ERMAC Android malware source code leak exposes banking trojan infrastructure
10
Oct
2025

New Android spyware ClayRat imitates WhatsApp, TikTok, YouTube

A new Android spyware called ClayRat is luring potential victims by posing as popular apps and services like WhatsApp, Google…

Hackers Actively Exploiting WordPress Plugin Vulnerability to Gain Admin Access
10
Oct
2025

Hackers Actively Exploiting WordPress Plugin Vulnerability to Gain Admin Access

Over the past two months, threat actors have weaponized a critical authentication bypass flaw in the Service Finder Bookings WordPress…

Cybersecurity Is Now a Regulatory Minefield: What CISOs Must Know in 2025
10
Oct
2025

Cybersecurity Is Now a Regulatory Minefield: What CISOs Must Know in 2025

There has been an increase in the advent of cyberattacks like never before. The companies are adopting cloud computing, AI-driven…

SonicWall Says All Firewall Backups Were Accessed by Hackers
10
Oct
2025

SonicWall Says Hackers Breached All of Its Firewall Backups

In September 2025, SonicWall reported a data breach of its cloud backup service, stating that fewer than 5% of its…

Matt Kapko
09
Oct
2025

SonicWall admits attacker accessed all customer firewall configurations stored on cloud portal

A brute-force attack exposed firewall configuration files of every SonicWall customer who used the company’s cloud backup service, the besieged…

Hackers now use Velociraptor DFIR tool in ransomware attacks
09
Oct
2025

Hackers now use Velociraptor DFIR tool in ransomware attacks

Threat actors have started to use the Velociraptor digital forensics and incident response (DFIR) tool in attacks that deploy LockBit…

New Quishing Attack With Weaponized QR Code Targeting Microsoft Users
09
Oct
2025

New Quishing Attack With Weaponized QR Code Targeting Microsoft Users

Microsoft users are facing a novel quishing campaign that leverages weaponized QR codes embedded in malicious emails. Emerging in early…

Oracle tells clients of second recent hack
09
Oct
2025

Google says ‘likely over 100’ affected by Oracle-linked hacking campaign

Google said there were likely to be more than 100 companies affected by an ambitious hacking campaign that targeted Oracle’s…

ClayRat campaign uses Telegram and phishing sites to distribute Android spyware
09
Oct
2025

ClayRat campaign uses Telegram and phishing sites to distribute Android spyware

ClayRat campaign uses Telegram and phishing sites to distribute Android spyware Pierluigi Paganini October 09, 2025 ClayRat Android spyware targets…

Hackers steal Microsoft logins using legitimate ADFS redirects
09
Oct
2025

Hackers target universities in “payroll pirate” attacks

A cybercrime gang tracked as Storm-2657 has been targeting university employees in the United States to hijack salary payments in…

Threat Actors Mimic as HR Departments to Steal Your Gmail Login Credentials
09
Oct
2025

Threat Actors Mimic as HR Departments to Steal Your Gmail Login Credentials

A sophisticated phishing campaign has emerged targeting job seekers through legitimate Zoom document-sharing features, demonstrating how cybercriminals exploit trusted platforms…

scary VPN tunnel
09
Oct
2025

Fake VPN and streaming app drops malware that drains your bank account

Security researchers are warning Android users to delete a fake VPN and streaming app that can let criminals take over…