Source: www.infosecurity-magazine.com – Author: A new investigation into counterfeit receipt scams has uncovered a growing fraud ecosystem centered around tools like MaisonReceipts, which enable users to...
Day: July 21, 2025
Accounting Firm Targeted by Malware Campaign Using New Crypter – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: A cyber-attack on a US-based accounting firm in May 2025 has been observed delivering the PureRAT remote access Trojan using a sophisticated...
New CrushFTP Critical Vulnerability Exploited in the Wild – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: At least 10,000 CrushFTP instances are vulnerable to a critical flaw, which is currently being exploited by attackers, affecting the file transfer...
Microsoft: Attackers Actively Compromising On-Prem SharePoint Customers – Source: www.infosecurity-magazine.com
Source: www.infosecurity-magazine.com – Author: Microsoft has warned that attackers are actively exploiting SharePoint vulnerabilities in a high-impact, ongoing campaign impacting critical sectors like government and healthcare....
Europol targets Kremlin-backed cybercrime gang NoName057(16) – Source: www.bitdefender.com
Source: www.bitdefender.com – Author: Graham Cluley A pro-Kremlin cybercrime network has been taken offline after an international law enforcement operation disrupted over 100 of its servers,...
750,000 Impacted by Data Breach at The Alcohol & Drug Testing Service – Source: www.securityweek.com
Source: www.securityweek.com – Author: Ionut Arghire The Alcohol & Drug Testing Service (TADTS) is notifying roughly 750,000 people that their personal information was compromised in a...
In Other News: Law Firm Hacked by China, Symantec Flaw, Meta AI Hack, FIDO Key Bypass – Source: www.securityweek.com
Source: www.securityweek.com – Author: SecurityWeek News SecurityWeek’s cybersecurity news roundup provides a concise compilation of noteworthy stories that might have slipped under the radar. We provide...
Four new Android spyware samples linked to Iran’s intel agency – Source: go.theregister.com
Source: go.theregister.com – Author: Jessica Lyons Four new samples of Android spyware linked to the Iranian Ministry of Intelligence and Security (MOIS) that collects WhatsApp data,...
Alaska Airlines grounded itself due to mysterious IT problem – Source: go.theregister.com
Source: go.theregister.com – Author: Simon Sharwood UPDATED US carrier Alaska Airlines has grounded its fleet due to an unspecified IT issue. At the time of writing,...
Japan discovers object out beyond Pluto that rewrites the Planet 9 theory – Source: go.theregister.com
Source: go.theregister.com – Author: Simon Sharwood Asia In Brief Japan’s National Astronomical Observatory last week announced the discovery of a small body with an orbit beyond...
Microsoft patches failed to fix on-prem SharePoint, which is now under zero-day attack – Source: go.theregister.com
Source: go.theregister.com – Author: Iain Thomson Infosec In Brief Microsoft has warned users of SharePoint Server that three on-prem versions of the product include a zero-day...
PoisonSeed Hackers Bypass FIDO Keys Using QR Phishing and Cross-Device Sign-In Abuse – Source:thehackernews.com
Source: thehackernews.com – Author: . Cybersecurity researchers have disclosed a novel attack technique that allows threat actors to downgrade Fast IDentity Online (FIDO) key protections by...
Microsoft Releases Urgent Patch for SharePoint RCE Flaw Exploited in Ongoing Cyber Attacks – Source:thehackernews.com
Source: thehackernews.com – Author: . Microsoft on Sunday released security patches for an actively exploited security flaw in SharePoint and also disclosed details of another vulnerability...
Hard-Coded Credentials Found in HPE Instant On Devices Allow Admin Access – Source:thehackernews.com
Source: thehackernews.com – Author: . Hewlett-Packard Enterprise (HPE) has released security updates to address a critical security flaw affecting Instant On Access Points that could allow...
3,500 Websites Hijacked to Secretly Mine Crypto Using Stealth JavaScript and WebSocket Tactics – Source:thehackernews.com
Source: thehackernews.com – Author: . A new attack campaign has compromised more than 3,500 websites worldwide with JavaScript cryptocurrency miners, marking the return of browser-based cryptojacking...
Rumble in the jungle: APT41’s new target in Africa – Source: securelist.com
Source: securelist.com – Author: Denis Kulik, Daniil Pogorelov Introduction Some time ago, Kaspersky MDR analysts detected a targeted attack against government IT services in the African...