Security News > 2025 > March

CISA: Medusa ransomware hit over 300 critical infrastructure orgs
2025-03-12 19:26

CISA says the Medusa ransomware operation has impacted over 300 organizations in critical infrastructure sectors in the United States until last month. [...]

Patch Tuesday: Microsoft Fixes 57 Security Flaws – Including Active Zero-Days
2025-03-12 19:02

Microsoft's March 2025 Patch Tuesday includes six actively exploited zero-day vulnerabilities. Learn about the critical vulnerabilities and why immediate updates are essential.

New North Korean Android spyware slips onto Google Play
2025-03-12 17:35

A new Android spyware named 'KoSpy' is linked to North Korean threat actors who have infiltrated Google Play and third-party app store APKPure through at least five malicious apps. [...]

Garantex crypto exchange admin arrested while on vacation
2025-03-12 17:19

Indian authorities arrested Aleksej Besciokov, the co-founder and one of the administrators of the Russian Garantex crypto-exchange while vacationing with his family in Varkala, India. [...]

Goodbye passwords? Enterprises ramping up passkey adoption
2025-03-12 16:00

87% of companies have, or are in the midst of, rolling out passkeys with goals tied to improved user experience, enhanced security, and compliance, according to the FIDO Alliance. Key findings...

Mozilla warns users to update Firefox before certificate expires
2025-03-12 15:01

Mozilla is warning Firefox users to update their browsers to the latest version to avoid facing disruption and security risks caused by the upcoming expiration of one of the company's root...

Microsoft patches Windows Kernel zero-day exploited since 2023
2025-03-12 14:30

Slovak cybersecurity company ESET says a newly patched zero-day vulnerability in the Windows Win32 Kernel Subsystem has been exploited in attacks since March 2023. [...]

Chinese Hackers Breach Juniper Networks Routers With Custom Backdoors and Rootkits
2025-03-12 14:08

The China-nexus cyber espionage group tracked as UNC3886 has been observed targeting end-of-life MX routers from Juniper Networks as part of a campaign designed to deploy custom backdoors,...

Browser-Based Data Leaks: 3 Biggest Data Security Challenges Today
2025-03-12 14:02

Traditional Data Loss Prevention (DLP) solutions weren't built for today's browser-driven workplace. Now sensitive data moves moves through SaaS apps, AI tools, and personal accounts, bypassing...

Expired Juniper routers find new life – as Chinese spy hubs
2025-03-12 14:00

Fewer than 10 known victims, but Mandiant suspects others compromised, too Chinese spies have for months exploited old Juniper Networks routers, infecting the buggy gear with custom backdoors and...