APT24 Deploys New BadAudio Malware, Hijacks Legitimate Public Sites to Launch Attacks
21
Nov
2025

APT24 Deploys New BadAudio Malware, Hijacks Legitimate Public Sites to Launch Attacks

The Google Threat Intelligence Group (GTIG) has unveiled a sophisticated three-year cyber espionage campaign orchestrated by APT24, a China-nexus threat…

Years-Long Espionage Hitting Taiwan
21
Nov
2025

APT24 Deploys BADAUDIO in Years-Long Espionage Hitting Taiwan and 1,000+ Domains

A China-nexus threat actor known as APT24 has been observed using a previously undocumented malware dubbed BADAUDIO to establish persistent…

Massive data leak hits Italian railway operator Ferrovie dello Stato via Almaviva hack
21
Nov
2025

Massive data leak hits Italian railway operator Ferrovie dello Stato via Almaviva hack

Massive data leak hits Italian railway operator Ferrovie dello Stato via Almaviva hack Pierluigi Paganini November 21, 2025 Ferrovie dello…

Critical Grafana Vulnerability Let Attackers Escalate Privilege
21
Nov
2025

Critical Grafana Vulnerability Let Attackers Escalate Privilege

Grafana Labs has disclosed a critical security vulnerability affecting Grafana Enterprise that could allow attackers to escalate privileges and impersonate…

Ransomware Attacks Poised to Hit Retailers Hard This Holiday Season
21
Nov
2025

Ransomware Attacks Poised to Hit Retailers Hard This Holiday Season

The holiday shopping rush has always been the retail industry’s busiest and riskiest time of year. As e-commerce traffic, in-store…

Salesforce Gainsight compromise: Early findings and customer guidance
21
Nov
2025

Salesforce Gainsight compromise: Early findings and customer guidance

In the wake of Salesforce’s announcement about “unusual activity involving Gainsight-published applications” and the company’s revocation of access and refresh…

Samsung for Mobile Security
21
Nov
2025

Why IT Admins Choose Samsung for Mobile Security

Nov 21, 2025The Hacker NewsMobile Security / Data Protection Ever wonder how some IT teams keep corporate data safe without…

How to Secure Them This Black Friday — API Security
21
Nov
2025

How to Secure Them This Black Friday — API Security

Can you ever imagine the impact on your business if it went offline on Black Friday or Cyber Monday due…

China-linked APT24 Hackers New BadAudio Compromised Legitimate Public Websites to Attack Users
21
Nov
2025

China-linked APT24 Hackers New BadAudio Compromised Legitimate Public Websites to Attack Users

APT24, a sophisticated cyber espionage group linked to China’s People’s Republic, has launched a relentless three-year campaign delivering BadAudio, a…

Chinese Hackers Exploiting WSUS Remote Code Execution Vulnerability to Deploy ShadowPad Malware
21
Nov
2025

Chinese Hackers Exploiting WSUS Remote Code Execution Vulnerability to Deploy ShadowPad Malware

Security researchers at the AhnLab Security Intelligence Center (ASEC) have uncovered a sophisticated cyberattack campaign targeting Microsoft Windows Server Update…

Robert Rea
21
Nov
2025

Legacy web forms are the weakest link in government data security

Federal, state, and local government agencies face a critical vulnerability hiding in plain sight: outdated web forms collecting citizen data…

Broadcom Allegedly Breached by Clop Ransomware via E-Business Suite 0-Day Hack
21
Nov
2025

Broadcom Allegedly Breached by Clop Ransomware via E-Business Suite 0-Day Hack

The Cl0p ransomware group has claimed responsibility for infiltrating Broadcom’s internal systems as part of an ongoing exploitation campaign targeting…