Security News > 2025 > February

New Linux Malware ‘Auto-Color’ Grants Hackers Full Remote Access to Compromised Systems
2025-02-26 11:04

Universities and government organizations in North America and Asia have been targeted by a previously undocumented Linux malware called Auto-Color between November and December 2024, according to...

Three Password Cracking Techniques and How to Defend Against Them
2025-02-26 10:56

Passwords are rarely appreciated until a security breach occurs; suffice to say, the importance of a strong password becomes clear only when faced with the consequences of a weak one. However,...

CERT-UA Warns of UAC-0173 Attacks Deploying DCRat to Compromise Ukrainian Notaries
2025-02-26 10:53

The Computer Emergency Response Team of Ukraine (CERT-UA) on Tuesday warned of renewed activity from an organized criminal group it tracks as UAC-0173 that involves infecting computers with a...

Malicious PyPI Package "automslc" Enables 104K+ Unauthorized Deezer Music Downloads
2025-02-26 10:40

Cybersecurity researchers have flagged a malicious Python library on the Python Package Index (PyPI) repository that facilitates unauthorized music downloads from music streaming service Deezer....

200-plus impressively convincing GitHub repos are serving up malware
2025-02-26 07:35

Plus: DOGE staff quit; LastPass PC, Mac gasp; and CISA warns Oracle and Adobe flaws under attack Infosec bytes Kaspersky says it has found more than 200 GitHub repos hosting fairly...

Windows 11 KB5052093 update released with 33 changes and fixes
2025-02-26 06:43

Microsoft has released the February 2025 preview cumulative update for Windows 11 24H2, with 33 improvements and fixes for multiple issues, including SSH and File Explorer bugs and the volume...

Windows 11 24H2 upgrades now blocked for some AutoCAD users
2025-02-26 06:12

Microsoft has introduced a new Windows 11 24H2 upgrade block for systems with AutoCAD 2022, addressing compatibility issues that prevent the program from launching. [...]

The compliance illusion: Why your company might be at risk despite passing audits
2025-02-26 06:00

For many CISOs, compliance can feel like a necessary evil and a false sense of security. While frameworks like ISO 27001, SOC 2, and PCI DSS offer structured guidelines, they don’t automatically...

Dalfox: Open-source XSS scanner
2025-02-26 05:30

DalFox is an open-source tool for automating the detection of XSS vulnerabilities. With powerful testing capabilities and a wide range of features, it makes scanning, analyzing parameters, and...

How enterprise leaders can secure and govern agentic AI
2025-02-26 05:00

In this Help Net Security video, Nataraj Nagaratnam, an IBM Fellow and CTO for Cloud Security, discusses enterprises’ steps to lay a secure foundation for agentic AI deployments. Recent research...

#AI