Security News > 2025 > February

Crypto-stealing iOS, Android malware found on App Store, Google Play
2025-02-05 11:09

A number of iOS and Android apps on Apple’s and Google’s official app stores contain a software development kit (SDK) that allows them to exfiltrate cryptowallets’ seed recovery phrases, Kaspersky...

Navigating the Future: Key IT Vulnerability Management Trends
2025-02-05 11:00

As the cybersecurity landscape continues to evolve, proactive vulnerability management has become a critical priority for managed service providers (MSPs) and IT teams. Recent trends indicate that...

AsyncRAT Campaign Uses Python Payloads and TryCloudflare Tunnels for Stealth Attacks
2025-02-05 09:40

A malware campaign has been observed delivering a remote access trojan (RAT) named AsyncRAT by making use of Python payloads and TryCloudflare tunnels. "AsyncRAT is a remote access trojan (RAT)...

CISA Adds Four Actively Exploited Vulnerabilities to KEV Catalog, Urges Fixes by Feb 25
2025-02-05 05:05

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added four security flaws to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation...

OpenNHP: Cryptography-driven zero trust protocol
2025-02-05 05:00

OpenNHP is the open-source implementation of NHP (Network-resource Hiding Protocol), a cryptography-based zero trust protocol for safeguarding servers and data. OpenNHP offers the following...

The API security crisis and why businesses are at risk
2025-02-05 04:30

In this Help Net Security video, Ivan Novikov, CEO of Wallarm, discusses the 2025 API ThreatStats Report, highlighting how APIs have become the primary attack surface over the past year, mainly...

More destructive cyberattacks target financial institutions
2025-02-05 04:00

Financial institutions will continue to be the ultimate targets for criminals and threat actors, as a successful attack offers a significant payoff, according to Contrast Security. Contrast...

Sophos Acquires Secureworks for $859 Million
2025-02-04 23:41

Sophos has completed its acquisition of managed cyber security services provider Secureworks.

Google: How to make any AMD Zen CPU always generate 4 as a random number
2025-02-04 23:30

Malicious microcode vulnerability discovered, fixes rolling out for Epycs at least Googlers have not only figured out how to break AMD's security – allowing them to load unofficial microcode into...

UK Announces ‘World-First’ Cyber Code of Practice for Companies Developing AI
2025-02-04 21:28

The Cyber Code of Practice applies to developers, system operators, and organisations that create, deploy, or manage AI systems.