New EtherRAT backdoor surfaces in React2Shell attacks tied to North Korea

2 months ago

NK-linked hackers are likely exploiting the React2Shell flaw to deploy a newly discovered remote access trojan, dubbed EtherRAT. North Korea–linked…

U.S. CISA adds Microsoft Windows and WinRAR flaws to its Known Exploited Vulnerabilities catalog

2 months ago

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Microsoft Windows and WinRAR flaws to its Known Exploited Vulnerabilities catalog. The…

Microsoft Patch Tuesday security updates for December 2025 fixed an actively exploited zero-day<gwmw style="display:none;"></gwmw>

2 months ago

Microsoft Patch Tuesday security updates for December 2025 address 57 vulnerabilities, including three critical flaws. Microsoft Patch Tuesday security updates…

Ivanti warns customers of new EPM flaw enabling remote code execution

2 months ago

Ivanti warns users to address a newly disclosed Endpoint Manager vulnerability that could let attackers execute code remotely. Software firm…

Broadside botnet hits TBK DVRs, raising alarms for maritime logistics

2 months ago

Mirai-based Broadside botnet targets vulnerable TBK Vision DVRs, posing a potential threat to the maritime logistics sector, Cydome warns. Cydome…

Polish Police arrest 3 Ukrainians for possessing advanced hacking tools

2 months ago

Poland arrested three Ukrainian nationals accused of using hacking devices to target IT systems and obtain sensitive defense-related data. Polish…

FinCEN data shows $4.5B in ransomware payments, record spike in 2023

2 months ago

Ransomware payments reported to FinCEN exceeded $4.5B by 2024, with 2023 marking a record year at $1.1B across 1,512 incidents.…

FBI: Crooks manipulate online photos to fuel virtual kidnapping ransoms

2 months ago

The FBI warns of criminals altering images shared on social media and using them as fake proof of life photos…

Oracle EBS zero-day used by Clop to breach Barts Health NHS

2 months ago

Clop ransomware stole data from Barts Health NHS after exploiting a zero-day in its Oracle E-Business Suite. Barts Health NHS…

AWS: China-linked threat actors weaponized React2Shell hours after disclosure

2 months ago

Multiple China-linked threat actors began exploiting the CVE-2025-55182, aka React2Shell flaw, within hours, AWS Security warns. Multiple China-linked threat actors…

This website uses cookies.