Former developer jailed after deploying kill-switch malware at Ohio firm
30
Oct
2025

Ex-Defense contractor exec pleads guilty to selling cyber exploits to Russia

Ex-Defense contractor exec pleads guilty to selling cyber exploits to Russia Pierluigi Paganini October 30, 2025 Former US defense contractor…

New Attack Combines Ghost SPNs and Kerberos Reflection to Elevate Privileges on SMB Servers
30
Oct
2025

New Attack Combines Ghost SPNs and Kerberos Reflection to Elevate Privileges on SMB Servers

A sophisticated privilege escalation vulnerability in Windows SMB servers, leveraging Ghost Service Principal Names (SPNs) and Kerberos authentication reflection to…

700+ Android Apps Harvest Banking Login Details
30
Oct
2025

700+ Android Apps Harvest Banking Login Details

A sophisticated cybercrime campaign leveraging Near Field Communication technology has exploded across multiple continents, with researchers at zLabs identifying over…

PhantomRaven Malware Found in 126 npm Packages Stealing GitHub Tokens From Devs
30
Oct
2025

PhantomRaven Malware Found in 126 npm Packages Stealing GitHub Tokens From Devs

Oct 30, 2025Ravie LakshmananDevSecOps / Software Security Cybersecurity researchers have uncovered yet another active software supply chain attack campaign targeting…

PhantomRaven Attack Involves 126 Malicious npm Packages with Over 86,000 Downloads Hiding Malicious Code
30
Oct
2025

PhantomRaven Attack Involves 126 Malicious npm Packages with Over 86,000 Downloads Hiding Malicious Code

A sophisticated malware campaign targeting developers has been operating since August 2025, deploying 126 malicious npm packages that have collectively…

Critical RediShell RCE Vulnerability Threatens 8,500+ Redis Deployments Worldwide
30
Oct
2025

Critical RediShell RCE Vulnerability Threatens 8,500+ Redis Deployments Worldwide

A critical security vulnerability in Redis’s Lua scripting engine has left thousands of database instances vulnerable to remote code execution…

PolarEdge Botnet Infected 25,000+ Devices and 140 C2 Servers Exploiting IoT Vulnerabilities
30
Oct
2025

PolarEdge Botnet Infected 25,000+ Devices and 140 C2 Servers Exploiting IoT Vulnerabilities

A sophisticated botnet campaign has compromised more than 25,000 IoT devices across 40 countries while establishing 140 command-and-control servers to…

New Attack Chains Ghost SPNs and Kerberos Reflection to Elevate SMB Privileges
30
Oct
2025

New Attack Chains Ghost SPNs and Kerberos Reflection to Elevate SMB Privileges

Microsoft has addressed a critical privilege escalation vulnerability affecting Windows environments worldwide. Attackers can exploit misconfigured Service Principal Names (SPNs)…

Akeyless introduces AI Agent Identity Security for safer AI operations
30
Oct
2025

Akeyless introduces AI Agent Identity Security for safer AI operations

Akeylesshas released a new AI Agent Identity Security solution designed to secure the rise of autonomous AI systems. AI Agent…

Kelly Benefits December data breach impacted over 400,000 individuals
30
Oct
2025

Dentsu’s US subsidiary Merkle hit by cyberattack, staff and client data exposed

Dentsu’s US subsidiary Merkle hit by cyberattack, staff and client data exposed Pierluigi Paganini October 30, 2025 Dentsu said its…

Dentsu has Disclosed that its U.S.-based Subsidiary Merkle Suffers Cyberattack
30
Oct
2025

Dentsu has Disclosed that its U.S.-based Subsidiary Merkle Suffers Cyberattack

Global advertising and marketing giant Dentsu has confirmed that its U.S.-based subsidiary Merkle experienced a cyberattack, prompting immediate incident response…

Privilege Escalation Exploit Targets Windows Cloud Files Minifilter
30
Oct
2025

Privilege Escalation Exploit Targets Windows Cloud Files Minifilter

Microsoft addressed a critical race condition vulnerability affecting its Windows Cloud Files Minifilter driver in October 2025. The flaw, assigned…