SonicWall blames state-sponsored hackers for September security breach
23
Nov
2025

SonicWall flags SSLVPN flaw allowing firewall crashes

SonicWall flags SSLVPN flaw allowing firewall crashes Pierluigi Paganini November 23, 2025 SonicWall warns of a high-severity buffer overflow flaw…

Week in review: Stealth-patched FortiWeb vulnerability under active exploitation, Logitech data breach
23
Nov
2025

Week in review: Stealth-patched FortiWeb vulnerability under active exploitation, Logitech data breach

Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: The tech that turns supply…

Microsoft Confirms Windows 11 24H2 Update Broken Multiple Core Features
23
Nov
2025

Microsoft Confirms Windows 11 24H2 Update Broken Multiple Core Features

Microsoft has officially acknowledged a significant disruption affecting Windows 11 version 24H2 users, specifically after installing the cumulative update KB5062553…

Huntress header
22
Nov
2025

Piecing Together the Puzzle: A Qilin Ransomware Investigation

Written by Lindsey O’Donnell-Welch, Ben Folland, Harlan Carvey of Huntress Labs. A big part of a security analyst’s everyday role…

Cox
22
Nov
2025

Cox Enterprises discloses Oracle E-Business Suite data breach

Cox Enterprises is notifying impacted individuals of a data breach that exposed their personal data to hackers who breached the…

WhatsApp
22
Nov
2025

WhatsApp API flaw let researchers scrape 3.5 billion accounts

Researchers compiled a list of 3.5 billion WhatsApp mobile phone numbers and associated personal information by abusing a contact-discovery API…

Metasploit Releases New Exploit for Fresh FortiWeb 0-Day Vulnerabilities
22
Nov
2025

Metasploit Releases New Exploit for Fresh FortiWeb 0-Day Vulnerabilities

Rapid7’s Metasploit team has released a new exploit module targeting critical zero-day vulnerabilities in Fortinet’s FortiWeb web application firewall, chaining…

How APT24 scaled its cyberespionage through supply chain attacks
22
Nov
2025

How APT24 scaled its cyberespionage through supply chain attacks

BadAudio malware: how APT24 scaled its cyberespionage through supply chain attacks Pierluigi Paganini November 22, 2025 APT24 used supply chain…

CrowdStrike Fires Employee for Leaking Internal System Info to Hackers
22
Nov
2025

CrowdStrike Fires Employee for Leaking Internal System Info to Hackers

Cybersecurity giant CrowdStrike has terminated an employee who allegedly shared sensitive internal system information with a notorious hacking collective. The…

Hackers Use Salesforce Gainsight Breach to Access Data from More Than 200 Companies
22
Nov
2025

Hackers Use Salesforce Gainsight Breach to Access Data from More Than 200 Companies

Salesforce has disclosed a significant security incident involving unauthorized access to customer data through compromised Gainsight-published applications. The breach, detected…

CrowdStrike Fires Worker Over Insider Leak to Scattered Lapsus Hunters
22
Nov
2025

CrowdStrike Fires Worker Over Insider Leak to Scattered Lapsus Hunters – Hackread – Cybersecurity News, Data Breaches, Tech, AI, Crypto and More

Leading cybersecurity firm CrowdStrike recently confirmed it fired an employee for sharing confidential internal details with a major hacking group….

China-Linked APT31 Launches Stealthy Cyberattacks on Russian IT Using Cloud Services
22
Nov
2025

China-Linked APT31 Launches Stealthy Cyberattacks on Russian IT Using Cloud Services

Nov 22, 2025Ravie LakshmananCyber Espionage / Cloud Security The China-linked advanced persistent threat (APT) group known as APT31 has been…