MITM6 + NTLM Relay Attack Enables Full Domain Compromise
21
Aug
2025

MITM6 + NTLM Relay Attack Enables Full Domain Compromise

Cybersecurity researchers are highlighting a dangerous attack technique that combines rogue IPv6 configuration with NTLM credential relay to achieve complete…

A member of the Scattered Spider cybercrime group pleads guilty
21
Aug
2025

A Scattered Spider member gets 10 years in prison

A Scattered Spider member gets 10 years in prison Pierluigi Paganini August 21, 2025 A 20-year-old Scattered Spider member gets…

CISA Releases Four ICS Advisories Surrounding Vulnerabilities, and Exploits
21
Aug
2025

CISA Releases Four ICS Advisories Surrounding Vulnerabilities, and Exploits

CISA issued four comprehensive Industrial Control Systems (ICS) advisories on August 19, 2025, highlighting serious vulnerabilities affecting critical infrastructure sectors…

QUIC-LEAK Vulnerability Allows Attackers to Drain Server Memory and Cause DoS
21
Aug
2025

QUIC-LEAK Vulnerability Allows Attackers to Drain Server Memory and Cause DoS

Security researchers at Imperva have disclosed a critical pre-handshake memory exhaustion vulnerability in the widely-used LSQUIC QUIC implementation that enables…

Scattered Spider Hacker Gets 10 Years, $13M Restitution for SIM Swapping Crypto Theft
21
Aug
2025

Scattered Spider Hacker Gets 10 Years, $13M Restitution for SIM Swapping Crypto Theft

Aug 21, 2025Ravie LakshmananData Breach / Cybercrime A 20-year-old member of the notorious cybercrime gang known as Scattered Spider has…

Spider
21
Aug
2025

Scattered Spider hacker gets sentenced to 10 years in prison

Noah Michael Urban, a key member of the Scattered Spider cybercrime collective, was sentenced to 10 years in prison on…

New MITM6 + NTLM Relay Attack Let Attackers Escalate Privileges and Compromise Entire Domain
21
Aug
2025

New MITM6 + NTLM Relay Attack Let Attackers Escalate Privileges and Compromise Entire Domain

A sophisticated attack chain that combines MITM6 with NTLM relay techniques to achieve full Active Directory domain compromise.  The attack…

Russia-linked group Static Tundra exploit old Cisco flaw for espionage
21
Aug
2025

Russia-linked group Static Tundra exploit old Cisco flaw for espionage

FBI: Russia-linked group Static Tundra exploit old Cisco flaw for espionage Pierluigi Paganini August 21, 2025 FBI warns FSB-linked group…

Microsoft VS Code Remote-SSH Extension Hacked to Execute Malicious Code on Developer’s Machine
21
Aug
2025

Microsoft VS Code Remote-SSH Extension Hacked to Execute Malicious Code on Developer’s Machine

A critical security vulnerability has been discovered in Microsoft’s VS Code Remote-SSH extension that allows attackers to execute malicious code…

Operator of ‘Rapper Bot’ DDoS Botnet Faces Charges
21
Aug
2025

Operator of ‘Rapper Bot’ DDoS Botnet Faces Charges

Federal authorities have charged a 22-year-old Oregon man with operating one of the most powerful distributed denial-of-service (DDoS) botnets ever…

CISOs need to think about risks before rushing into AI
21
Aug
2025

CISOs need to think about risks before rushing into AI

Organizations are increasing investments in cloud, AI, and emerging technologies, but their infrastructure and security strategies often lag behind. A…

Static Tundra, Energetic Bear, Cisco, Critical Infrastructure
21
Aug
2025

Russia’s FSB-Linked Hackers Targeting Cisco Network Gear

How often do you hear people talking about issues of legacy systems—especially in critical infrastructure environments? Here’s another example of…