information security news

An APT group exploited ESET flaw to execute malware<gwmw style="display:none;"></gwmw>An APT group exploited ESET flaw to execute malware<gwmw style="display:none;"></gwmw>

An APT group exploited ESET flaw to execute malware<gwmw style="display:none;"></gwmw>

At least one APT group has exploited a vulnerability in ESET software to stealthily execute malware, bypassing security measures. Kaspersky…

2 months ago
Oracle confirms the hack of two obsolete servers hacked. No Oracle Cloud systems or customer data were affectedOracle confirms the hack of two obsolete servers hacked. No Oracle Cloud systems or customer data were affected

Oracle confirms the hack of two obsolete servers hacked. No Oracle Cloud systems or customer data were affected

Oracle confirmed a hacker stole credentials from two obsolete servers but said no Oracle Cloud systems or customer data were…

2 months ago
National Social Security Fund of Morocco Suffers Data BreachNational Social Security Fund of Morocco Suffers Data Breach

National Social Security Fund of Morocco Suffers Data Breach

Threat actor 'Jabaroot' claims breach of National Social Security Fund of Morocco, aiming to steal large volumes of sensitive citizen…

2 months ago
Critical Fortinet FortiSwitch flaw allows remote attackers to change admin passwords<gwmw style="display:none;"></gwmw><gwmw style="display:none;"></gwmw>Critical Fortinet FortiSwitch flaw allows remote attackers to change admin passwords<gwmw style="display:none;"></gwmw><gwmw style="display:none;"></gwmw>

Critical Fortinet FortiSwitch flaw allows remote attackers to change admin passwords<gwmw style="display:none;"></gwmw><gwmw style="display:none;"></gwmw>

Fortinet addressed a critical vulnerability in its FortiSwitch devices that can be exploited to change administrator passwords remotely. Fortinet has…

2 months ago
The US Treasury’s OCC disclosed an undetected major email breach for over a yearThe US Treasury’s OCC disclosed an undetected major email breach for over a year

The US Treasury’s OCC disclosed an undetected major email breach for over a year

The US Office of the Comptroller of the Currency (OCC) disclosed a major email breach compromising 100 accounts, undetected for…

2 months ago
U.S. CISA adds Gladinet CentreStack and ZTA Microsoft Windows Common Log File System (CLFS) Driver flaws to its Known Exploited Vulnerabilities catalogU.S. CISA adds Gladinet CentreStack and ZTA Microsoft Windows Common Log File System (CLFS) Driver flaws to its Known Exploited Vulnerabilities catalog

U.S. CISA adds Gladinet CentreStack and ZTA Microsoft Windows Common Log File System (CLFS) Driver flaws to its Known Exploited Vulnerabilities catalog

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Gladinet CentreStack and ZTA Microsoft Windows Common Log File System (CLFS) Driver…

2 months ago
WhatsApp fixed a spoofing flaw that could enable Remote Code ExecutionWhatsApp fixed a spoofing flaw that could enable Remote Code Execution

WhatsApp fixed a spoofing flaw that could enable Remote Code Execution

WhatsApp addressed a flaw, tracked as CVE-2025-30401, that could allow attackers to trick users and enable remote code execution. WhatsApp…

2 months ago
Everest ransomware group’s Tor leak site offline after a defacementEverest ransomware group’s Tor leak site offline after a defacement

Everest ransomware group’s Tor leak site offline after a defacement

The Tor leak site of the Everest ransomware group went offline after being hacked and defaced over the weekend. The…

2 months ago
Google fixed two actively exploited Android zero-daysGoogle fixed two actively exploited Android zero-days

Google fixed two actively exploited Android zero-days

Google addressed 62 vulnerabilities with the release of Android 's April 2025 security update, including two actively exploited zero-days. Google…

2 months ago
U.S. CISA adds Ivanti Connect Secure, Policy Secure and ZTA Gateways flaw to its Known Exploited Vulnerabilities catalogU.S. CISA adds Ivanti Connect Secure, Policy Secure and ZTA Gateways flaw to its Known Exploited Vulnerabilities catalog

U.S. CISA adds Ivanti Connect Secure, Policy Secure and ZTA Gateways flaw to its Known Exploited Vulnerabilities catalog

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Ivanti Connect Secure, Policy Secure and ZTA Gateways flaw to its Known…

2 months ago