A critical Cisco vulnerability in unified CM grants root access through static credentials

July 3, 2025Ravi LakshmananVulnerability/Network Security Cisco has released security updates to address the maximum focus security flaws in Unified Communications Manager (Unified CM) and Unified Communications Manager Session Management Edition (Unified CM SME). The CVSS score for vulnerabilities tracked as CVE-2025-20309 is 10.0. “This vulnerability is due to the presence of static user credentials for […]
Northorean Hackers Target Web3 with NIM malware and use Clickfix in Babyshark campaign

Using malware written in the NIM programming language, it has been observed that threat actors associated with North Korea are targeting Web3 and cryptocurrency businesses, highlighting the constant evolution of tactics. “In the case of MacOS malware, threat actors employ process injection technology and remote communication via WSS. The TLS encrypted version of the Websocket […]
That network traffic looks legal, but could hide a serious threat

July 2, 2025Hacker NewsNetwork Security/Threat Detection With almost 80% of cyber threats mimic legitimate user behavior, how do top SOCs decide legitimate traffic and potentially dangerous? If firewall and endpoint detection and response (EDR) is lacking in detection of the most important threats for your organization, where are you heading? Violations on Edge devices and […]
Hackers use PDFs to impersonate Microsoft, Docusign and others in callback phishing campaign

Cybersecurity researchers are calling attention to phishing campaigns that impersonate popular brands and targets and call phone numbers run by threat actors. “A significant portion of the email threat caused by PDF payloads will persuade victims to call hostile phone numbers and view another popular social engineering technique known as phone-oriented attack delivery (TOAD), also […]
Russian bulletproof hosting provider to support cybercriminals behind US sanctions ransomware

July 2, 2025Ravi LakshmananCybercrime/Dark Web The US Treasury Department’s Office of Foreign Assets Control (OFAC) imposes sanctions against the AEZA Group, a Russian-based bulletproof hosting (BPH) service provider, helping to target threat activities and victims from around the country and around the world. The sanctions are also extended to subsidiary AEZA International Ltd., the UK […]
Vercel’s V0AI tool weaponized by cybercriminals quickly creates fake login pages at scale

July 2, 2025Ravi LakshmananAI Security/phishing The unknown threat actor has been observing V0 weaponizing Vercel’s generative artificial intelligence (AI) tool, and has designed fake sign-in pages that impersonate legal counterparts. “This observation illustrates a new evolution in weaponization of generated AI by threat actors that demonstrated their ability to generate functional phishing sites from simple […]
Anthropic MCP Critical Vulnerability Exposes Developer Machines to Remote Exploits

Cybersecurity researchers discover critical security vulnerabilities in the Model Context Protocol (MCP) Inspector project of artificial intelligence (AI) company Anthropic, causing remote code execution (RCE), allowing attackers to fully access the host. The vulnerability tracked as CVE-2025-49596 has a CVSS score of 9.4 out of a maximum of 10.0. “This is one of the first […]
TA829 and UNK_GREENSEC share tactics and infrastructure in an ongoing malware campaign

Cybersecurity researchers have flagged the tactical similarity between the threat actor behind the Romcom rat and the cluster where dubbing transfer devices are being observed to be delivered. Under The Ta829, Enterprise Security Firm Proofpoint tracks activities related to transfer loaders to groups called UNK_Greensec. The latter are also known as cigars, the ambiguous Mantis, […]
New flaws in IDES like Visual Studio code allow malicious extensions to bypass validated status

July 1, 2025Ravi LakshmananDeveloper Security / Software Development New investigations in integrated development environments (IDES) such as Microsoft Visual Studio Code, Visual Studio, Intellij Idea, Cursor reveal weaknesses in how the enhanced validation process handles, ultimately allowing attackers to run malicious code on their developer machines. “The flawed validation checks in Visual Studio code have […]
New Maturing Model for Browser Security: Close the Risk of the Last Mile

Despite years of investment in Zero Trust, SSE, and endpoint protection, many companies still have one important layer of browser exposure. 85% of modern work is happening now. It’s also where copy/paste actions, unauthorized use of Genai, Rogue extensions, and personal devices create risk aspects that most security stacks aren’t designed to handle. A new […]