Security News > 2025 > April

Your smart home may not be as secure as you think
2025-04-02 03:30

The Internet of Things (IoT) has become a major part of daily life. Smartphones, smart thermostats, security cameras, and other connected devices make tasks easier and improve comfort, efficiency,...

Forget Signal. National Security Adviser Waltz now accused of using Gmail for work
2025-04-02 01:36

But his emails! Sharing them with Google! Senior members of the US National Security Council, including the White House national security adviser Michael Waltz, have been accused of using their...

New Windows 11 trick lets you bypass Microsoft Account requirement
2025-04-01 21:33

A previously unknown trick lets you easily bypass using a Microsoft Account in Windows 11, just as Microsoft tries to make it harder to use local accounts. [...]

Developers Wanted: OpenAI Seeks Feedback About Open Model That Will Be Revealed ‘In the Coming Months’
2025-04-01 20:38

Find out how to provide OpenAI with your input about its upcoming open language model, which Sam Altman stated will be a "reasoning" model like OpenAI o1.

North Korean IT worker army expands operations in Europe
2025-04-01 18:55

​North Korea's IT workers have expanded operations beyond the United States and are now increasingly targeting organizations across Europe. [...]

We Smell a (DC)Rat: Revealing a Sophisticated Malware Delivery Chain
2025-04-01 17:30

A RAR file, a fake summons, and a Nietzsche quote—all part of a multi-stage malware chain delivering DCRat & Rhadamanthys. Acronis TRU breaks down how attackers use VBS, batch, and PowerShell...

Over 1,500 PostgreSQL Servers Compromised in Fileless Cryptocurrency Mining Campaign
2025-04-01 17:08

Exposed PostgreSQL instances are the target of an ongoing campaign designed to gain unauthorized access and deploy cryptocurrency miners. Cloud security firm Wiz said the activity is a variant of...

Apple fined €150 million over App Tracking Transparency issues
2025-04-01 16:37

Autorité de la concurrence, France's antitrust watchdog, has fined Apple €150 million ($162 million) for using the App Tracking Transparency privacy framework to abuse its dominant market position...

Attackers are targeting CrushFTP vulnerability with public PoC (CVE-2025-2825)
2025-04-01 15:35

Exploitation attempts targeting the CVE-2025-2825 vulnerability on internet-facing CrushFTP instances are happening, the Shadowserver Foundation has shared on Monday, and the attackers have been...

Enterprise Gmail Users Can Now Send End-to-End Encrypted Emails to Any Platform
2025-04-01 15:34

On the 21st birthday of Gmail, Google has announced a major update that allows enterprise users to send end-to-end encrypted (E2EE) to any user in any email inbox in a few clicks. The feature is...