A Microsoft Windows vulnerability was exploited to deploy Pipemagic Ransomexx malware

August 18, 2025Ravi LakshmananVulnerability/Cloud Security Cybersecurity researchers are lifting the lid on the exploitation of security flawed threat actors currently being patched on Microsoft Windows and deploying plumbing malware on Ransomexx ransomware attacks. The attacks include the exploitation of CVE-2025-29824, a privilege escalation vulnerability that affects Windows Common File System (CLFS), which Microsoft dealt with […]
NFC Fraud, Curly COMrades, N-able Exploits, Docker Backdoors & More

Aug 18, 2025Ravie LakshmananCybersecurity / Hacking News Power doesn’t just disappear in one big breach. It slips away in the small stuff—a patch that’s missed, a setting that’s wrong, a system no one is watching. Security usually doesn’t fail all at once; it breaks slowly, then suddenly. Staying safe isn’t about knowing everything—it’s about acting […]
Malicious PYPI and NPM packages have been discovered to exploit the dependencies of supply chain attacks

Cybersecurity researchers have discovered malicious packages in the Python Package Index (PYPI) repository. This introduces malicious behavior through dependencies that can establish persistence and enable code execution. A package named Themcolor delivers its creepy functionality through a dependency package called Colorinal with multi-stage malware operations, Zscaler Threatlabz said. While Termcolor has been downloaded 355 times, […]
wazuh for regulatory compliance

August 18, 2025Hacker NewsData Breach/Regulatory Compliance Organizations that process various forms of sensitive data or personally identifiable information (PII) must adhere to regulatory compliance standards and frameworks. These compliance standards also apply to organizations operating in regulatory sectors such as healthcare, finance, government contracts, and education. Some of these standards and frameworks include, but are […]
ERMAC v3.0 Banking Trojan Source Code Leaks Exposes the Complete Malware Infrastructure

August 16, 2025Ravi LakshmananAndroid/Malware Cybersecurity researchers detail the internal mechanisms of an Android Banking Trojan called ERMAC 3.0, revealing serious shortcomings in the operator’s infrastructure. “The newly discovered version 3.0 reveals a major evolution of malware and expands form injection and data theft capabilities to target over 700 banks, shopping and cryptocurrency applications,” Hunt.io said […]
Russian group Encrypthub exploits vulnerability in MSC Eviltwin to deploy Fickle Stealer malware

August 16, 2025Ravi LakshmananMalware/Vulnerabilities A threat actor known as Encrypthub continues to provide malicious payloads by exploiting the currently maintained security flaws that affect Microsoft Windows. TrustWave SpiderLabs said it had recently observed an enliptob campaign that links the exploitation of vulnerabilities in the Microsoft Management Console (MMC) framework (CVE-2025-26633, aka MSC Eviltwin) to a […]
Taiwanese web server violated by UAT-7237 using customized open source hacking tools

August 15th, 2025Ravi LakshmananMalware/Open Source It has been observed that Chinese-speaking advanced persistent threat (APT) actors target Taiwanese web infrastructure entities using customized versions of customized open source tools aimed at establishing long-term access within high-value victim environments. This activity is attributed to an activity cluster tracked by Cisco Talos as a UAT-7237. This is […]
Garantex and Grinex sanctions exceeding $100 million for illegal ransom-related crypto transactions

The U.S. Treasury Department’s Foreign Assets Office (OFAC) updated sanctions on Thursday against Russian cryptocurrency exchange platform Garantex to promote ransomware actors and other cybercriminals by processing more than $100 million transactions linked to illegal activities since 2019. The Treasury said it was also imposing sanctions on Grinex, the successor to Garantex, and three executives […]
Privacy in the age of Agent AI

We viewed privacy as a boundary issue. About walls, locks, permissions, and policies. However, in a world where artificial agents are becoming autonomous actors, privacy is no longer about control, as they interact with data, systems, and humans without constant surveillance. It’s about trust. And trust, by definition, is about what happens when you’re not […]
Cisco warns CVSS 10.0 FMC radius defects and allows remote code execution

August 15th, 2025Ravi LakshmananVulnerability/Network Security Cisco has released a security update to address the biggest security flaws in the Secure Firewall Management Center (FMC) software, which allows attackers to run arbitrary code on affected systems. A vulnerability assigned the CVE Identifier CVE-2025-20265 (CVSS score: 10.0) affects the implementation of the RADIUS subsystem that allows uncertified […]