Windows Imaging Component Vulnerability Can Lead to RCE Attacks Under Complex Attack Scenarios
23
Dec
2025

Windows Imaging Component Vulnerability Can Lead to RCE Attacks Under Complex Attack Scenarios

A comprehensive analysis of CVE-2025-50165, a critical Windows vulnerability affecting the Windows Imaging Component (WIC). That could potentially enable remote…

Spotify Music Library Targeted as Hacktivists Scrape 86 Million Files
23
Dec
2025

Spotify Music Library Targeted as Hacktivists Scrape 86 Million Files

Anna’s Archive, a prominent digital preservation platform, has announced the largest unauthorized extraction of Spotify music data ever recorded. The…

Two Chrome Extensions Caught Secretly Stealing Credentials from Over 170 Sites
23
Dec
2025

Two Chrome Extensions Caught Secretly Stealing Credentials from Over 170 Sites

Cybersecurity researchers have discovered two malicious Google Chrome extensions with the same name and published by the same developer that…

Threat Actors Poses as Korean TV Programs Writer to Trick Victims and Install Malware
23
Dec
2025

Threat Actors Poses as Korean TV Programs Writer to Trick Victims and Install Malware

Cybersecurity researchers have uncovered a sophisticated campaign where threat actors impersonate writers from major Korean broadcasting networks to distribute malicious…

MacSync Stealer Malware Targets macOS Users Through Digitally Signed Apps
23
Dec
2025

MacSync Stealer Malware Targets macOS Users Through Digitally Signed Apps

Jamf Threat Labs has uncovered a new MacSync Stealer campaign that significantly raises the bar for macOS malware delivery by…

ServiceNow agrees to buy cyber firm Armis for $7.75B
23
Dec
2025

ServiceNow agrees to buy cyber firm Armis for $7.75B

ServiceNow has agreed to buy cybersecurity firm Armis for $7.75 billion in cash, a deal that would push the enterprise…

Microsoft Teams
23
Dec
2025

Microsoft Teams strengthens messaging security by default in January

Microsoft announced that Teams will automatically enable messaging safety features by default to strengthen defenses against content tagged as malicious….

University of Phoenix Data Breach
23
Dec
2025

University of Phoenix Data Breach

University of Phoenix, one of the largest for-profit educational institutions in the United States, disclosed a significant data breach affecting…

Threat Actors Impersonate Korean TV Writers to Deliver Malware
23
Dec
2025

Threat Actors Impersonate Korean TV Writers to Deliver Malware

North Korean-backed threat actors are impersonating writers from major Korean broadcasting companies to deliver malicious documents and establish initial access…

Malicious extensions in Chrome Web store steal user credentials
23
Dec
2025

Malicious extensions in Chrome Web store steal user credentials

Two Chrome extensions in the Web Store named ‘Phantom Shuttle’ are posing as plugins for a proxy service to hijack user…

HardBit 4.0 Ransomware Actors Attack Open RDP and SMB Services to Persist Access
23
Dec
2025

HardBit 4.0 Ransomware Actors Attack Open RDP and SMB Services to Persist Access

HardBit ransomware continues to evolve as a serious threat to organizations worldwide. The latest version, HardBit 4.0, emerged as an…

Critical n8n Vulnerability Exposes 103,000+ Automation Instances to RCE Attacks
23
Dec
2025

Critical n8n Vulnerability Exposes 103,000+ Automation Instances to RCE Attacks

A critical remote code execution vulnerability in n8n, a popular open-source workflow automation platform, threatens over 103,000 potentially vulnerable instances…