flexibility of IT capacity without the…

Linux DHCP | Daniel Miessler
03
Apr
2025

Linux DHCP | Daniel Miessler

If you’re ever trying to get dhcp to work in Linux, and the package you installed also installed a service…

[tl;dr sec] #273 - Model Context Protocol + Security Tools, Compromising CodeQL, Red Teaming with ServiceNow
03
Apr
2025

[tl;dr sec] #273 – Model Context Protocol + Security Tools, Compromising CodeQL, Red Teaming with ServiceNow

MCPs for Ghidra, Semgrep, and SecOps, a CodeQL supply chain issue, using ServiceNow offensively I hope you’ve been doing well!…

GitHub
03
Apr
2025

Recent GitHub supply chain attack traced to leaked SpotBugs token

A cascading supply chain attack on GitHub that targeted Coinbase in March has now been traced back to a single…

DarkCloud Stealer Uses Weaponized .TAR Archives to Target Organizations and Steal Passwords
03
Apr
2025

DarkCloud Stealer Uses Weaponized .TAR Archives to Target Organizations and Steal Passwords

A recent cyberattack campaign leveraging the DarkCloud stealer has been identified, targeting Spanish companies and local offices of international organizations…

Secure Ideas Achieves CREST Accreditation and CMMC Level 1 Compliance
03
Apr
2025

Secure Ideas Achieves CREST Accreditation and CMMC Level 1 Compliance

Jacksonville, United States, April 3rd, 2025, CyberNewsWire Secure Ideas, a premier provider of penetration testing and security consulting services, proudly…