Security News > 2025 > April

BlueToolkit: Open-source Bluetooth Classic vulnerability testing framework
2025-04-02 04:30

BlueToolkit is an open-source tool that helps find security flaws in Bluetooth Classic devices. It runs known and custom exploits to test if a device is vulnerable. Right now, it includes 43...

Only 1% of malicious emails that reach inboxes deliver malware
2025-04-02 04:00

99% of email threats reaching corporate user inboxes in 2024 were response-based social engineering attacks or contained phishing links, according to Fortra. Only 1% of malicious emails that...

Your smart home may not be as secure as you think
2025-04-02 03:30

The Internet of Things (IoT) has become a major part of daily life. Smartphones, smart thermostats, security cameras, and other connected devices make tasks easier and improve comfort, efficiency,...

Forget Signal. National Security Adviser Waltz now accused of using Gmail for work
2025-04-02 01:36

But his emails! Sharing them with Google! Senior members of the US National Security Council, including the White House national security adviser Michael Waltz, have been accused of using their...

New Windows 11 trick lets you bypass Microsoft Account requirement
2025-04-01 21:33

A previously unknown trick lets you easily bypass using a Microsoft Account in Windows 11, just as Microsoft tries to make it harder to use local accounts. [...]

Developers Wanted: OpenAI Seeks Feedback About Open Model That Will Be Revealed ‘In the Coming Months’
2025-04-01 20:38

Find out how to provide OpenAI with your input about its upcoming open language model, which Sam Altman stated will be a "reasoning" model like OpenAI o1.

North Korean IT worker army expands operations in Europe
2025-04-01 18:55

​North Korea's IT workers have expanded operations beyond the United States and are now increasingly targeting organizations across Europe. [...]

We Smell a (DC)Rat: Revealing a Sophisticated Malware Delivery Chain
2025-04-01 17:30

A RAR file, a fake summons, and a Nietzsche quote—all part of a multi-stage malware chain delivering DCRat & Rhadamanthys. Acronis TRU breaks down how attackers use VBS, batch, and PowerShell...

Over 1,500 PostgreSQL Servers Compromised in Fileless Cryptocurrency Mining Campaign
2025-04-01 17:08

Exposed PostgreSQL instances are the target of an ongoing campaign designed to gain unauthorized access and deploy cryptocurrency miners. Cloud security firm Wiz said the activity is a variant of...

Apple fined €150 million over App Tracking Transparency issues
2025-04-01 16:37

Autorité de la concurrence, France's antitrust watchdog, has fined Apple €150 million ($162 million) for using the App Tracking Transparency privacy framework to abuse its dominant market position...