Tuesday, April 1, 2025

Cyber Security News

Rockwell Automation Vulnerability Allows Attackers to Execute Arbitrary Commands

0
Rockwell Automation has identified a critical flaw in its Verve Asset Manager software, exposing industrial systems to potential exploitation.The vulnerability, tracked as CVE-2025-1449, enables attackers with administrative...

Check Point Confirms Data Breach, Says Leaked Information is ‘Old’

0
Cybersecurity giant Check Point has confirmed that a recent post on a notorious dark web forum, BreachForums, attempting to sell allegedly hacked data from...

CrushFTP Security Vulnerability Under Attack After PoC Release

0
A recently disclosed security vulnerability in CrushFTP, identified as CVE-2025-2825, has become the target of active exploitation attempts following the release of publicly available...

CISA Warns of Cisco Smart Licensing Utility Credential Flaw Exploited in Attacks

0
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a security advisory warning organizations about a critical vulnerability in Cisco’s Smart Licensing Utility (SLU)...

Hackers Deploy 24,000 IPs to Breach Palo Alto Networks GlobalProtect

0
A wave of malicious activity targeting Palo Alto Networks PAN-OS GlobalProtect portals has been observed, with nearly 24,000 unique IPs attempting unauthorized access over...

Linux Lite 7.4 Final Released: Enhanced GUI and Bug Fixes

0
Linux Lite, a popular lightweight Linux distribution aimed at making Linux accessible to beginners, has officially released its Linux Lite 7.4 Final version.This release comes with...
Cobalt Strike Malware

Operation HollowQuill – Weaponized PDFs Deliver a Cobalt Strike Malware Into Gov & Military...

0
In a recent revelation by SEQRITE Labs, a highly sophisticated cyber-espionage campaign, dubbed Operation HollowQuill, has been uncovered.The operation targets academic, governmental, and...
SIEM as a Service

Recent News

Crocodilus Exposed

“Crocodilus” A New Malware Targeting Android Devices for Full Takeover

0
Researchers have uncovered a dangerous new mobile banking Trojan dubbed Crocodilus actively targeting financial institutions and cryptocurrency platforms.The malware employs advanced techniques like remote...
FamousSparrow Malware

New FamousSparrow Malware Targets Hotels and Engineering Firms with Custom Backdoor

0
ESET researchers have uncovered new activity from the China-aligned APT group FamousSparrow, revealing two previously undocumented versions of their custom SparrowDoor backdoor.The group, thought...
Deep Learning Models

DeBackdoor: A Framework for Detecting Backdoor Attacks in Deep Learning Models

0
Deep learning models, increasingly integral to safety-critical systems like self-driving cars and medical devices, are vulnerable to stealthy backdoor attacks.These attacks involve injecting...

Large-Scale Phishing Campaign Targets Defense and Aerospace Companies

0
A recent investigation by DomainTools Investigations (DTI) has uncovered a massive phishing infrastructure targeting defense and aerospace entities, particularly those linked to the conflict...
Chinese Lotus Blossom

Chinese Lotus Blossom Hackers leverages Windows Management Instrumentation for Network Movement

0
The Chinese Advanced Persistent Threat (APT) group known as Lotus Blossom, also referred to as Billbug, Thrip, or Spring Dragon, has intensified its cyber-espionage...

Multiple Dell Unity Vulnerabilities Allow Attackers to Compromise Systems

0
Dell Technologies has released a security advisory detailing multiple critical vulnerabilities in its Dell Unity storage systems and related software.These vulnerabilities, if exploited, could...

Check Point Confirms Data Breach, Says Leaked Information is ‘Old’

0
Cybersecurity giant Check Point has confirmed that a recent post on a notorious dark web forum, BreachForums, attempting to sell allegedly hacked data from...
Rust vs C and C++

Researchers Compare Malware Development in Rust vs C and C++

0
Security researcher Nick Cerne from Bishop Fox has published findings comparing malware development in Rust versus traditional C/C++ languages.The research demonstrates how Rust...

U.S. DOJ Seizes $8.2 Million from Hackers Linked to Pig Butchering Scam

0
The U.S. Department of Justice has successfully seized over $8.2 million in cryptocurrency tied to an elaborate "pig butchering" fraud operation that victimized dozens...

Rockwell Automation Vulnerability Allows Attackers to Execute Arbitrary Commands

Rockwell Automation has identified a critical flaw in its Verve Asset Manager software, exposing industrial systems to potential exploitation.The vulnerability, tracked as CVE-2025-1449, enables attackers with administrative...

Linux Lite 7.4 Final Released: Enhanced GUI and Bug Fixes

Linux Lite, a popular lightweight Linux distribution aimed at making Linux accessible to beginners, has officially released its Linux Lite 7.4 Final version.This release comes with...

Hackers Deploy 24,000 IPs to Breach Palo Alto Networks GlobalProtect

A wave of malicious activity targeting Palo Alto Networks PAN-OS GlobalProtect portals has been observed, with nearly 24,000 unique IPs attempting unauthorized access over...

CISA Warns of Cisco Smart Licensing Utility Credential Flaw Exploited in Attacks

The Cybersecurity and Infrastructure Security Agency (CISA) has issued a security advisory warning organizations about a critical vulnerability in Cisco’s Smart Licensing Utility (SLU)...

Check Point Confirms Data Breach, Says Leaked Information is ‘Old’

Cybersecurity giant Check Point has confirmed that a recent post on a notorious dark web forum, BreachForums, attempting to sell allegedly hacked data from...

CrushFTP Security Vulnerability Under Attack After PoC Release

A recently disclosed security vulnerability in CrushFTP, identified as CVE-2025-2825, has become the target of active exploitation attempts following the release of publicly available...

Operation HollowQuill – Weaponized PDFs Deliver a Cobalt Strike Malware Into Gov & Military Networks

In a recent revelation by SEQRITE Labs, a highly sophisticated cyber-espionage campaign, dubbed Operation HollowQuill, has been uncovered.The operation targets academic, governmental, and...

Earth Alux Hackers Use VARGIET Malware to Target Organizations

A new wave of cyberattacks orchestrated by the advanced persistent threat (APT) group Earth Alux has been uncovered, revealing the use of sophisticated malware,...

“Lazarus Hackers Group” No Longer Refer to a Single APT Group But a Collection of Many Sub-Groups

The term "Lazarus Group," once used to describe a singular Advanced Persistent Threat (APT) actor, has evolved to represent a complex network of sub-groups...

Glossary