UAC-0057 Leveraging Invitations to Trigger Shell Script Attacks
22
Aug
2025

UAC-0057 Leveraging Invitations to Trigger Shell Script Attacks

The Belarusian-affiliated threat actor UAC-0057, also known as UNC1151, FrostyNeighbor, or Ghostwriter, has been using weaponized archives that contain phony…

CSRF Flaw In Inspiro WordPress Theme (CVE-2025-8592)
22
Aug
2025

CSRF Flaw In Inspiro WordPress Theme (CVE-2025-8592)

A critical security vulnerability, officially tracked as CVE-2025-8592, has been identified in the popular Inspiro WordPress theme. The flaw, affecting…

After SharePoint attacks, Microsoft stops sharing PoC exploit code with China
22
Aug
2025

After SharePoint attacks, Microsoft stops sharing PoC exploit code with China

After SharePoint attacks, Microsoft stops sharing PoC exploit code with China Pierluigi Paganini August 22, 2025 Microsoft halts PoC exploit…

Opinion | Deepfake porn scandal in Hong Kong exposes need to update laws
22
Aug
2025

Opinion | Deepfake porn scandal in Hong Kong exposes need to update laws

The deepfake scandal at the University of Hong Kong – hundreds of non-consensual, sexually explicit composites reportedly found on a…

Microsoft Warns of Hackers Using ClickFix Technique to Attack Windows and macOS Devices
22
Aug
2025

Microsoft Warns of Hackers Using ClickFix Technique to Attack Windows and macOS Devices

Cybersecurity researchers have identified a sophisticated social engineering technique called ClickFix that has been rapidly gaining traction among threat actors…

Weaponized RAR Files Deliver VShell Backdoor on Linux Systems
22
Aug
2025

Weaponized RAR Files Deliver VShell Backdoor on Linux Systems

Trellix Advanced Research Center has exposed an infection chain that weaponises nothing more than a filename to compromise Linux hosts….

Interpol operation seizes $97 million in African cybercrime sweep
22
Aug
2025

Interpol operation seizes $97 million in African cybercrime sweep

Authorities in Africa have arrested 1,209 people in an Interpol-led crackdown on cybercrime that targeted nearly 88,000 victims. 11,432 malicious…

Former developer jailed after deploying kill-switch malware at Ohio firm
22
Aug
2025

Former developer jailed after deploying kill-switch malware at Ohio firm

Former developer jailed after deploying kill-switch malware at Ohio firm Pierluigi Paganini August 22, 2025 Ex-developer jailed 4 years for…

22
Aug
2025

China cracks down on fake medical advice with new rules for health influencers

Chinese authorities have announced new rules targeting the rapid expansion of medical science accounts on social media and other unofficial…

New Linux Malware With Weaponized RAR Archive Deploys VShell Backdoor
22
Aug
2025

New Linux Malware With Weaponized RAR Archive Deploys VShell Backdoor

Linux environments, long considered bastions of security, are facing a sophisticated new threat that challenges traditional assumptions about operating system…

Azure Default API Connection Flaw Enables Full Cross-Tenant Compromise
22
Aug
2025

Azure Default API Connection Flaw Enables Full Cross-Tenant Compromise

A critical security vulnerability in Microsoft Azure’s API Connection architecture has been discovered that could allow attackers to completely compromise…

Kelly Benefits December data breach impacted over 400,000 individuals
22
Aug
2025

Orange Belgium July data breach impacted 850,000 customers

Orange Belgium July data breach impacted 850,000 customers Pierluigi Paganini August 22, 2025 Orange Belgium revealed that a July attack…