Critical Vulnerability in Popular Node.js Library Exposes Windows Systems to RCE Attacks
18
Dec
2025

Critical Vulnerability in Popular Node.js Library Exposes Windows Systems to RCE Attacks

A serious security flaw has been discovered in systeminformation, a popular Node.js library used by thousands of developers. The vulnerability,…

New Reports Reveal WAFs Are Ineffective Against Latest React2Shell Exploit
18
Dec
2025

New Reports Reveal WAFs Are Ineffective Against Latest React2Shell Exploit

TEL AVIV, Israel, Dec. 17, 2025 Miggo Security has released a comprehensive benchmark study revealing critical gaps in Web Application Firewall…

Push Security detects and blocks malicious copy-and-paste activity
18
Dec
2025

Push Security detects and blocks malicious copy-and-paste activity

Push Security announced the release of a new feature designed to tackle one of the fastest-growing cyber threats: ClickFix-style attacks….

Kimsuky Spreads DocSwap Android Malware via QR Phishing Posing as Delivery App
18
Dec
2025

Kimsuky Spreads DocSwap Android Malware via QR Phishing Posing as Delivery App

Dec 18, 2025Ravie LakshmananMalware / Mobile Security The North Korean threat actor known as Kimsuky has been linked to a…

Cisco CVE-2025-20393 Cyberattack On Secure Email Appliances
18
Dec
2025

Cisco CVE-2025-20393 Cyberattack On Secure Email Appliances

Cisco has identified an ongoing cyberattack campaign exploiting vulnerabilities in a subset of its appliances running Cisco AsyncOS Software. The attack specifically affects Cisco Secure…

Hackers Exploiting SonicWall SMA1000 0-day Vulnerability to Escalate Privileges
18
Dec
2025

Hackers Exploiting SonicWall SMA1000 0-day Vulnerability to Escalate Privileges

Security researchers have discovered a critical privilege escalation vulnerability in SonicWall’s SMA1000 appliance that attackers are actively exploiting to gain…

Hackers Actively Target Cisco and Palo Alto VPN Gateways to Steal Login Credentials
18
Dec
2025

Hackers Actively Target Cisco and Palo Alto VPN Gateways to Steal Login Credentials

Cybersecurity researchers at GreyNoise have identified a large-scale, coordinated campaign targeting enterprise VPN authentication systems. The attackers are systematically attempting…

report-ad-banner
18
Dec
2025

Fraudulent Call Centres In Ukraine Shut Down

European law enforcement agencies have dismantled a large-scale criminal network operating fraudulent call centres in Ukraine, following a coordinated international…

Microsoft 365 Outage Disrupts Teams, Outlook, and Copilot in Japan and China
18
Dec
2025

Microsoft 365 Outage Disrupts Teams, Outlook, and Copilot in Japan and China

Thousands of users across Japan and China experienced significant disruptions to Microsoft 365 services on Thursday morning due to a…

Should AI access be treated as a civil right across generations?
18
Dec
2025

Should AI access be treated as a civil right across generations?

AI use is expanding faster than the infrastructure that supports it, and that gap is starting to matter for security,…

Why Sunlight by Itself Won't Work Against Nick Fuentes
18
Dec
2025

Why Sunlight by Itself Won’t Work Against Nick Fuentes

Nick Fuentes is becoming not only popular, but pretty close to mainstream. He’s been called lots of things, but he…

Intigriti Bug Bytes #231 - December 2025
18
Dec
2025

Intigriti Bug Bytes #231 – December 2025

Welcome to the latest edition of Bug Bytes! In this month’s issue, we’ll be featuring:  React2Shell scanner (with WAF bypasses) Identifying server…