Windows Shortcut Zero-Day (ZDI-CAN-25373) Exploited by State-Backed Th...
Windows Shortcut Zero-Day (ZDI-CAN-25373) Exploited by State-Backed Threat Actors Since 2017: Overview of Key Details A sophisticated zero-day vulnerability, ZDI-CAN-25373, has been secretly exploited...
Apache Tomcat RCE Vulnerability (CVE-2025-24813) Under Active Exploita...
Apache Tomcat RCE Vulnerability (CVE-2025-24813) Under Active Exploitation: Patch Now A serious vulnerability in Apache Tomcat, CVE-2025-24813, is being actively exploited in the wild. This flaw allow...
Major Cyber Attacks in Review: February 2025
Major Cyber Attacks in Review: February 2025 In February 2025, several major cyber incidents demonstrated ongoing threats to industries worldwide. The Qilin ransomware attack disrupted operations at L...
Exploring MegaMedusa: The Streamlined DDoS Tool
Exploring MegaMedusa: The Streamlined DDoS Tool Distributed Denial of Service (DDoS) attacks continue to pose significant challenges in cybersecurity. Tools like MegaMedusa have made it easier for ind...
GitLab Security Update: Critical Authentication & RCE Flaws Demand Imm...
GitLab Security Update: Critical Authentication & RCE Flaws Demand Immediate Action Cybersecurity threats continue to evolve, and organizations relying on GitLab for code hosting, collaboration, a...
March 2025 Patch Tuesday: Microsoft Fixes 6 Critical & 6 Exploited Sec...
March 2025 Patch Tuesday: Microsoft Fixes 6 Critical & 6 Exploited Security Vulnerabilities [Update] April 18, 2025: “CVE-2025-24054 Actively Exploited in Phishing Campaigns” Microsoft has release...
X Faces Cyberattack: Dark Storm Team Takes Credit, Musk Blames Ukraine
X Faces Cyberattack: Dark Storm Team Takes Credit, Musk Blames Ukraine Yesterday, X (formerly Twitter) allegedly suffered a large-scale cyberattack, causing widespread outages. While Elon Musk claimed...
Critical Kibana Vulnerability (CVE-2025-25012) Exposes Systems to Code...
Critical Kibana Vulnerability (CVE-2025-25012) Exposes Systems to Code Execution, Patch Now A critical security vulnerability has been discovered in Kibana, the widely used data visualization platform...
VMware Security Alert: Active Exploitation of Zero-Day Vulnerabilities...
VMware Security Alert: Active Exploitation of Zero-Day Vulnerabilities (CVE-2025-22224, CVE-2025-22225, and CVE-2025-22226) [Update] March 7, 2025: “37,000 VMware ESXi Servers Still Vulnerable to CVE-...
23 Billion Rows of Stolen Records: What You Need to Know?
23 Billion Rows of Stolen Records: What You Need to Know? Update: What Does the Alleged Leak Data Contain? Infostealer malware continues to pose a severe threat, with billions of stolen records circul...
Security Alert: Critical Flaws in MITRE Caldera and Parallels Desktop ...
Security Alert: Critical Flaws in MITRE Caldera and Parallels Desktop (CVE-2025-27364, CVE-2024-34331) Two critical vulnerabilities, CVE-2025-27364 in MITRE Caldera and CVE-2024-34331 in Parallels Des...
Black Basta’s Internal Chats Leak: Everything You Need to Know
Black Basta’s Internal Chats Leak: Everything You Need to Know (21.02.2025) Update: List of Domains in Leaked Chats (21.02.2025) Update: SOCRadar’s Intelligence Findings of Black Basta Leak, IoCs, TTP...
Microsoft Patches Power Pages Zero-Day (CVE-2025-24989) & Recent PAN-O...
Microsoft Patches Power Pages Zero-Day (CVE-2025-24989) & Recent PAN-OS Flaw (CVE-2025-0111) Joins CISA KEV Two major security flaws pose a serious exploitation risk for organizations using Micros...
Chinese APT Exploits Cisco IOS XE Vulnerabilities (CVE-2023-20198 & CV...
Chinese APT Exploits Cisco IOS XE Vulnerabilities (CVE-2023-20198 & CVE-2023-20273) in Global Attacks [Update] November 4, 2025: Exploitation of CVE-2023-20198 via BADCANDY Implant [Update] June ...
Security Flaws in OpenSSH and Juniper Networks Demand Action (CVE-2025...
Security Flaws in OpenSSH and Juniper Networks Demand Action (CVE-2025-26465, CVE-2025-26466, and CVE-2025-21589) Recent discoveries have revealed severe vulnerabilities in two widely used networking ...
A New Wave of Ransomware Campaigns Targeting Microsoft Teams
A New Wave of Ransomware Campaigns Targeting Microsoft Teams For companies all over the globe, Microsoft Teams is becoming an essential tool for teamwork. Nevertheless, because of its extensive use, i...
Alarming Dark Web Leak: B1ack's Stash Releases 4 Million Stolen Credit...
Alarming Dark Web Leak: B1ack’s Stash Releases 4 Million Stolen Credit Cards for Free The Dark Web marketplace B1ack’s Stash has stirred concerns by leaking 4 million stolen credit card details for fr...
EagerBee: Advanced Backdoor Attacks on Middle Eastern Governments and ...
EagerBee: Advanced Backdoor Attacks on Middle Eastern Governments and ISPs In recent years, the cybersecurity landscape has witnessed a surge in sophisticated and highly targeted cyberattacks, with th...
Palo Alto Firewall Vulnerability (CVE-2025-0108) Under Attack – Are Yo...
Palo Alto Firewall Vulnerability (CVE-2025-0108) Under Attack – Are You at Risk? [Update] February 19, 2025: “Escalating Exploitation of CVE-2025-0108” Palo Alto Networks has addressed a newly discove...
Ivanti Security Update Addresses Severe Vulnerabilities in ICS, IPS, a...
Ivanti Security Update Addresses Severe Vulnerabilities in ICS, IPS, and ISAC (CVE-2025-22467, CVE-2024-38657, CVE-2024-10644) In response to newly identified vulnerabilities, Ivanti has released secu...
