DrayTek router vulnerabilities
03
Oct
2025

Unauthenticated RCE Flaw Patched in DrayTek Routers

DrayTek on Thursday announced patches for an unauthenticated remote code execution (RCE) vulnerability affecting DrayOS routers. Tracked as CVE-2025-10547, the…

Gmail
03
Oct
2025

Gmail business users can now send encrypted emails to anyone

Google says that Gmail enterprise users can now send end-to-end encrypted emails to people who use any email service or…

Chinese Hackers Compromising High-Value IIS Servers to Manipulate Search Rankings
03
Oct
2025

Chinese Hackers Compromising High-Value IIS Servers to Manipulate Search Rankings

The Chinese-speaking cybercrime group UAT-8099 has been stealthily breaching valuable Internet Information Services (IIS) servers in India, Thailand, Vietnam, Canada,…

Hackers Exploit Grafana Vulnerability Allowing Arbitrary File Reads
03
Oct
2025

Hackers Exploit Grafana Vulnerability Allowing Arbitrary File Reads

Researchers at GreyNoise observed a sudden spike in attempts to exploit a well-known Grafana flaw. This vulnerability, tracked as CVE-2021-43798,…

CISA KEV
03
Oct
2025

Organizations Warned of Exploited Meteobridge Vulnerability

The US cybersecurity agency CISA on Thursday warned that a Meteobridge vulnerability patched in May has been exploited in attacks…

Threat Actors Leveraging WhatsApp Messages to Attack Windows Systems With SORVEPOTEL Malware
03
Oct
2025

Threat Actors Leveraging WhatsApp Messages to Attack Windows Systems With SORVEPOTEL Malware

Enterprise networks worldwide are facing an aggressive, self-propagating malware campaign that exploits WhatsApp as its primary delivery mechanism. First observed…

SideWinder Hacker Group Targets Users with Fake Outlook/Zimbra Portals to Steal Login Credentials
03
Oct
2025

SideWinder Hacker Group Targets Users with Fake Outlook/Zimbra Portals to Steal Login Credentials

The notorious SideWinder APT group has intensified its credential harvesting operations across South Asia, deploying sophisticated phishing campaigns that target…

New "Cavalry Werewolf" Attack Hits Russian Agencies with FoalShell and StallionRAT
03
Oct
2025

New “Cavalry Werewolf” Attack Hits Russian Agencies with FoalShell and StallionRAT

Oct 03, 2025Ravie LakshmananCybersecurity / Malware A threat actor that’s known to share overlaps with a hacking group called YoroTrooper…

Oracle E-Business Suite hack
03
Oct
2025

Oracle Says Known Vulnerabilities Possibly Exploited in Recent Extortion Attacks

Oracle has confirmed that some of its customers have received extortion emails and the software giant’s investigation indicates that the…

SideWinder Hacker Group Hosting Fake Outlook/Zimbra Portals to Steal Login Credentials
03
Oct
2025

SideWinder Hacker Group Hosting Fake Outlook/Zimbra Portals to Steal Login Credentials

APT SideWinder, a state-sponsored threat actor long associated with espionage across South Asia, has recently launched a campaign deploying phishing…

WhatsApp Exploited to Spread SORVEPOTEL Malware on Windows Systems
03
Oct
2025

WhatsApp Exploited to Spread SORVEPOTEL Malware on Windows Systems

An aggressive malware campaign dubbed SORVEPOTEL is exploiting WhatsApp messages to infiltrate Windows systems, with its epicenter in Brazil. Rather…

CISA Flags Meteobridge CVE-2025-4008 Flaw as Actively Exploited in the Wild
03
Oct
2025

CISA Flags Meteobridge CVE-2025-4008 Flaw as Actively Exploited in the Wild

Oct 03, 2025Ravie LakshmananVulnerability / IoT Security The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a high-severity…