Google brings AirDrop compatibility to Android Quick Share with robust security

November 21, 2025Rabi LakshmananData protection/technology Surprisingly, Google announced Thursday that it has updated its peer-to-peer file transfer service, Quick Share, to work with Apple’s AirDrop device, allowing users to more easily share files and photos between Android and iPhone devices. The cross-platform sharing feature is currently limited to the Pixel 10 lineup and works with […]

Why IT admins choose Samsung for mobile security

November 21, 2025hacker newsMobile security/data protection Have you ever wondered how some IT teams keep corporate data safe without slowing down their employees? Of course they do. Mobile devices are essential to modern work, but being mobile comes with risks. Like you, IT administrators juggle protecting sensitive data while keeping their teams productive. That’s why […]

APT24 deploys BADAUDIO in long-running espionage campaign targeting Taiwan and over 1,000 domains

A China-linked threat actor known as APT24 has been observed using previously undocumented malware known as BADAUDIO to establish persistent remote access to compromised networks as part of a nearly three-year campaign. “While previous operations relied on a wide range of strategic web breaches to compromise legitimate websites, APT24 recently pivoted to using more sophisticated […]

SEC drops SolarWinds lawsuit after years of high-stakes cybersecurity investigation

November 21, 2025Ravi LakshmananCompliance/Cyber ​​attack The U.S. Securities and Exchange Commission (SEC) has abandoned a lawsuit against SolarWinds and its chief information security officer, alleging the company misled investors about security practices that led to a 2020 supply chain attack. In a joint complaint filed on November 20, 2025, the SEC, along with SolarWinds and […]

Salesforce reports unauthorized data access via OAuth activity linked to Gainsight

November 21, 2025Ravi LakshmananData Breach / SaaS Security Salesforce warned that it had detected “anomalous activity” related to Gainsight published applications connected to its platform. “Our investigation revealed that this activity may have allowed unauthorized access to certain customers’ Salesforce data through app connections,” the company said in its advisory. The cloud services company announced […]

ShadowRay 2.0 exploits unpatched Ray flaw to build self-spreading GPU cryptomining botnet

November 20, 2025Ravi LakshmananVulnerabilities / Cloud Computing Oligo Security has warned that an attack is underway that exploits a two-year-old security flaw in the Ray open source artificial intelligence (AI) framework to turn infected clusters powered by NVIDIA GPUs into self-replicating cryptocurrency mining botnets. The activity, codenamed “ShadowRay 2.0,” is an evolution of a previous […]

Tsundere botnet scales with gaming lures on Windows and Ethereum-based C2

November 20, 2025Ravi LakshmananBotnet/Malware Cybersecurity researchers have warned that a botnet called “Tsundere” targeting Windows users is actively expanding. Kaspersky researcher Lisandro Uviedo said in an analysis published today that the threat has been active since mid-2025 and is designed to execute arbitrary JavaScript code retrieved from command-and-control (C2) servers. Details about how botnet malware […]

0-Days, LinkedIn Spies, Crypto Crimes, IoT Flaws and New Malware Waves

Nov 20, 2025Ravie LakshmananCybersecurity / Hacking News This week has been crazy in the world of hacking and online security. From Thailand to London to the US, we’ve seen arrests, spies at work, and big power moves online. Hackers are getting caught. Spies are getting better at their jobs. Even simple things like browser add-ons […]

CTM360 exposes global WhatsApp hijacking campaign: HackOnChat

November 20, 2025hacker newsOnline fraud/web security CTM360 has identified a rapidly expanding WhatsApp account hacking campaign targeting users around the world through a network of fake authentication portals and spoof pages. The campaign, known internally as HackOnChat, exploits WhatsApp’s familiar web interface and uses social engineering tactics to trick users into compromising their accounts. Researchers […]

New Sturnus Android Trojan silently captures encrypted chats and hijacks devices

November 20, 2025Ravi LakshmananMalware/Mobile Security Cybersecurity researchers have revealed details of a new Android banking Trojan called Sturnus that can steal credentials and take over entire devices to perform financial fraud. “A key differentiator is the ability to bypass encrypted messaging,” ThreatFabric said in a report shared with The Hacker News. “By capturing content directly […]