Security News

Hackers now testing ClickFix attacks against Linux targets
2025-05-12 18:10

A new campaign employing ClickFix attacks has been spotted targeting both Windows and Linux systems using instructions that make infections on either operating system possible. [...]

Output Messenger flaw exploited as zero-day in espionage attacks
2025-05-12 17:34

A Türkiye-backed cyberespionage group exploited a zero-day vulnerability to attack Output Messenger users linked to the Kurdish military in Iraq. [...]

Moldova arrests suspect linked to DoppelPaymer ransomware attacks
2025-05-12 15:18

Moldovan authorities have detained a 45-year-old suspect linked to DoppelPaymer ransomware attacks targeting Dutch organizations in 2021. [...]

Unending ransomware attacks are a symptom, not the sickness
2025-05-12 08:30

We need to make taking IT systems 'off the books' a problem for corporate types Opinion It's been a devastating few weeks for UK retail giants. Marks and Spencer, the Co-Op, and now uber-posh...

Chinese hackers behind attacks targeting SAP NetWeaver servers
2025-05-09 16:23

Forescout Vedere Labs security researchers have linked ongoing attacks targeting a maximum severity vulnerability impacting SAP NetWeaver instances to a Chinese threat actor. [...]

Supply chain attack hits npm package with 45,000 weekly downloads
2025-05-08 19:03

An npm package named 'rand-user-agent' has been compromised in a supply chain attack to inject obfuscated code that activates a remote access trojan (RAT) on the user's system. [...]

Kickidler employee monitoring software abused in ransomware attacks
2025-05-08 16:05

Ransomware operations are using legitimate Kickidler employee monitoring software for reconnaissance, tracking their victims' activity, and harvesting credentials after breaching their networks. [...]

SonicWall urges admins to patch VPN flaw exploited in attacks
2025-05-08 11:19

SonicWall has urged its customers to patch three security vulnerabilities affecting its Secure Mobile Access (SMA) appliances, one of them tagged as exploited in attacks [...]

Play ransomware exploited Windows logging flaw in zero-day attacks
2025-05-07 14:45

The Play ransomware gang has exploited a high-severity Windows Common Log File System flaw in zero-day attacks to gain SYSTEM privileges and deploy malware on compromised systems. [...]

NSO Group fined $167M for spyware attacks on 1,400 WhatsApp users
2025-05-07 14:09

A U.S. federal jury has ordered Israeli spyware vendor NSO Group to pay WhatsApp $167,254,000 in punitive damages and $444,719 in compensatory damages for a 2019 campaign that targeted 1,400 users...