Fortinet, Ivanti, SAP ship urgent fixes for RCE, auth bypass

Fortinet, Ivanti, SAP ship urgent fixes for RCE, auth bypass

December 10, 2025 at 12:00 AM
Vendors are rushing out critical patches after severe flaws in Fortinet, Ivanti, and SAP products were found to enable authentication bypass and remote code execution. Fortinet Affected products: …
Read more
Whaling Scams: How Hackers Reel In the C-Suite

Whaling Scams: How Hackers Reel In the C-Suite

December 9, 2025 at 12:00 AM
A single booby-trapped Zoom invite was all it took. After malware hijacked a hedge fund executive’s email, fraudsters green-lit $8.7 million in fake invoices—an attack that helped sink Levitas …
Read more
Storm-0249 pivots to stealthy ransomware tradecraft

Storm-0249 pivots to stealthy ransomware tradecraft

December 9, 2025 at 12:00 AM
Storm-0249 is moving beyond its initial-access-broker roots and refining a stealthy toolkit to enable ransomware operations. Recent analysis from ReliaQuest highlights a pivot to domain spoofing, …
Read more
North Korean Hackers Push EtherRAT via React2Shell

North Korean Hackers Push EtherRAT via React2Shell

December 9, 2025 at 12:00 AM
North Korea-linked threat actors are exploiting React2Shell, a critical React Server Components (RSC) flaw tracked as CVE-2025-55182 (CVSS 10.0), to deliver a newly uncovered remote access trojan …
Read more
Make Zero Trust Real with SSF: Tines, Kolide, Okta

Make Zero Trust Real with SSF: Tines, Kolide, Okta

December 9, 2025 at 12:00 AM
Zero Trust promises a smaller attack surface and faster threat response, but many teams struggle to implement it because security tools don’t reliably share signals. According to Accenture, 88% of …
Read more
GrayBravo's CastleLoader Powers Four Attack Clusters

GrayBravo's CastleLoader Powers Four Attack Clusters

December 9, 2025 at 12:00 AM
Cybercriminal service growth: four distinct threat clusters are now using CastleLoader, reinforcing evidence that GrayBravo is operating a malware-as-a-service model. Who is GrayBravo Tracked by …
Read more
Why Identity Security Now Defines Your Cyber Resilience

Why Identity Security Now Defines Your Cyber Resilience

December 4, 2025 at 12:00 AM
Identity has become the new network boundary—and attackers know it. Recent ransomware hits on UK retailers M&S and Co‑op reportedly began with vishing that harvested helpdesk passwords, providing …
Read more
MuddyWater’s new toolkit hits Israel and Egypt

MuddyWater’s new toolkit hits Israel and Egypt

December 2, 2025 at 12:00 AM
Overview ESET Research uncovered a refined MuddyWater campaign primarily against Israeli organizations, with one confirmed target in Egypt. The Iran‑aligned APT (also known as Mango Sandstorm/TA450) …
Read more
The Hidden Risks of Employee Oversharing Online

The Hidden Risks of Employee Oversharing Online

December 1, 2025 at 12:00 AM
Employee advocacy can amplify your brand, but oversharing on social platforms also arms cybercriminals. Public details help attackers craft convincing spearphishing and business email compromise …
Read more
November 2025: Tony Anscombe's Security Highlights

November 2025: Tony Anscombe's Security Highlights

November 28, 2025 at 12:00 AM
As November 2025 wraps up, ESET Chief Security Evangelist Tony Anscombe recaps the month’s standout cybersecurity stories that raised alarms, moved the needle, and delivered lessons. Key highlights: …
Read more

Next page
Privacy Policy

We use cookies!

We use cookies to ensure the proper functioning of our website, to provide you with a convenient browsing experience, and to improve its features, performance, and user experience through analytics.

Privacy Policy
Cookie settings

Use of Cookies

We use cookies to ensure the basic functionality of our website and analytical cookies to collect data for creating statistics aimed at improving the quality of our website. Below, you can customize each group and later change these settings at any time. For more details about cookies, please visit our page Privacy Policy.

Functional and Technical Cookies
These cookies are essential for the proper functioning of the website and cannot be disabled. They allow you to use the basic features of the site during your visit.
Analytical Cookies
These cookies help us understand website traffic so we know which pages are most popular and how visitors navigate our site. Analytical cookies do not collect personal data that would directly identify the user.
Marketing Cookies
These cookies are used to tailor ads and marketing content to your interests. They allow us and our partners to track your behavior on the website and create a profile so we can display relevant content. They are activated only after your consent.
Privacy Policy