How to Know What To Do · Joseph Thacker
25
Apr
2025

How to Know What To Do · Joseph Thacker

This morning I tweeted: “Most people don’t actually know what’s ‘best’ for themselves.” And atomiczsec replied and said “How do…

Craft CMS
25
Apr
2025

Craft CMS RCE exploit chain used in zero-day attacks to steal data

Two vulnerabilities impacting Craft CMS were chained together in zero-day attacks to breach servers and steal data, with exploitation ongoing, according…

Threat Actors Register Over 26,000 Domains Imitating Brands to Deceive Users
25
Apr
2025

Threat Actors Register Over 26,000 Domains Imitating Brands to Deceive Users

Researchers from Unit 42 have uncovered a massive wave of SMS phishing, or “smishing,” activity targeting unsuspecting users. Since the…

House bill seeks better tech to combat financial fraud scams against elderly
25
Apr
2025

House bill seeks better tech to combat financial fraud scams against elderly

A bipartisan trio of House lawmakers is pushing a bill that would give law enforcement more resources to tackle financial…

"Power Parasites" Phishing Campaign Targets Energy Firms and Major Brands
25
Apr
2025

“Power Parasites” Phishing Campaign Targets Energy Firms and Major Brands

Silent Push Threat Analysts have uncovered a widespread phishing and scam operation dubbed “Power Parasites,” targeting prominent energy companies and…

JPCERT warns of DslogdRAT malware deployed in Ivanti Connect Secure
25
Apr
2025

JPCERT warns of DslogdRAT malware deployed in Ivanti Connect Secure

JPCERT warns of DslogdRAT malware deployed in Ivanti Connect Secure Pierluigi Paganini April 25, 2025 Researchers identified a new malware,…

DragonForce and Anubis Ransomware Gangs Launch New Affiliate Programs
25
Apr
2025

DragonForce and Anubis Ransomware Gangs Launch New Affiliate Programs

Secureworks Counter Threat Unit (CTU) researchers have uncovered innovative strategies deployed by the DragonForce and Anubis ransomware operators in 2025….

SAP zero-day vulnerability under widespread active exploitation
25
Apr
2025

SAP zero-day vulnerability under widespread active exploitation

Threat hunters and security researchers have observed widespread exploitation of a zero-day vulnerability affecting SAP NetWeaver systems. The unrestricted file…

The Story of Jericho Security
25
Apr
2025

The Story of Jericho Security

Redefining Cybersecurity for the AI Era With the launch of ChatGPT, everything changed – overnight, AI became democratized. But while…

Russian Hackers Attempt to Sabotage Digital Control Systems of Dutch Public Service
25
Apr
2025

Russian Hackers Attempt to Sabotage Digital Control Systems of Dutch Public Service

The Dutch Defense Ministry has revealed that critical infrastructure, democratic processes, and North Sea installations in the Netherlands have become…

geo-guessing header image
25
Apr
2025

AI is getting “creepy good” at geo-guessing

If you are worried about revealing your exact location—or if you maybe even fib about it at times—there are some…

SAP NetWeaver zero-day allegedly exploited by an initial access broker
25
Apr
2025

SAP NetWeaver zero-day allegedly exploited by an initial access broker

SAP NetWeaver zero-day allegedly exploited by an initial access broker Pierluigi Paganini April 25, 2025 A zero-day in SAP NetWeaver…