CYBERSEC BULLETIN – ONE PLACE FOR YOUR NEWS

New Variants of DCHSpy Spyware Used by Iranian APT to Target Android Users

Security Week2025-07-21

OtherOther

⚡ Weekly Recap: SharePoint 0-Day, Chrome Exploit, macOS Spyware, NVIDIA Toolkit RCE and More

The Hacker News2025-07-21

VulnerabilitiesVulnerabilities

Veeam Recovery Orchestrator users locked out after MFA rollout

BleepingComputer2025-07-21

OtherOther

Learn 14 Languages from Babbel with this exclusive StackSocial deal

BleepingComputer2025-07-21

OtherOther

PoisonSeed Hackers Bypass FIDO Keys Using QR Phishing and Cross-Device Sign-In Abuse

The Hacker News2025-07-21

OtherOther

Exploited CrushFTP Zero-Day Provides Admin Access to Servers

Security Week2025-07-21

VulnerabilitiesVulnerabilities

Microsoft Patches ‘ToolShell’ Zero-Days Exploited to Hack SharePoint Servers

Security Week2025-07-21

VulnerabilitiesVulnerabilities

Marketing, Law Firms Say Data Breaches Impact Over 200,000 People

Security Week2025-07-21

BreachesBreaches

Critical Unpatched SharePoint Zero-Day Actively Exploited, Breaches 75+ Global Organizations

The Hacker News2025-07-20

OtherOther

Malware Injected into 6 npm Packages After Maintainer Tokens Stolen in Phishing Attack

The Hacker News2025-07-20

BreachesBreaches

New Phobos ransomware decryptor lets victims recover files for free

BleepingComputer2025-07-18

RansomwareRansomware

1.4 Million Affected by Data Breach at Virginia Radiology Practice

Security Week2025-07-18

New CrushFTP zero-day exploited in attacks to hijack servers

BleepingComputer2025-07-18

OtherOther

CitrixBleed 2: 100 Organizations Hacked, Thousands of Instances Still Vulnerable

Security Week2025-07-18

Russian alcohol retailer WineLab closes stores after ransomware attack

BleepingComputer2025-07-18

RansomwareRansomware

Settlement Reached in Investors’ Lawsuit Against Meta CEO Mark Zuckerberg and Other Company Leaders

Security Week2025-07-18

Empirical Security Raises $12 Million for AI-Driven Vulnerability Management

Security Week2025-07-17

LameHug malware uses AI LLM to craft Windows data-theft commands in real-time

BleepingComputer2025-07-17

BreachesBreaches

Microsoft Teams voice calls abused to push Matanbuchus malware

BleepingComputer2025-07-17

BreachesBreaches

VMware fixes four ESXi zero-day bugs exploited at Pwn2Own Berlin

BleepingComputer2025-07-17

OtherOther

SonicWall SMA devices hacked with OVERSTEP rootkit tied to ransomware

BleepingComputer2025-07-16

VulnerabilitiesVulnerabilities

U.S. Army soldier pleads guilty to extorting 10 tech, telecom firms

BleepingComputer2025-07-16

OtherOther

Co-op confirms data of 6.5 million members stolen in cyberattack

BleepingComputer2025-07-16

BreachesBreaches

Chrome Update Patches Fifth Zero-Day of 2025

Security Week2025-07-16

United Natural Foods Projects Up to $400M Sales Hit from June Cyberattack

Security Week2025-07-16

Google AI "Big Sleep" Stops Exploitation of Critical SQLite Vulnerability Before Hackers Act

The Hacker News2025-07-16

VulnerabilitiesVulnerabilities

Sesame Workshop Regains Control of Elmo’s Hacked X Account After Racist Posts

Security Week2025-07-15

State-Backed HazyBeacon Malware Uses AWS Lambda to Steal Data from SE Asian Governments

The Hacker News2025-07-15

BreachesBreaches

Hyper-Volumetric DDoS Attacks Reach Record 7.3 Tbps, Targeting Key Global Sectors

The Hacker News2025-07-15

OtherOther

MITRE Unveils AADAPT Framework to Tackle Cryptocurrency Threats

Security Week2025-07-15

New PHP-Based Interlock RAT Variant Uses FileFix Delivery Mechanism to Target Multiple Industries

The Hacker News2025-07-14

OtherOther

CitrixBleed 2 Flaw Poses Unacceptable Risk: CISA

Security Week2025-07-14

Thirteen Romanians Arrested for Phishing the UK’s Tax Service

Security Week2025-07-14

Windows 10 KB5062554 update breaks emoji panel search feature

BleepingComputer2025-07-13

OtherOther

NVIDIA shares guidance to defend GDDR6 GPUs against Rowhammer attacks

BleepingComputer2025-07-11

OtherOther

Cyberstarts Launches $300M Liquidity Fund to Help Startups Retain Top Talent

Security Week2025-07-11

Rowhammer Attack Demonstrated Against Nvidia GPU

Security Week2025-07-11

In Other News: Microsoft Finds AMD CPU Flaws, ZuRu macOS Malware, DoNot APT

Security Week2025-07-11

Critical Wing FTP Server Vulnerability Exploited

Security Week2025-07-11

Four Arrested in UK Over M&S, Co-op Cyberattacks

Security Week2025-07-10

Bitcoin Depot breach exposes data of nearly 27,000 crypto users

BleepingComputer2025-07-09

BreachesBreaches

Nippon Steel Subsidiary Blames Data Breach on Zero-Day Attack

Security Week2025-07-09

How To Automate Ticket Creation, Device Identification and Threat Triage With Tines

The Hacker News2025-07-09

OtherOther

Unpatched Ruckus Vulnerabilities Allow Wireless Environment Hacking

Security Week2025-07-09

Ruckus Networks leaves severe flaws unpatched in management devices

BleepingComputer2025-07-09

OtherOther

Overcoming Technical Barriers in Desktop and Application Virtualization

BleepingComputer2025-07-08

OtherOther

RondoDox Botnet Exploits Flaws in TBK DVRs and Four-Faith Routers to Launch DDoS Attacks

The Hacker News2025-07-08

OtherOther

Malicious Pull Request Targets 6,000+ Developers via Vulnerable Ethcode VS Code Extension

The Hacker News2025-07-08

OtherOther

Windows 10 KB5062554 cumulative update released with 13 changes, fixes

BleepingComputer2025-07-08

OtherOther

Malicious Chrome extensions with 1.7M installs found on Web Store

BleepingComputer2025-07-08

OtherOther

Exploits, Technical Details Released for CitrixBleed2 Vulnerability

Security Week2025-07-08

Android malware Anatsa infiltrates Google Play to target US banks

BleepingComputer2025-07-08

BreachesBreaches

CISA Adds Four Critical Vulnerabilities to KEV Catalog Due to Active Exploitation

The Hacker News2025-07-08

OtherOther

Researchers Uncover Batavia Windows Spyware Stealing Documents from Russian Firms

The Hacker News2025-07-08

OtherOther

SEO Poisoning Campaign Targets 8,500+ SMB Users with Malware Disguised as AI Tools

The Hacker News2025-07-07

BreachesBreaches

TAG-140 Deploys DRAT V2 RAT, Targeting Indian Government, Defense, and Rail Sectors

The Hacker News2025-07-07

OtherOther

Ingram Micro outage caused by SafePay ransomware attack

BleepingComputer2025-07-05

RansomwareRansomware

Taiwan NSB Alerts Public on Data Risks from TikTok, Weibo, and RedNote Over China Ties

The Hacker News2025-07-05

OtherOther

Police in Brazil Arrest a Suspect Over $100M Banking Hack

Security Week2025-07-05

Google's AI video maker Veo 3 is now available via $20 Gemini

BleepingComputer2025-07-04

OtherOther

Hunters International ransomware shuts down after World Leaks rebrand

BleepingComputer2025-07-03

RansomwareRansomware

Over 40 Malicious Firefox Extensions Target Cryptocurrency Wallets, Stealing User Assets

The Hacker News2025-07-03

OtherOther

Massive Android Fraud Operations Uncovered: IconAds, Kaleidoscope, SMS Malware, NFC Scams

The Hacker News2025-07-03

BreachesBreaches

Cisco Warns of Hardcoded Credentials in Enterprise Software

Security Week2025-07-03

IdeaLab confirms data stolen in ransomware attack last year

BleepingComputer2025-07-03

RansomwareRansomware

Forminator WordPress Plugin Vulnerability Exposes 400,000 Websites to Takeover

Security Week2025-07-02

CISA Warns of Two Exploited TeleMessage Vulnerabilities

Security Week2025-07-02

Kelly Benefits Data Breach Impacts 550,000 People

Security Week2025-07-02

Kelly Benefits says 2024 data breach impacts 550,000 customers

BleepingComputer2025-07-01

BreachesBreaches

LevelBlue to Acquire Trustwave to Create Major MSSP

Security Week2025-07-01

Google Patches Critical Zero-Day Flaw in Chrome’s V8 Engine After Active Exploitation

The Hacker News2025-07-01

OtherOther

Microsoft Removes Password Management from Authenticator App Starting August 2025

The Hacker News2025-07-01

OtherOther

Cato Networks Raises $359 Million to Expand SASE Business

Security Week2025-06-30

Microsoft warns of Windows update delays due to wrong timestamp

BleepingComputer2025-06-30

OtherOther

Canada Gives Hikvision the Boot on National Security Grounds

Security Week2025-06-30

Switzerland says government data stolen in ransomware attack

BleepingComputer2025-06-30

RansomwareRansomware

⚡ Weekly Recap: Airline Hacks, Citrix 0-Day, Outlook Malware, Banking Trojans and more

The Hacker News2025-06-30

BreachesBreaches

Microsoft to Preview New Windows Endpoint Security Platform After CrowdStrike Outage

Security Week2025-06-27

In Other News: Norway Dam Hacked, $177M Data Breach Settlement, UNFI Attack Update

Security Week2025-06-27

Russia’s throttling of Cloudflare makes sites inaccessible

BleepingComputer2025-06-27

OtherOther

Cyber Criminals Exploit Open-Source Tools to Compromise Financial Institutions Across Africa

The Hacker News2025-06-26

VulnerabilitiesVulnerabilities

Ex-student charged over hacking university for cheap parking, data breaches

BleepingComputer2025-06-26

OtherOther

Critical Citrix NetScaler Flaw Exploited as Zero-Day

Security Week2025-06-26

FTC approves $126 million in Fortnite refunds over ‘dark patterns’

BleepingComputer2025-06-26

OtherOther

CISA Adds 3 Flaws to KEV Catalog, Impacting AMI MegaRAC, D-Link, Fortinet

The Hacker News2025-06-26

OtherOther

Bipartisan Bill Aims to Block Chinese AI From Federal Agencies

Security Week2025-06-26

Pro-Iranian Hacktivist Group Leaks Personal Records from the 2024 Saudi Games

The Hacker News2025-06-25

OtherOther

Code Execution Vulnerability Patched in GitHub Enterprise Server

Security Week2025-06-25

Citrix Bleed 2 Flaw Enables Token Theft; SAP GUI Flaws Risk Sensitive Data Exposure

The Hacker News2025-06-25

OtherOther

FileFix attack weaponizes Windows File Explorer for stealthy commands

BleepingComputer2025-06-24

OtherOther

Identity Is the New Perimeter: Why Proofing and Verification Are Business Imperatives

Security Week2025-06-24

APT28 Uses Signal Chat to Deploy BEARDSHELL Malware and COVENANT in Ukraine

The Hacker News2025-06-24

BreachesBreaches

US House bans WhatsApp on staff devices over security concerns

BleepingComputer2025-06-24

OtherOther

Revil ransomware members released after time served on carding charges

BleepingComputer2025-06-23

RansomwareRansomware

743,000 Impacted by McLaren Health Care Data Breach

Security Week2025-06-23

How AI-Enabled Workflow Automation Can Help SOCs Reduce Burnout

The Hacker News2025-06-23

OtherOther

US Homeland Security warns of escalating Iranian cyberattack risks

BleepingComputer2025-06-23

BreachesBreaches

WordPress Motors theme flaw mass-exploited to hijack admin accounts

BleepingComputer2025-06-21

OtherOther

OpenAI’s Sam Altman discusses GPT-5 release date

BleepingComputer2025-06-19

OtherOther

Microsoft 365 to block file access via legacy auth protocols by default

BleepingComputer2025-06-18

OtherOther
Last updated: Mon, 21 Jul 2025 23:01:38 GMT