26 May 2025

InfoSec News Feeds

\ Latest Updates

Aggregated InfoSec News

Packetstorm

    Feed has no items.

THN

PortSwigger

Security Affaris

  • China-linked APT UNC5221 started exploiting...
    by Pierluigi Paganini on 26 May 2025 at 12:31 PM

    China-linked APT exploit Ivanti EPMM flaws to target critical sectors across Europe, North America, and Asia-Pacific, according to EclecticIQ. Researchers from EclecticIQ observed a China-linked APT group that chained two Ivanti EPMM flaws, tracked as CVE-2025-4427 and CVE-2025-4428, in attacks […]

  • Fake software activation videos on TikTok spread...
    by Pierluigi Paganini on 26 May 2025 at 9:12 AM

    Crooks use TikTok videos with fake tips to trick users into running commands that install Vidar and StealC malware in ClickFix attacks. Cybercriminals leverage AI-generated TikTok videos in ClickFix attacks to spread Vidar and StealC malware, reports Trend Micro. These videos trick users into […]

  • SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 46
    by Pierluigi Paganini on 25 May 2025 at 2:30 PM

    Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Sarcoma Ransomware Unveiled: Anatomy of a Double Extortion Gang RVTools Bumblebee Malware Attack – How a Trusted IT Tool Became a Malware Delivery Vector   […]

HackerOne

    Feed has no items.

WeLiveSecurity

  • Danabot under the microscope
    on 23 May 2025 at 12:43 PM

    ESET Research has been tracking Danabot’s activity since 2018 as part of a global effort that resulted in a major disruption of the malware’s infrastructure

  • Danabot: Analyzing a fallen empire
    on 22 May 2025 at 9:03 PM

    ESET Research shares its findings on the workings of Danabot, an infostealer recently disrupted in a multinational law enforcement operation

  • Lumma Stealer: Down for the count
    on 22 May 2025 at 3:53 PM

    The bustling cybercrime enterprise has been dealt a significant blow in a global operation that relied on the expertise of ESET and other technology companies

TheRegister

  • Cybercrime is 'orders of magnitude' larger than...
    by Jessica Lyons on 24 May 2025 at 6:47 PM

    Michael Daniel also thinks Uncle Sam should increase help to orgs hit by ransomware INTERVIEW  Uncle Sam's cybersecurity apparatus can't only focus on China and other nation-state actors, but also has to fight the much bigger damage from plain old cybercrime, says former White House advisor […]

  • Ransomware scum leaked Nova Scotia Power...
    by Jessica Lyons on 23 May 2025 at 6:45 PM

    Bank accounts, personal details all hoovered up in the attack Nova Scotia Power on Friday confirmed it had been hit by a ransomware attack that began earlier this spring and disrupted certain IT systems, and admitted the crooks leaked data belonging to about 280,000 customers online. The stolen […]

  • Suspected creeps behind DanaBot malware that hit...
    by Iain Thomson on 23 May 2025 at 2:31 AM

    And the associated fraud'n'spy botnet is about to be shut down The US Department of Justice has unsealed indictments against 16 people accused of spreading and using the DanaBot remote-control malware that infected more than 300,000 computers, plus operating a botnet of the same name, and appears […]

Security Week

  • Nova Scotia Power Confirms Ransomware Attack,...
    by Eduard Kovacs on 26 May 2025 at 7:43 AM

    Nova Scotia Power has finally admitted that the recent cyberattack was a ransomware attack, but it hasn’t paid the hackers. The post Nova Scotia Power Confirms Ransomware Attack, 280k Notified of Data Breach appeared first on SecurityWeek.

  • Signal Adds Screenshot-Blocker to Thwart...
    by Ryan Naraine on 23 May 2025 at 3:13 PM

    Signal said the privacy feature is on by default for every Windows 11 user to block Microsoft from taking screenshots for Windows Recall. The post Signal Adds Screenshot-Blocker to Thwart ‘Windows Recall’  appeared first on SecurityWeek.

  • In Other News: Volkswagen App Hacked, DR32...
    by SecurityWeek News on 23 May 2025 at 2:41 PM

    Noteworthy stories that might have slipped under the radar: serious vulnerabilities found in a Volkswagen app, Australian hacker DR32 sentenced in the US, and Immersive launches OT security training solution. The post In Other News: Volkswagen App Hacked, DR32 Sentenced, New OT Security Solution […]

Exploit-DB Updates