10 Malicious npm Packages with Auto-Run Feature on Install Deploys Multi-Stage Credential Harvester
29
Oct
2025

10 Malicious npm Packages with Auto-Run Feature on Install Deploys Multi-Stage Credential Harvester

The npm ecosystem faces a sophisticated new threat as ten malicious packages have emerged, each designed to automatically execute during…

Google Publishes New Guide to Help Defenders Monitor Privileged Accounts
29
Oct
2025

Google Publishes New Guide to Help Defenders Monitor Privileged Accounts

Google has released comprehensive guidance on protecting privileged accounts, recognizing that stolen credentials have become one of the most dangerous…

Sanctions won’t stop cyberattacks, but they can still "bite"
29
Oct
2025

Sanctions won’t stop cyberattacks, but they can still “bite”

Sanctions are one of the tools Western governments use when they want to hit back at state-sponsored cyber threat actors….

41% Of Ransomware Victims Who Pay Ransom Can’t Recover Data
29
Oct
2025

41% Of Ransomware Victims Who Pay Ransom Can’t Recover Data

Paying attackers a ransom to recover from ransomware attacks fails 41% of the time, and even when recovery keys work,…

Windows
29
Oct
2025

Microsoft fixes 0x800F081F errors causing Windows update failures

Microsoft has resolved a known issue that caused Windows updates to fail, leading to 0x800F081F errors on Windows 11 24H2…

PoC Exploit Released for BIND 9 Vulnerability that Let Attackers Forge DNS Records
29
Oct
2025

PoC Exploit Released for BIND 9 Vulnerability that Let Attackers Forge DNS Records

A public exploit code demonstrating how attackers could exploit CVE-2025-40778, a critical vulnerability in BIND 9 that enables DNS cache…

Russian Hackers Target Government with Stealthy “Living-Off-the-Land” Tactics
29
Oct
2025

Russian Hackers Target Government with Stealthy “Living-Off-the-Land” Tactics

Russian-linked attackers have intensified their targeting of Ukrainian organizations through sophisticated intrusions that rely heavily on legitimate Windows tools rather…

Commvault introduces Data Rooms to securely connect backup data with AI platforms
29
Oct
2025

Commvault introduces Data Rooms to securely connect backup data with AI platforms

Commvault introduced Data Rooms, a secure environment that enables enterprises to safely connect their trusted backup data to the AI…

Atlas browser
29
Oct
2025

OpenAI’s Atlas browser leaves the door wide open to prompt injection

It seems that with every new agentic browser we discover yet another way to abuse one. OpenAI recently introduced a…

Thousands of Exchange Servers in Germany Still Running with Out-of-Support Versions
29
Oct
2025

Thousands of Exchange Servers in Germany Still Running with Out-of-Support Versions

Microsoft Exchange servers in Germany are still running without security updates, just weeks after the official end of support for…

Massive 4TB EY Database Backup Found Publicly Accessible on Azure
29
Oct
2025

Massive 4TB EY Database Backup Found Publicly Accessible on Azure

A critical security vulnerability was discovered when a complete 4-terabyte SQL Server backup belonging to Ernst & Young (EY), one…

Women In Cybersecurity Report, Fall 2025
29
Oct
2025

Women In Cybersecurity Report, Fall 2025

The Women in Cybersecurity Report, a 2-minute video hosted by Cybercrime Magazine Deputy Editor Amanda Glassner, highlights the latest breakthroughs, voices, and…