Google launches new Maps feature to help companies report review-based extortion activity

November 7, 2025Ravi LakshmananData protection/Malware Google announced Thursday that it will introduce a special form for businesses listed on Google Maps to report extortion by attackers who post inauthentic bad reviews on the platform and demand a ransom to remove negative comments. This approach is designed to address a common practice known as review bombing, […]
Malicious Vibe-coded VS Code extension with ransomware functionality discovered

Cybersecurity researchers have flagged a malicious Visual Studio Code (VS Code) extension with basic ransomware functionality that appears to have been created with the help of artificial intelligence, or vibe-coded. Secure Annex researcher John Tuckner, who flagged the susvsex extension, said the extension was not trying to hide any malicious functionality. This extension was uploaded […]
Trojanized ESET installer drops Kalambur backdoor in phishing attack on Ukraine

November 6, 2025Ravi LakshmananMalware/vulnerabilities A previously unknown cluster of threat activity impersonating Slovak cybersecurity company ESET was observed as part of a phishing campaign targeting Ukrainian businesses. The campaign, detected in May 2025, is being tracked by security organizations under the name InedibleOchotense and is described as affiliated with Russia. “InedibleOchotense sent spear-phishing emails and […]
Cisco warns of new firewall attacks exploiting CVE-2025-20333 and CVE-2025-20362

November 6, 2025Ravi LakshmananZero-day/vulnerabilities Cisco announced Wednesday that it has become aware of a new attack variant that targets devices running Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software releases susceptible to CVE-2025-20333 and CVE-2025-20362. “This attack could cause unpatched devices to reload unexpectedly, leading to a […]
Building cyber resilience in financial services

introduction Financial institutions are facing a new reality. Cyber resilience has moved from a best practice to a business necessity to a prescriptive regulatory requirement. Crisis management and tabletop exercises have long been relatively rare in the cybersecurity context, but have become mandatory as a series of regulations, including the EU’s DORA (Digital Operational Resilience […]
AI Tools in Malware, Botnets, GDI Flaws, Election Attacks & More

Nov 06, 2025Ravie LakshmananCybersecurity / Hacking News Cybercrime has stopped being a problem of just the internet — it’s becoming a problem of the real world. Online scams now fund organized crime, hackers rent violence like a service, and even trusted apps or social platforms are turning into attack vectors. The result is a global […]
Bitdefender Named a Representative Vendor in the 2025 Gartner® Market Guide for Managed Detection and Response

November 6, 2025hacker newsUS Bitdefender has once again been recognized as a leading vendor in the Gartner® Market Guide for Managed Detection and Response (MDR) for the fourth consecutive year. According to Gartner, more than 600 providers worldwide claim to offer MDR services, but only a select few meet the criteria to be included in […]
Hackers weaponize Windows Hyper-V to hide Linux VMs and evade EDR detection

November 6, 2025Ravi LakshmananMalware/Network Security An attacker known as Curly COMrades has been observed exploiting virtualization technology as a way to bypass security solutions and execute custom malware. According to a new report from Bitdefender, the attackers allegedly enabled the Hyper-V role on selected victim systems and deployed minimal Alpine Linux-based virtual machines. “This hidden […]
SonicWall confirms state-sponsored hackers were behind September cloud backup breach

November 6, 2025Ravi LakshmananIncident response/cloud security SonicWall has officially suggested that state-sponsored attackers were behind a September security breach that led to the unauthorized release of firewall configuration backup files. “The malicious activity carried out by state-sponsored threat actors was limited to unauthorized access to cloud backup files from specific cloud environments using API calls,” […]
Google discovers PROMPTFLUX malware that uses Gemini AI to rewrite code every hour

November 5, 2025Ravi LakshmananArtificial Intelligence/Threat Intelligence Google announced Wednesday that it has discovered that an unknown attacker using experimental Visual Basic Script (VB Script) malware called PROMPTFLUX interacts with the company’s Gemini artificial intelligence (AI) model API to create its own source code to improve obfuscation and evasion. “PROMPTFLUX is written in VBScript and interacts […]