New Botnet ‘Loader-as-a-Service’ Turns Home Routers and IoT into Mirai Farms
26
Sep
2025

New Botnet ‘Loader-as-a-Service’ Turns Home Routers and IoT into Mirai Farms

CloudSEK has uncovered a sophisticated Loader-as-a-Service botnet campaign spanning the last six months, leveraging exposed command-and-control logs to orchestrate attacks…

Archer Health Data Leak Exposes 23GB of Medical Records
26
Sep
2025

Archer Health Data Leak Exposes 23GB of Medical Records

A large cache of medical and personal information belonging to patients of Archer Health Inc. was left publicly accessible after…

New macOS XCSSET Variant Targets Firefox with Clipper and Persistence Module
26
Sep
2025

New macOS XCSSET Variant Targets Firefox with Clipper and Persistence Module

Sep 26, 2025Ravie LakshmananMalware / Browser Security Cybersecurity researchers have discovered an updated version of a known Apple macOS malware…

macOS malware
26
Sep
2025

New XCSSET macOS Malware Variant Hijacks Cryptocurrency Transactions

An updated variant of the sophisticated XCSSET macOS malware is monitoring the system clipboard to hijack cryptocurrency transactions, Microsoft warns….

Product comparison: Detectify vs. Nessus
26
Sep
2025

Product comparison: Detectify vs. Nessus

Nessus Pros Authenticated scanning of internal assets (workstations, network devices). Widely accepted for compliance and audit reporting (e.g., PCI DSS)….

Chinese State-Sponsored Hackers Attacking Telecommunications Infrastructure to Harvest Sensitive Data
26
Sep
2025

Chinese State-Sponsored Hackers Attacking Telecommunications Infrastructure to Harvest Sensitive Data

In late 2024, a new wave of cyber espionage emerged targeting global telecommunications infrastructure. Operating under the moniker Salt Typhoon,…

Researchers Map Links Between Major Hacker Groups: LAPSUS$, Scattered Spider, ShinyHunters
26
Sep
2025

Researchers Map Links Between Major Hacker Groups: LAPSUS$, Scattered Spider, ShinyHunters

A loosely connected cybercrime supergroup is exploiting social engineering to compromise Fortune 100 organizations and government agencies. LAPSUS$, Scattered Spider,…

Fortra GoAnywhere CVSS 10 Flaw Exploited as 0-Day a Week Before Public Disclosure
26
Sep
2025

Fortra GoAnywhere CVSS 10 Flaw Exploited as 0-Day a Week Before Public Disclosure

Sep 26, 2025Ravie LakshmananVulnerability / Threat Intelligence Cybersecurity company watchTowr Labs has disclosed that it has “credible evidence” of active…

South East Water modernises through Google Cloud
26
Sep
2025

Amazon joins coalition to reduce water usage habits of AI datacentres

Amazon is part of a coalition focused on ensuring artificial intelligence (AI) datacentres use water as efficiently as possible, amid…

XCSSET, macOS, macOS Malware
26
Sep
2025

XCSSET Malware Mutates Again, Expands Reach To Firefox

Microsoft researchers say the long-running XCSSET malware has resurfaced with a new arsenal of tricks aimed at stealing data, persisting…

Product comparison: Detectify vs. Burp Enterprise
26
Sep
2025

Product comparison: Detectify vs. Burp Enterprise

Burp Enterprise Pros: Offers granular control and customization to fit the distinct needs of a mature security program. Empowers expert…

New Malicious Rust Crates Impersonating fast_log to Steal Solana and Ethereum Wallet Keys
26
Sep
2025

New Malicious Rust Crates Impersonating fast_log to Steal Solana and Ethereum Wallet Keys

Cybercriminals have launched a sophisticated supply chain attack targeting cryptocurrency developers through malicious Rust crates designed to steal digital wallet…