Kimsuky spreads DocSwap Android malware via QR phishing disguised as a distribution app

December 18, 2025Ravi LakshmananMalware/Mobile Security The North Korean threat actor known as Kimsuky is said to be behind a new campaign distributing a new variant of Android malware called DocSwap via QR codes hosted on phishing sites imitating Seoul-based logistics company CJ Logistics (formerly CJ Korea Express). “The attackers used QR codes and notification pop-ups […]

CISA reports critical flaw in ASUS Live Update following evidence of active exploitation

December 18, 2025Ravi LakshmananVulnerabilities/Software Security The US Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added a critical flaw affecting ASUS Live Update to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The vulnerability, tracked as CVE-2025-59374 (CVSS score: 9.3), is described as “embedding a malicious code vulnerability” introduced by a supply […]

Cisco warns of active attack exploiting unpatched zero-day in AsyncOS email security appliances

December 18, 2025Ravi LakshmananVulnerability/Network Security Cisco has warned users of a maximum severity zero-day vulnerability in Cisco AsyncOS Software. This vulnerability, codenamed UAT-9686, is being actively exploited by a Chinese-aligned Advanced Persistent Threat (APT) attacker in attacks targeting Cisco Secure Email Gateway and Cisco Secure Email and Web Manager. The network equipment giant said it […]

YouTube will exclusively stream the Oscars starting in 2029

The Academy of Motion Picture Arts and Sciences announced Wednesday that YouTube has won exclusive rights to stream the Oscars starting in 2029. The Google-owned platform beat out other nominees, including ABC, the longtime home of the Oscars, ending the network’s streak of hosting the ceremony since 1976 (with the exception of a brief period […]

Cisco announces Chinese hackers are exploiting customers with new zero-day attack

Cisco announced Wednesday that hackers have exploited critical vulnerabilities in some of its most popular products, allowing them to take complete control of affected devices. What’s worse, there are no patches available at this time. Cisco said in a security advisory that it discovered a hacking campaign on December 10 that targeted Cisco AsyncOS software, […]

SonicWall fixes actively exploited CVE-2025-40602 on SMA 100 appliances

December 17, 2025Ravi LakshmananVulnerability/Network Security SonicWall has published fixes to address security flaws in its Secure Mobile Access (SMA) 100 Series appliances. This flaw is reportedly being exploited in the wild. The vulnerability, tracked as CVE-2025-40602 (CVSS score: 6.6), involves a case of local privilege escalation that occurs as a result of insufficient authentication in […]

Kimwolf botnet hijacks 1.8 million Android TVs and launches massive DDoS attack

QiAnXin “Kimwolf is a botnet compiled using NDK [Native Development Kit]”In addition to typical DDoS attack capabilities, it integrates proxy forwarding, reverse shell, and file management capabilities,” the company said in a report released today. The hyperscale botnet is estimated to have issued 1.7 billion DDoS attack commands in a three-day period from November 19 […]