week in security
07
Jul
2025

A week in security (June 30 – July 6)

July 3, 2025 – The “El Chapo” Mexican drug cartel snooped on FBI personnel through hacked cameras, and listened in…

APT36 Attacking BOSS Linux Systems With Weaponized ZIP Files to Steal Sensitive Data
07
Jul
2025

APT36 Attacking BOSS Linux Systems With Weaponized ZIP Files to Steal Sensitive Data

Pakistan-based threat actor APT36, also known as Transparent Tribe, has significantly evolved its cyber-espionage capabilities by launching a sophisticated campaign…

ScriptCase Vulnerabilities Allow Remote Code Execution and Full Server Compromise
07
Jul
2025

ScriptCase Vulnerabilities Allow Remote Code Execution and Full Server Compromise

Two critical vulnerabilities have been discovered in ScriptCase, a popular low-code PHP web application generator, which puts thousands of servers…

July 2025 Patch Tuesday forecast: Take a break from the grind
07
Jul
2025

July 2025 Patch Tuesday forecast: Take a break from the grind

There was a barrage of updates released the week of June 2025 Patch Tuesday. This included security updates from Adobe,…

PoC Released for Linux Privilege Escalation Flaw in udisksd and libblockdev
07
Jul
2025

PoC Released for Linux Privilege Escalation Flaw in udisksd and libblockdev

Security researchers disclosed a critical local privilege escalation (LPE) vulnerability affecting Fedora, SUSE, and other major Linux distributions. The flaw,…

AI built it, but can you trust it?
07
Jul
2025

AI built it, but can you trust it?

In this Help Net Security interview, John Morello, CTO at Minimus, discusses the security risks in AI-driven development, where many…

Aegis Authenticator: Free, open-source 2FA app for Android
07
Jul
2025

Aegis Authenticator: Free, open-source 2FA app for Android

Aegis Authenticator is an open-source 2FA app for Android that helps you manage login codes for your online accounts. The…

Indian Government, Defense, and Rail Sectors
07
Jul
2025

TAG-140 Deploys DRAT V2 RAT, Targeting Indian Government, Defense, and Rail Sectors

A hacking group with ties other than Pakistan has been found targeting Indian government organizations with a modified variant of…

Review: Attack Surface Management - Help Net Security
07
Jul
2025

Review: Attack Surface Management – Help Net Security

Attack Surface Management (ASM) has become one of those buzzwords that gets used a lot but rarely explained in detail….

07
Jul
2025

Cloud security maintains its position as top spending priority

While most enterprises have integrated cloud resources into their operations, many need to improve their ability to secure these environments…

PoC Released for Linux Privilege Escalation Vulnerability via udisksd and libblockdev
07
Jul
2025

PoC Released for Linux Privilege Escalation Vulnerability via udisksd and libblockdev

A proof-of-concept exploit for a critical local privilege escalation vulnerability affecting major Linux distributions, including Fedora and SUSE environments. The…

Critical vulnerabilities in Citrix Products
07
Jul
2025

Critical vulnerabilities in Citrix Products

The ASD’s ACSC has issued a critical alert to its subscriber community concerning vulnerabilities in Citrix Netscaler ADC and NetScaler…