Security News

SAP fixes suspected Netweaver zero-day exploited in attacks
2025-04-25 13:01

SAP has released out-of-band emergency NetWeaver updates to fix a suspected remote code execution (RCE) zero-day flaw actively exploited to hijack servers. [...]

SAP fixes critical Netweaver flaw exploited in attacks
2025-04-25 13:01

SAP has released out-of-band emergency updates for NetWeaver to fix an actively exploited remote code execution (RCE) vulnerability used to hijack servers. [...]

DslogdRAT Malware Deployed via Ivanti ICS Zero-Day CVE-2025-0282 in Japan Attacks
2025-04-25 08:43

Cybersecurity researchers are warning about a new malware called DslogdRAT that's installed following the exploitation of a now-patched security flaw in Ivanti Connect Secure (ICS). The malware,...

Lazarus hackers breach six companies in watering hole attacks
2025-04-24 19:13

In a recent espionage campaign, the infamous North Korean threat group Lazarus targeted multiple organizations in the software, IT, finance, and telecommunications sectors in South Korea. [...]

Interlock ransomware claims DaVita attack, leaks stolen data
2025-04-24 14:59

The Interlock ransomware gang has claimed the cyberattack on DaVita kidney dialysis firm and leaked data allegedly stolen from the organization. [...]

Linux 'io_uring' security blindspot allows stealthy rootkit attacks
2025-04-24 12:00

A significant security gap in Linux runtime security caused by the 'io_uring' interface allows rootkits to operate undetected on systems while bypassing advanced Enterprise security software. [...]

Understanding 2024 cyber attack trends
2025-04-24 09:50

Mandiant has released the M-Trends 2025 report, which outlines global cyber attack trends based on their own incident response engagements from 2024. Key trends and insights In 2024, Mandiant...

Ripple NPM supply chain attack hunts for private keys
2025-04-23 18:28

A mystery thief and a critical CVE involved in crypto cash grab Many versions of the Ripple ledger (XRPL) official NPM package are compromised with malware injected to steal cryptocurrency.…

DPRK Hackers Steal $137M from TRON Users in Single-Day Phishing Attack
2025-04-23 17:09

Multiple threat activity clusters with ties to North Korea (aka Democratic People's Republic of Korea or DPRK) have been linked to attacks targeting organizations and individuals in the Web3 and...

Phishing detection is broken: Why most attacks feel like a zero day
2025-04-23 14:02

Phishing attacks now evade email filters, proxies, and MFA — making every attack feel like a zero-day. This article from Push Security breaks down why detection is failing and how real-time,...