Security News

FBI: US officials targeted in voice deepfake attacks since April
2025-05-15 18:22

The FBI warned that cybercriminals using AI-generated audio deepfakes to target U.S. officials in voice phishing attacks that started in April. [...]

Hackers behind UK retail attacks now targeting US companies
2025-05-14 19:38

Google warned today that hackers using Scattered Spider tactics against retail chains in the United Kingdom have also started targeting retailers in the United States. [...]

Ransomware gangs join ongoing SAP NetWeaver attacks
2025-05-14 17:39

Ransomware gangs have joined ongoing SAP NetWeaver attacks, exploiting a maximum-severity vulnerability that allows threat actors to gain remote code execution on vulnerable servers. [...]

Ivanti patches two zero-days under active attack as intel agency warns customers
2025-05-14 16:29

Vendor says vulns are linked with 2 mystery open source libraries integrated into EPMM product Australia's intelligence agency is warning organizations about several new Ivanti zero-days chained...

CTM360 Identifies Surge in Phishing Attacks Targeting Meta Business Users
2025-05-14 14:05

A new global phishing threat called "Meta Mirage" has been uncovered, targeting businesses using Meta's Business Suite. This campaign specifically aims at hijacking high-value accounts, including...

Focused Phishing: Attack Targets Victims With Trusted Sites and Live Validation
2025-05-14 14:02

New phishing tactics are abusing trusted domains, real CAPTCHAs, and server-side email validation to selectively target victims with customized fake login pages. Keep Aware's latest research...

Ivanti Patches EPMM Vulnerabilities Exploited for Remote Code Execution in Limited Attacks
2025-05-14 04:00

Ivanti has released security updates to address two security flaws in Endpoint Manager Mobile (EPMM) software that have been chained in attacks to gain remote code execution. The vulnerabilities...

SAP patches second zero-day flaw exploited in recent attacks
2025-05-13 20:48

SAP has released patches to address a second vulnerability exploited in recent attacks targeting SAP NetWeaver servers as a zero-day. [...]

Ivanti fixes EPMM zero-days chained in code execution attacks
2025-05-13 18:26

Ivanti warned customers today to patch their Ivanti Endpoint Manager Mobile (EPMM) software against two security vulnerabilities chained in attacks to gain remote code execution. [...]

Fortinet fixes critical zero-day exploited in FortiVoice attacks
2025-05-13 16:46

Fortinet released security updates to patch a critical remote code execution vulnerability exploited as a zero-day in attacks targeting FortiVoice enterprise phone systems. [...]