Security News > 2025

China-Linked Cyber Threat Group Hacks US Treasury Department
2025-01-02 19:45

Threat actors entered Treasury Department systems through BeyondTrust. The breach may be related to the Salt Typhoon attacks reported throughout the year.

Chinese hackers targeted sanctions office in Treasury attack
2025-01-02 18:09

​Chinese state-backed hackers have reportedly breached the Office of Foreign Assets Control (OFAC), a Treasury Department office that administers and enforces trade and economic sanctions programs. [...]

Over 3 million mail servers without encryption exposed to sniffing attacks
2025-01-02 15:54

Over three million POP3 and IMAP mail servers without TLS encryption are currently exposed on the Internet and vulnerable to network sniffing attacks. [...]

Severe Security Flaws Patched in Microsoft Dynamics 365 and Power Apps Web API
2025-01-02 12:53

Details have emerged about three now-patched security vulnerabilities in Dynamics 365 and Power Apps Web API that could result in data exposure. The flaws, discovered by Melbourne-based...

Cross-Domain Attacks: A Growing Threat to Modern Security and How to Combat Them
2025-01-02 10:53

In the past year, cross-domain attacks have gained prominence as an emerging tactic among adversaries. These operations exploit weak points across multiple domains – including endpoints, identity...

Malicious Obfuscated NPM Package Disguised as an Ethereum Tool Deploys Quasar RAT
2025-01-02 07:45

Cybersecurity researchers have discovered a malicious package on the npm package registry that masquerades as a library for detecting vulnerabilities in Ethereum smart contracts but, in reality,...

Three Russian-German Nationals Charged with Espionage for Russian Secret Service
2025-01-02 07:25

German prosecutors have charged three Russian-German nationals for acting as secret service agents for Russia. The individuals, named Dieter S., Alexander J., and Alex D., have been accused of...

When risky cybersecurity behavior becomes a habit among employees
2025-01-02 05:30

While the majority of employees avoid risky behaviors, a small subset makes them a habit, posing a significant cybersecurity challenge, according to Mimecast. 48% of employees engaged in behaviors...

Kata Containers: Open-source container runtime, building lightweight VMs
2025-01-02 05:00

Kata Containers is an open-source project dedicated to creating a secure container runtime that combines the performance and simplicity of containers with the enhanced isolation of lightweight...

CISOs don’t invest enough in code security
2025-01-02 04:30

72% of security leaders agree that the age of AI necessitates a complete reset of how organizations approach application security, according to Cycode. This urgency is reinforced by the fact that...