CrushFTP
19
Jul
2025

CrushFTP zero-day exploited in attacks to gain admin access on servers

CrushFTP is warning that threat actors are actively exploiting a zero-day vulnerability tracked as CVE-2025-54309, which allows attackers to gain…

CrushFTP
19
Jul
2025

CrushFTP zero-day exploited to gain admin access on servers

CrushFTP is warning that threat actors are actively exploiting a zero-day vulnerability tracked as CVE-2025-54309, which allows attackers to gain…

Authorities released free decryptor for Phobos and 8base ransomware
19
Jul
2025

Authorities released free decryptor for Phobos and 8base ransomware

Authorities released free decryptor for Phobos and 8base ransomware Pierluigi Paganini July 18, 2025 Japanese police released a free decryptor…

Arch Linux
19
Jul
2025

Arch Linux pulls AUR packages that installed Chaos RAT malware

Arch Linux has pulled three malicious packages uploaded to the Arch User Repository (AUR) were used to install the CHAOS…

New Surge of Crypto-Jacking Hits Over 3,500 Websites
19
Jul
2025

New Surge of Crypto-Jacking Hits Over 3,500 Websites

Cybersecurity experts at cside have discovered a clever campaign that infected over 3,500 websites with nefarious JavaScript miners, marking a…

Ivanti Zero-Days Exploited to Drop MDifyLoader and Launch In-Memory Cobalt Strike Attacks
19
Jul
2025

Ivanti Zero-Days Exploited to Drop MDifyLoader and Launch In-Memory Cobalt Strike Attacks

Jul 18, 2025Ravie LakshmananMalware / Vulnerability Cybersecurity researchers have disclosed details of a new malware called MDifyLoader that has been…

NCSC: Russia’s Fancy Bear targeting logistics, tech organisations
19
Jul
2025

NCSC exposes Fancy Bear’s Authentic Antics malware attacks

The UK’s National Cyber Security Centre (NCSC) has issued a formal notice attributing a series of hostile cyber attacks using…

ChatGPT
19
Jul
2025

New ChatGPT o3-alpha model hints at coding upgrade

ChatGPT’s o3 is OpenAI’s best model to date because it features reasoning, and it might get even better in the…

Chinese Threat Actors Operate 2,800 Malicious Domains to Distribute Windows Malware
18
Jul
2025

Chinese Threat Actors Operate 2,800 Malicious Domains to Distribute Windows Malware

A sophisticated threat actor, dubbed “SilverFox,” has been orchestrating a large-scale malware distribution campaign since at least June 2023, primarily…

UNG0002 Group Hits China, Hong Kong, Pakistan Using LNK Files and RATs in Twin Campaigns
18
Jul
2025

UNG0002 Group Hits China, Hong Kong, Pakistan Using LNK Files and RATs in Twin Campaigns

Jul 18, 2025Ravie LakshmananCyber Espionage / Malware Multiple sectors in China, Hong Kong, and Pakistan have become the target of…

Russian hackers breach orgs to track aid routes to Ukraine
18
Jul
2025

UK ties GRU to stealthy Microsoft 365 credential-stealing malware

The UK National Cyber Security Centre (NCSC) has formally attributed ‘Authentic Antics’ espionage malware attacks to APT28 (Fancy Bear), a…

Google Sued BadBox 2.0 Malware Botnet Operators That Infects 10 Million+ Devices
18
Jul
2025

Google Sued BadBox 2.0 Malware Botnet Operators That Infects 10 Million+ Devices

Google has filed a lawsuit in New York federal court against the operators of the BadBox 2.0 botnet, marking a…