Security News > 2025 > April

Microsoft vulnerabilities: What’s improved, what’s at risk
2025-04-17 05:00

Microsoft reported a record 1,360 vulnerabilities in 2024, according to the latest BeyondTrust Microsoft Vulnerabilities Report. The volume marks an 11% increase from the previous record in 2022...

Inside PlugValley: How this AI vishing-as-a-service group operates
2025-04-17 04:30

In this Help Net Security video, Alexis Ober, Threat Intel Analyst at Fortra, discusses the threat actor group PlugValley, which is now offering AI-powered vishing-as-a-service. Rather than...

Review: Hands-On Industrial Internet of Things
2025-04-17 04:00

Hands-On Industrial Internet of Things is a practical guide designed specifically for professionals building and securing industrial IoT (IIoT) systems. About the authors Giacomo Veneri brings...

Apple Patches Two Actively Exploited iOS Flaws Used in Sophisticated Targeted Attacks
2025-04-17 03:33

Apple on Wednesday released security updates for iOS, iPadOS, macOS Sequoia, tvOS, and visionOS to address two security flaws that it said have come under active exploitation in the wild. The...

Whistleblower describes DOGE IT dept rampage at America's labor watchdog
2025-04-17 02:46

Ignored infosec rules, exfiltrated data … then the mysterious login attempts from a Russian IP address began – claim Democratic lawmakers are calling for an investigation after a tech staffer at...

Free Blue Screens of Death for Windows 11 24H2 users
2025-04-16 21:16

Microsoft rewards those who patch early with bricks hurled through its operating system Keeping with its rich history of updates that break Windows in unexpected ways, Microsoft has warned that...

Signalgate chats vanish from CIA chief phone
2025-04-16 20:58

Extraordinary rendition of data, or just dropped it out of a helicopter? CIA Director John Ratcliffe's smartphone has almost no trace left of the infamous Signalgate chat – the one in which he and...

Over 16,000 Fortinet devices compromised with symlink backdoor
2025-04-16 20:47

Over 16,000 internet-exposed Fortinet devices have been detected as compromised with a new symlink backdoor that allows read-only access to sensitive files on previously compromised devices. [...]

Google blocked over 5 billion ads in 2024 amid rise in AI-powered scams
2025-04-16 19:16

Google blocked 5.1 billion ads and suspended more than 39.2 million advertiser accounts in 2024, according to its 2024 Ads Safety Report released this week. [...]

Developers Beware: Slopsquatting & Vibe Coding Can Increase Risk of AI-Powered Attacks
2025-04-16 19:09

Slopsquatting and vibe coding are fueling a new wave of AI-driven cyberattacks, exposing developers to hidden risks through fake, hallucinated packages.