Security News > 2025

Exploit details for max severity Cisco IOS XE flaw now public
2025-05-31 14:09

Technical details about a maximum-severity Cisco IOS XE WLC arbitrary file upload flaw tracked as CVE-2025-20188 have been made publicly available, bringing us closer to a working exploit. [...]

Mysterious leaker GangExposed outs Conti kingpins in massive ransomware data dump
2025-05-31 10:23

'It's a high-stakes intelligence war' he told El Reg exclusive A mystery whistleblower calling himself GangExposed has exposed key figures behind the Conti and Trickbot ransomware crews,...

New Linux Flaws Allow Password Hash Theft via Core Dumps in Ubuntu, RHEL, Fedora
2025-05-31 10:19

Two information disclosure flaws have been identified in apport and systemd-coredump, the core dump handlers in Ubuntu, Red Hat Enterprise Linux, and Fedora, according to the Qualys Threat...

U.S. DoJ Seizes 4 Domains Supporting Cybercrime Crypting Services in Global Operation
2025-05-31 07:16

A multinational law enforcement operation has resulted in the takedown of an online cybercrime syndicate that offered services to threat actors to ensure that their malicious software stayed...

Hackers are exploiting critical flaw in vBulletin forum software
2025-05-30 19:26

Two critical vulnerabilities affecting the open-source forum software vBulletin have been discovered, with one confirmed to be actively exploited in the wild. [...]

ConnectWise customers get mysterious warning about 'sophisticated' nation-state hack
2025-05-30 19:01

Pen tester on ScreenConnect bug: This one ‘terrifies’ me ConnectWise has brought in the big guns to investigate a "sophisticated nation state actor" that broke into its IT environment and then...

Microsoft now testing Notepad text formatting in Windows 11
2025-05-30 18:41

Microsoft announced today that the Windows 11 Notepad application is getting a text formatting feature supporting Markdown-style input. [...]

Feds arrest DoD techie, claim he dumped top secret files in park for foreign spies to find
2025-05-30 18:29

28-year-old alleged to have made multiple drops to folks who turned out to be undercover FBI agents A Defense Intelligence Agency (DIA) IT specialist is scheduled to appear in court today after...

US medical org pays $50M+ to settle case after crims raided data and threatened to swat cancer patients
2025-05-30 17:35

Cash splashed on damages, infrastructure improvements, and fraud monitoring A Seattle cancer facility has agreed to fork out around $52.5 million as part of a class action settlement linked to a...

Police takes down AVCheck site used by cybercriminals to scan malware
2025-05-30 16:46

An international law enforcement operation has taken down AVCheck, a service used by cybercriminals to test whether their malware is detected by commercial antivirus software before deploying it...