Hackers Enhance ClickFix Attack Using Cache Smuggling to Stealthily Download Malicious Files
09
Oct
2025

Hackers Enhance ClickFix Attack Using Cache Smuggling to Stealthily Download Malicious Files

Cybersecurity researchers have discovered a sophisticated evolution of the ClickFix attack technique that leverages browser cache smuggling to covertly place…

SonicWall malware
09
Oct
2025

All SonicWall Cloud Backup Users Had Firewall Configurations Stolen

SonicWall on Wednesday announced that all customers who used its cloud backup service to store firewall configuration files were impacted…

Linux Kernel ksmbd Filesystem Vulnerability Exploited
09
Oct
2025

Linux Kernel ksmbd Filesystem Vulnerability Exploited

Security researchers have released a full proof-of-concept (PoC) exploit for a high-severity vulnerability in the Linux kernel’s ksmbd module, demonstrating…

GitLab Releases Security Update to Patch Multiple DoS-Enabling Vulnerabilities
09
Oct
2025

GitLab Releases Security Update to Patch Multiple DoS-Enabling Vulnerabilities

GitLab has issued a critical security update to address several denial-of-service (DoS) vulnerabilities affecting both Community Edition (CE) and Enterprise…

Bypass Authentication in WordPress
09
Oct
2025

Critical Exploit Lets Hackers Bypass Authentication in WordPress Service Finder Theme

Oct 09, 2025Ravie LakshmananVulnerability / Website Security Threat actors are actively exploiting a critical security flaw impacting the Service Finder…

Discord Data Breach Exposes 1.5 TB of Data and 2 Million Government ID Photos
09
Oct
2025

Discord Data Breach Exposes 1.5 TB of Data and 2 Million Government ID Photos

The popular communication platform Discord is confronting a major extortion attempt after cybercriminals breached one of its third-party customer service…

Zimbra ZCS Flaw CVE-2025-27915 Actively Exploited
09
Oct
2025

Zimbra ZCS Flaw CVE-2025-27915 Actively Exploited

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) have issued an urgent alert concerning an actively exploited zero-day vulnerability in…

Hackers Abuse CSS Properties With Messages to Inject Malicious Codes in Hidden Text Salting Attack
09
Oct
2025

Hackers Abuse CSS Properties With Messages to Inject Malicious Codes in Hidden Text Salting Attack

A sophisticated technique known as hidden text salting has emerged as a significant threat to email security systems, allowing cybercriminals…

Data-Leak Sites Surge to Record Levels Amid Scattered Spider RaaS and LockBit 5.0 Rise
09
Oct
2025

Data-Leak Sites Surge to Record Levels Amid Scattered Spider RaaS and LockBit 5.0 Rise

Ransomware threats reached a tipping point in Q3 2025 as data-leak sites surged to a record 81 active platforms, driven…

MFA Cybersecurity Awareness Month 2025
09
Oct
2025

Your First Step To Cyber Safety In 2025

In a world where passwords are stolen, phished, or guessed every second, multifactor authentication (MFA) has quietly become one of…

Ancient, critical
09
Oct
2025

Ancient, critical “RediShell” bug menaces thousands of servers

Security research firm Wiz is strongly urging organisations to patch a very serious vulnerability in the Redis database that, if…

IRGC-Linked APT35 Structure, Tools, and Espionage Operations Disclosed
09
Oct
2025

IRGC-Linked APT35 Structure, Tools, and Espionage Operations Disclosed

Since emerging in the mid-2010s as a persistent threat actor, the IRGC-linked APT35 collective has continually adapted its tactics to…