Week in review: Sudo local privilege escalation flaws fixed, Google patches actively exploited Chrome
06
Jul
2025

Week in review: Sudo local privilege escalation flaws fixed, Google patches actively exploited Chrome

Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Sudo local privilege escalation vulnerabilities…

Security Affairs newsletter Round 527 by Pierluigi Paganini – INTERNATIONAL EDITION
06
Jul
2025

Security Affairs newsletter Round 531 by Pierluigi Paganini – INTERNATIONAL EDITION

Security Affairs newsletter Round 531 by Pierluigi Paganini – INTERNATIONAL EDITION Pierluigi Paganini July 06, 2025 A new round of…

Dalfox 2.12 Released ⚡︎ | HAHWUL
06
Jul
2025

Dalfox 2.12 Released ︎ | HAHWUL

More powerful XSS scanning, Integration Dalfox v2.12.0 has been released. It’s been about three months since the previous version, 2.11,…

Hide the Pain Harold - smiling through the existential dread
06
Jul
2025

AI’s Morose Mania

I think, looking back, we might say that the first week of July 2025 was the start of AGI. Like,…

DOJ moves to seize $7.74M in crypto linked to North Korean IT Worker Scam
05
Jul
2025

North Korea-linked threat actors spread macOS NimDoor malware via fake Zoom updates

North Korea-linked threat actors spread macOS NimDoor malware via fake Zoom updates Pierluigi Paganini July 05, 2025 North Korea-linked hackers…

Ingram Micro
05
Jul
2025

Ingram Micro outage caused by SafePay ransomware attack

An ongoing outage at IT giant Ingram Micro is caused by a SafePay ransomware attack that led to the shutdown…

New Phishing Attack Impersonates as DWP Attacking Users to Steal Credit Card Data
05
Jul
2025

New Phishing Attack Impersonates as DWP Attacking Users to Steal Credit Card Data

A sophisticated phishing campaign targeting UK citizens has emerged, masquerading as official communications from the Department for Work and Pensions…

Writable File in Lenovo’s Windows Directory Enables a Stealthy AppLocker Bypass
05
Jul
2025

Writable File in Lenovo’s Windows Directory Enables a Stealthy AppLocker Bypass

A significant security vulnerability has been discovered in Lenovo’s preloaded Windows operating systems, where a writable file in the Windows…

Instagram Started Using 1-Week Validity TLS certificates and Changes Them Daily
05
Jul
2025

Instagram Started Using 1-Week Validity TLS certificates and Changes Them Daily

Instagram has adopted an unprecedented approach to web security by implementing daily rotation of TLS certificates that maintain validity periods…

"CitrixBleed 2" Vulnerability PoC Released
05
Jul
2025

“CitrixBleed 2” Vulnerability PoC Released

Critical flaw in Citrix NetScaler devices echoes infamous 2023 security breach that crippled major organizations worldwide. The new critical vulnerability…

Russia Jailed Hacker Who Worked for Ukrainian Intelligence to Launch Cyberattacks on Critical Infrastructure
05
Jul
2025

Russia Jailed Hacker Who Worked for Ukrainian Intelligence to Launch Cyberattacks on Critical Infrastructure

Russian Federal Security Service (FSB) officers have detained two hackers in Siberia who conducted cyberattacks on critical infrastructure facilities under…

Threat Actors Turning Job Offers Into Traps, Over $264 Million Lost in 2024 Alone
05
Jul
2025

Threat Actors Turning Job Offers Into Traps, Over $264 Million Lost in 2024 Alone

Cybercriminals are exploiting the economic uncertainty and remote work trends to orchestrate sophisticated employment fraud schemes, with victims losing over…