SonicWall Patches Exploited SMA 100 Flaw CVE-2025-40602

SonicWall Patches Exploited SMA 100 Flaw CVE-2025-40602

December 17, 2025 at 12:00 AM
SonicWall has released urgent fixes for a Secure Mobile Access (SMA) 100 series vulnerability actively exploited in the wild: CVE-2025-40602 (CVSS 6.6). What’s the issue A local privilege escalation …
Read more
ForumTroll Hits Russian Academics with Fake eLibrary Emails

ForumTroll Hits Russian Academics with Fake eLibrary Emails

December 17, 2025 at 12:00 AM
Kaspersky has linked the Operation ForumTroll threat actor to a new phishing wave aimed at Russian academics, shifting from earlier organization-focused attacks to highly targeted individuals in …
Read more
GhostPoster hides in 17 Firefox add-ons, 50k installs

GhostPoster hides in 17 Firefox add-ons, 50k installs

December 17, 2025 at 12:00 AM
A stealthy campaign dubbed GhostPoster embedded malicious JavaScript inside logo image files used by 17 Mozilla Firefox extensions, enabling ad fraud, affiliate hijacking, tracking injection, and …
Read more
Ink Dragon Targets Governments with ShadowPad, FINALDRAFT

Ink Dragon Targets Governments with ShadowPad, FINALDRAFT

December 17, 2025 at 12:00 AM
A China-aligned threat group tracked as Ink Dragon (also known as Jewelbug, CL-STA-0049, Earth Alux, and REF7707) is intensifying campaigns against government organizations in Europe while continuing …
Read more
APT28 Phishes UKR.net Users via Mocky, ngrok, TinyURL

APT28 Phishes UKR.net Users via Mocky, ngrok, TinyURL

December 17, 2025 at 12:00 AM
A GRU-linked threat group, APT28, is running a sustained credential-harvesting campaign against users of Ukraine’s UKR.net, according to Recorded Future’s Insikt Group. The activity, tracked from …
Read more
Shift-Left Privacy: Secure Data at the Code Level

Shift-Left Privacy: Secure Data at the Code Level

December 16, 2025 at 12:00 AM
AI-assisted coding has supercharged software delivery, but it has also expanded the data exposure surface faster than privacy and security teams can keep up. Traditional, production-first tools are …
Read more
Typosquatted NuGet Poses as Tracer.Fody to Steal Crypto

Typosquatted NuGet Poses as Tracer.Fody to Steal Crypto

December 16, 2025 at 12:00 AM
A long-lived rogue NuGet package has been caught impersonating the .NET tracing library Tracer.Fody and its maintainer to deploy a cryptocurrency wallet stealer targeting Stratis wallets. Key …
Read more
React2Shell Exploits Fuel Surge in Linux Backdoors

React2Shell Exploits Fuel Surge in Linux Backdoors

December 16, 2025 at 12:00 AM
A critical React2Shell vulnerability (CVE-2025-55182, CVSS 10.0) is being actively weaponized to deploy advanced Linux backdoors, notably KSwapDoor and ZnDoor, according to Palo Alto Networks Unit …
Read more
Google Ending Dark Web Monitoring by February 2026

Google Ending Dark Web Monitoring by February 2026

December 16, 2025 at 12:00 AM
Google will retire its Dark Web report feature in February 2026, winding down less than two years after launch. The company says it’s shifting focus to tools that provide clearer, more actionable …
Read more
Fortinet SAML Bypass Exploited; Patch FortiGate Now

Fortinet SAML Bypass Exploited; Patch FortiGate Now

December 16, 2025 at 12:00 AM
Attackers are actively exploiting two newly disclosed SAML SSO authentication bypass flaws in Fortinet gear, putting unpatched FortiGate and related products at immediate risk. What’s happening On …
Read more

Next page
Privacy Policy

We use cookies!

We use cookies to ensure the proper functioning of our website, to provide you with a convenient browsing experience, and to improve its features, performance, and user experience through analytics.

Privacy Policy
Cookie settings

Use of Cookies

We use cookies to ensure the basic functionality of our website and analytical cookies to collect data for creating statistics aimed at improving the quality of our website. Below, you can customize each group and later change these settings at any time. For more details about cookies, please visit our page Privacy Policy.

Functional and Technical Cookies
These cookies are essential for the proper functioning of the website and cannot be disabled. They allow you to use the basic features of the site during your visit.
Analytical Cookies
These cookies help us understand website traffic so we know which pages are most popular and how visitors navigate our site. Analytical cookies do not collect personal data that would directly identify the user.
Marketing Cookies
These cookies are used to tailor ads and marketing content to your interests. They allow us and our partners to track your behavior on the website and create a profile so we can display relevant content. They are activated only after your consent.
Privacy Policy