Actively Exploited ASUS Vulnerability Added to CISA’s KEV List
19
Dec
2025

Actively Exploited ASUS Vulnerability Added to CISA’s KEV List

The Cybersecurity and Infrastructure Security Agency (CISA) has added a critical ASUS vulnerability to its Known Exploited Vulnerabilities (KEV) catalog,…

GachiLoader Deploys Payloads Using Obfuscated Node.js Malware
19
Dec
2025

GachiLoader Deploys Payloads Using Obfuscated Node.js Malware

Check Point Research has uncovered a sophisticated malware distribution campaign leveraging the YouTube Ghost Network to deploy GachiLoader, a novel,…

Windows 10
19
Dec
2025

Windows 10 OOB update released to fix Message Queuing (MSMQ) issues

This month’s extended security update for Windows 10 broke Message Queuing (MSMQ), which is typically used by enterprises to manage background…

.NET Integration Library Steals Crypto Wallets and OAuth Tokens
19
Dec
2025

.NET Integration Library Steals Crypto Wallets and OAuth Tokens

ReversingLabs (RL) researchers have uncovered a sophisticated malware campaign targeting the .NET developer ecosystem via the NuGet package manager. The…

Cyber security risks exposed in NSW Local Health Districts, Auditor-General finds
19
Dec
2025

Cyber security risks exposed in NSW Local Health Districts, Auditor-General finds

NSW Health is not effectively managing cyber security risks to clinical systems used across Local Health Districts, according to a…

FBI Shuts Down Crypto Exchange Linked to Criminal Money Laundering Operations
19
Dec
2025

FBI Shuts Down Crypto Exchange Linked to Criminal Money Laundering Operations

The United States Attorney’s Office for the Eastern District of Michigan announced a coordinated international enforcement action targeting E-Note, a…

Matt Kapko
19
Dec
2025

Cisco customers hit by fresh wave of zero-day attacks from China-linked APT

Cisco customers are confronting a fresh wave of attacks from a Chinese threat group that has actively exploited a critical…

HPE OneView Vulnerability Allows Remote Code Execution Attacks
19
Dec
2025

HPE OneView Vulnerability Allows Remote Code Execution Attacks

A severe security vulnerability has been discovered in Hewlett Packard Enterprise OneView software, threatening enterprise infrastructure across data centers and…

Policymakers grapple with fallout from Chinese AI-enabled hack
19
Dec
2025

Policymakers grapple with fallout from Chinese AI-enabled hack

Policymakers and companies are reckoning with increased reports over the past few months showing AI tools being leveraged to conduct…

APT35 Leak Reveals Spreadsheets Containing Domains, Payments, and Server Information
19
Dec
2025

APT35 Leak Reveals Spreadsheets Containing Domains, Payments, and Server Information

Iranian cyber unit Charming Kitten, officially designated APT35, has long been dismissed as a noisy but relatively unsophisticated threat actor…

Beware of Malicious Scripts in Weaponized PDF Purchase Orders
19
Dec
2025

Beware of Malicious Scripts in Weaponized PDF Purchase Orders

A sophisticated phishing campaign utilizing a weaponized PDF document named “NEW Purchase Order # 52177236.pdf” has been identified, employing legitimate…

HPE fixed multiple flaws in its StoreOnce software
19
Dec
2025

Hewlett Packard Enterprise (HPE) fixed maximum severity OneView flaw

Hewlett Packard Enterprise (HPE) fixed maximum severity OneView flaw Pierluigi Paganini December 18, 2025 Hewlett Packard Enterprise (HPE) fixed a…