Source: hackread.com – Author: Waqas. ClickFunnels is investigating a data breach after hackers leaked detailed business data, including emails, phone numbers, and company profiles. A hacking...
Day: May 7, 2025
Israeli NSO Group Fined $168M for Pegasus Spyware Attack on WhatsApp – Source:hackread.com
Source: hackread.com – Author: Waqas. US jury orders NSO Group to pay $168M to WhatsApp and Meta over Pegasus spyware use in 2019 hack. Meta calls...
‘CoGUI’ Phishing Kit Helps Chinese Hackers Target Japan – Source: www.darkreading.com
Source: www.darkreading.com – Author: Nate Nelson, Contributing Writer Please enable cookies. Sorry, you have been blocked You are unable to access darkreading.com Why have I been...
TikTok Fined €530 Million Over Chinese Access to EU Data – Source: www.darkreading.com
Source: www.darkreading.com – Author: Becky Bracken Please enable cookies. Sorry, you have been blocked You are unable to access darkreading.com Why have I been blocked? This...
Meta Wins Lawsuit Against Spyware Vendor NSO Group – Source: www.darkreading.com
Source: www.darkreading.com – Author: Kristina Beek, Associate Editor, Dark Reading Please enable cookies. Sorry, you have been blocked You are unable to access darkreading.com Why have...
Play Ransomware Group Used Windows Zero-Day – Source: www.darkreading.com
Source: www.darkreading.com – Author: Jai Vijayan, Contributing Writer Please enable cookies. Sorry, you have been blocked You are unable to access darkreading.com Why have I been...
‘Bring Your Own Installer’ Attack Targets SentinelOne EDR – Source: www.darkreading.com
Source: www.darkreading.com – Author: Alexander Culafi, Senior News Writer, Dark Reading Please enable cookies. Sorry, you have been blocked You are unable to access darkreading.com Why...
Infrastructure as Code: An IaC Guide to Cloud Security – Source: www.darkreading.com
Source: www.darkreading.com – Author: Jatin Mannepalli Please enable cookies. Sorry, you have been blocked You are unable to access darkreading.com Why have I been blocked? This...
Pakistani Firm Shipped Fentanyl Analogs, Scams to US – Source: krebsonsecurity.com
Source: krebsonsecurity.com – Author: BrianKrebs A Texas firm recently charged with conspiring to distribute synthetic opioids in the United States is at the center of a...
Europol Shuts Down Six DDoS-for-Hire Services Used in Global Attacks – Source:thehackernews.com
Source: thehackernews.com – Author: . Europol has announced the takedown of distributed denial of service (DDoS)-for-hire services that were used to launch thousands of cyber-attacks across...
OttoKit WordPress Plugin with 100K+ Installs Hit by Exploits Targeting Multiple Flaws – Source:thehackernews.com
Source: thehackernews.com – Author: . A second security flaw impacting the OttoKit (formerly SureTriggers) WordPress plugin has come under active exploitation in the wild. The vulnerability,...
SysAid Patches 4 Critical Flaws Enabling Pre-Auth RCE in On-Premise Version – Source:thehackernews.com
Source: thehackernews.com – Author: . Cybersecurity researchers have disclosed multiple security flaw in the on-premise version of SysAid IT support software that could be exploited to...
Reevaluating SSEs: A Technical Gap Analysis of Last-Mile Protection – Source:thehackernews.com
Source: thehackernews.com – Author: . Security Service Edge (SSE) platforms have become the go-to architecture for securing hybrid work and SaaS access. They promise centralized enforcement,...
Play Ransomware Exploited Windows CVE-2025-29824 as Zero-Day to Breach U.S. Organization – Source:thehackernews.com
Source: thehackernews.com – Author: . Threat actors with links to the Play ransomware family exploited a recently patched security flaw in Microsoft Windows as a zero-day...
Researchers Uncover Malware in Fake Discord PyPI Package Downloaded 11,500+ Times – Source:thehackernews.com
Source: thehackernews.com – Author: . Cybersecurity researchers have discovered a malicious package on the Python Package Index (PyPI) repository that masquerades as a seemingly harmless Discord-related...
Canary Exploit tool allows to find servers affected by Apache Parquet flaw – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini F5 Labs researchers released a PoC tool to find servers vulnerable to the Apache Parquet vulnerability CVE-2025-30065. A working proof-of-concept...
Unsophisticated cyber actors are targeting the U.S. Energy sector – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini CISA, FBI, EPA, and DoE warn of cyberattacks on the U.S. Energy sector carried out by unsophisticated cyber actors targeting...
NSO Group must pay WhatsApp over $167M in damages for attacks on its users – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini NSO Group must pay WhatsApp over $167M in damages for a 2019 hack targeting 1,400+ users, per U.S. jury ruling...
U.S. CISA adds FreeType flaw to its Known Exploited Vulnerabilities catalog – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds FreeType flaw to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure...
Samsung MagicINFO flaw exploited days after PoC exploit publication – Source: securityaffairs.com
Source: securityaffairs.com – Author: Pierluigi Paganini Threat actors started exploiting a vulnerability in Samsung MagicINFO only days after a PoC exploit was published. Arctic Wolf researchers...
New UK Framework Pressures Vendors on SBOMs, Patching and Default MFA – Source: www.securityweek.com
Source: www.securityweek.com – Author: Ryan Naraine The UK government on Wednesday is moving to codify “secure-by-default” expectations for software makers with the rollout of a voluntary...
The AI Fix #49: The typo from hell – Source: grahamcluley.com
Source: grahamcluley.com – Author: Graham Cluley In episode 49 of The AI Fix, OpenAI kills off a sycophantic bot, our hosts are introduced to a prophetic...
Inferno Drainer Returns, Stealing Millions from Crypto Wallets – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: A sophisticated phishing campaign has reintroduced Inferno Drainer, a notorious crypto-draining tool that targets users through deceptive Discord interactions. Despite claims of its shutdown...
“Nationally Significant” Cyber-Attacks Have Doubled, UK’s NCSC Reports – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: The UK National Cyber Security Centre (NCSC) has managed twice as many “nationally significant” cyber incidents from September 2024 to May 2025...
DDoS-for-Hire Network Dismantled in International Operation – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: A criminal operation offering DDoS-for-hire services has been shut down by Polish authorities, who arrested four individuals believed to be behind a...
Passkeys Set to Protect GOV.UK Accounts Against Cyber-Attacks – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: The UK government has unveiled plans to roll out passkeys across its digital services as it seeks to reduce the risk of...
NSO Group Hit with $168m Fine for WhatsApp Pegasus Spyware Abuse – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: For the first time, after years of legal proceedings over its use of spy tools targeting politicians, activists, journalists and civil society...
UK Government Warns Retail Attacks Must Serve as a “Wake-up Call” – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: The recent wave of cyber-attacks on UK retailers should serve as a “wake-up call” for businesses across the country, a senior government...
UK Cyber Insurance Claims Second Highest on Record – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: UK companies filed more cyber insurance claims last year than any other bar 2023, with ransomware breaches largely to blame, according to...