WhatsApp
22
Nov
2025

WhatsApp API flaw let researchers scrape 3.5 billion accounts

Researchers compiled a list of 3.5 billion WhatsApp mobile phone numbers and associated personal information by abusing a contact-discovery API…

Metasploit Releases New Exploit for Fresh FortiWeb 0-Day Vulnerabilities
22
Nov
2025

Metasploit Releases New Exploit for Fresh FortiWeb 0-Day Vulnerabilities

Rapid7’s Metasploit team has released a new exploit module targeting critical zero-day vulnerabilities in Fortinet’s FortiWeb web application firewall, chaining…

How APT24 scaled its cyberespionage through supply chain attacks
22
Nov
2025

How APT24 scaled its cyberespionage through supply chain attacks

BadAudio malware: how APT24 scaled its cyberespionage through supply chain attacks Pierluigi Paganini November 22, 2025 APT24 used supply chain…

CrowdStrike Fires Employee for Leaking Internal System Info to Hackers
22
Nov
2025

CrowdStrike Fires Employee for Leaking Internal System Info to Hackers

Cybersecurity giant CrowdStrike has terminated an employee who allegedly shared sensitive internal system information with a notorious hacking collective. The…

Hackers Use Salesforce Gainsight Breach to Access Data from More Than 200 Companies
22
Nov
2025

Hackers Use Salesforce Gainsight Breach to Access Data from More Than 200 Companies

Salesforce has disclosed a significant security incident involving unauthorized access to customer data through compromised Gainsight-published applications. The breach, detected…

CrowdStrike Fires Worker Over Insider Leak to Scattered Lapsus Hunters
22
Nov
2025

CrowdStrike Fires Worker Over Insider Leak to Scattered Lapsus Hunters – Hackread – Cybersecurity News, Data Breaches, Tech, AI, Crypto and More

Leading cybersecurity firm CrowdStrike recently confirmed it fired an employee for sharing confidential internal details with a major hacking group….

China-Linked APT31 Launches Stealthy Cyberattacks on Russian IT Using Cloud Services
22
Nov
2025

China-Linked APT31 Launches Stealthy Cyberattacks on Russian IT Using Cloud Services

Nov 22, 2025Ravie LakshmananCyber Espionage / Cloud Security The China-linked advanced persistent threat (APT) group known as APT31 has been…

CISA Issues Warning as Hackers Target Oracle Identity Manager RCE Flaw
22
Nov
2025

CISA Issues Warning as Hackers Target Oracle Identity Manager RCE Flaw

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a new Oracle vulnerability to its Known Exploited Vulnerabilities (KEV)…

US Border Patrol Is Spying on Millions of American Drivers
22
Nov
2025

US Border Patrol Is Spying on Millions of American Drivers

Eight years after a researcher warned WhatsApp that it was possible to extract user phone numbers en masse from the…

U.S. CISA adds a Google Chromium V8 flaw to its Known Exploited Vulnerabilities catalog
22
Nov
2025

U.S. CISA adds an Oracle Fusion Middleware flaw to its Known Exploited Vulnerabilities catalog

U.S. CISA adds an Oracle Fusion Middleware flaw to its Known Exploited Vulnerabilities catalog Pierluigi Paganini November 22, 2025 U.S. Cybersecurity…

ShinyHunters Claims Data Theft from 200+ Companies via Salesforce Gainsight Breach
22
Nov
2025

ShinyHunters Claims Data Theft from 200+ Companies via Salesforce Gainsight Breach

A sophisticated supply chain attack has reportedly compromised data across hundreds of organizations, linking the breach to a critical integration…

CISA Warns of Actively Exploited Critical Oracle Identity Manager Zero-Day Vulnerability
22
Nov
2025

CISA Warns of Actively Exploited Critical Oracle Identity Manager Zero-Day Vulnerability

Nov 22, 2025Ravie LakshmananZero-Day / Software Security The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added a critical…