Critical GitHub Copilot Vulnerability Let Attackers Exfiltrate Source Code From Private Repos
10
Oct
2025

Critical GitHub Copilot Vulnerability Let Attackers Exfiltrate Source Code From Private Repos

A critical vulnerability in GitHub Copilot Chat, rated 9.6 on the CVSS scale, could have allowed attackers to exfiltrate source…

GitHub Copilot Flaw Allows Attackers to Steal Source Code from Private Repositories
10
Oct
2025

GitHub Copilot Flaw Allows Attackers to Steal Source Code from Private Repositories

A critical weakness in GitHub Copilot Chat discovered in June 2025 exposed private source code and secrets to attackers. Rated…

Juniper Networks vulnerabilities
10
Oct
2025

Juniper Networks Patches Critical Junos Space Vulnerabilities

Juniper Networks has announced patches for nearly 220 vulnerabilities in Junos OS, Junos Space, and Security Director, including nine critical-severity…

Gladinet CentreStack And Triofox 0-Day RCE Vulnerability Actively Exploited In Attacks
10
Oct
2025

Gladinet CentreStack And Triofox 0-Day RCE Vulnerability Actively Exploited In Attacks

An active in-the-wild exploitation of a zero-day vulnerability in Gladinet CentreStack and Triofox products. Tracked as CVE-2025-11371, the unauthenticated Local…

LLM-Powered MalTerminal Malware Uses OpenAI GPT-4 to Create Ransomware Code
10
Oct
2025

LLM-Powered MalTerminal Malware Uses OpenAI GPT-4 to Create Ransomware Code

LLM-enabled malware poses new challenges for detection and threat hunting as malicious logic can be generated at runtime rather than…

Attackers are exploiting Gladinet CentreStack, Triofox vulnerability with no patch (CVE-2025-11371)
10
Oct
2025

Attackers are exploiting Gladinet CentreStack, Triofox vulnerability with no patch (CVE-2025-11371)

CVE-2025-11371, a unauthenticated Local File Inclusion vulnerability in Gladinet CentreStack and Triofox file-sharing and remote access platforms, is being exploited…

Gladinet and TrioFox Vulnerability
10
Oct
2025

Active Exploitation Detected in Gladinet and TrioFox Vulnerability

Oct 10, 2025Ravie LakshmananVulnerability / Zero-Day Cybersecurity company Huntress said it has observed active in-the-wild exploitation of an unpatched security…

Ivanti vulnerability
10
Oct
2025

ZDI Drops 13 Unpatched Ivanti Endpoint Manager Vulnerabilities

Trend Micro’s Zero Day Initiative (ZDI) this week published 13 advisories describing unpatched vulnerabilities in Ivanti Endpoint Manager. One of…

SnakeKeylogger via Weaponized E-mails Leverage PowerShell to Exfiltrate Sensitive Data
10
Oct
2025

SnakeKeylogger via Weaponized E-mails Leverage PowerShell to Exfiltrate Sensitive Data

Emerging from a recent wave of targeted campaigns, SnakeKeylogger has surfaced as a potent infostealer that capitalizes on PowerShell and…

North Korean Scammers Are Doing Architectural Design Now
10
Oct
2025

North Korean Scammers Are Doing Architectural Design Now

“The plans are being used and being built,” says Michael “Barni” Barnhart, a leading authority in North Korean hacking and…

Gladinet CentreStack and Triofox 0-Day Flaw Under Active Attack
10
Oct
2025

Gladinet CentreStack and Triofox 0-Day Flaw Under Active Attack

Gladinet CentreStack and Triofox have come under active attack as threat actors exploit an unauthenticated local file inclusion flaw (CVE-2025-11371)….

payroll pirate
10
Oct
2025

Payroll Pirates Are Exploiting Trust, Not Technology

Microsoft Threat Intelligence has revealed a spate of financially motivated cyberattacks against universities across the United States. The threat actor,…