Facebook’s new AI tool asks you to upload your photos for story ideas, causing privacy concerns

June 28, 2025Ravi LakshmananPrivacy/Data Protection Facebook, a social networking platform owned by Meta, is asking users to upload photos from their mobile phones and suggest collages, summaries, and other ideas using artificial intelligence (AI). According to TechCrunch, which first reported this feature, users are being provided with a new pop-up message asking for permission to […]

Over 1,000 SOHO devices hacked in the China Link Lap Dog Cyberspy Campaign

June 27, 2025Ravi LakshmananThreat Hunting/Vulnerability Threat Hunter has discovered a network of over 1,000 compromised small office and home office (SOHO) devices used to promote a long-term cyberspy infrastructure campaign for China and Nexus hacking groups. The Operational Relay Box (ORB) network is codenamed LapDogs by the Strike Team at SecurityScoreCard. “The LapDogs network is […]

Pubload and Pubshell malware used in Mustang Panda’s Tibet-specific attacks

June 27, 2025Ravi LakshmananVulnerability/Cyberspy The Chinese-related threat actor known as the Mustang Panda is attributed to a new cyber-espionage action directed against the Tibetan community. According to IBM X-Force, topics related to Tibet have been leveraged, such as the 9th World Parliament’s Treaty of Tibet (WPCT), China’s Education Policy (TAR) in the Tibetan Autonomous Region […]

Agent AI SOC Analyst Business Case

The Security Operations Center (SOC) is under pressure from both sides. Threats are increasing more complex and frequently, but security budgets are no longer at a pace. Security leaders today are expected to reduce risk and deliver results without relying on larger teams or increasing spending. At the same time, SOC’s inefficiency is eliminating resources. […]

Chinese group Silver Fox delivers hidden rootkits with sanebox rats using fake websites

June 27, 2025Ravi LakshmananMalware/Cyber ​​Attacks New campaigns have been observed offering Sainbox Rat and Open-Source Hidden Rootkit, leveraging fake websites advertising popular software such as WPS Office, Sogou, and Deepseek. The activity stems from moderate confidence in a Chinese hacking group called Silver Fox (aka Void Arachne), citing the trademark similarity with previous campaigns attributed […]

The threat of mobile transfer surfaces increased when scan surges and CVE defects became targets

June 27, 2025Ravi LakshmananNetwork Security/Vulnerabilities Threat intelligence company Greynoise has warned of “notable surges” in scan activities targeting progressive mobile systems since May 27, 2025. The attacker may be preparing another mass exploitation campaign or investigating a receivable system. MoveIT Transfer is a popular managed file transfer solution used by businesses and government agencies to […]

Oneclik malware uses Microsoft Clickonce and Golang Backdoors to target the energy sector

Cybersecurity researchers detail a new campaign that calls Oneclik, leveraging Microsoft’s ClickOnce software deployment technology and a bespoke Golang backdoor, calling it a new campaign that compromises organizations within the energy, oil and gas sectors. “The campaign shows the characteristics alongside threat actors belonging to China, but attribution is cautious,” Trellix researchers Nico Paulo Yturriaga […]

Critical Open VSX Registry Flaws expose millions of developers to supply chain attacks

June 26, 2025Ravi LakshmananOpen Source/Vulnerability Cybersecurity researchers revealed a critical vulnerability in the open VSX registry (“Open-VSX”)[.]org”) It could have hopefully been that attackers could have controlled the entire Visual Studio code extension market and pose serious supply chain risks. “The vulnerability allows attackers to take full control of the entire expansion market, thus allowing […]

Critical RCE flaws in Cisco ISE and ISE-PIC allow uncertified attackers to gain root access

June 26, 2025Ravi LakshmananVulnerabilities, network security Cisco has released an update to address two maximum security flaws: the Identity Services Engine (ISE) and the ISE Passive Identity Connector (ISE-PIC). Vulnerabilities assigned to CVE Identifiers CVE-2025-20281 and CVE-2025-20282 each have a CVSS score of 10.0. The explanation of the defect is below – CVE-2025-20281-CVE-2025-20281- Unauthenticated remote […]

The new filefix method appears as a threat following a 517% increase in clickfix attacks

June 26, 2025Ravi LakshmananCyber ​​Attacks/Malware Analysis According to ESET data, ClickFix social engineering tactics as initial access vectors using fake capture validation increased by 517% between the second half of 2024 and the first half of this year. “The list of threats led by Clickfix attacks grows day by day, including Infostealers, Ransomware, Remot Access […]