What is the difference between the top tier platforms?

The SOC of 2026 will no longer be a human-only battlefield. As organizations grow and threats evolve in sophistication and velocity, a new generation of AI-powered agents is reshaping how security operations centers (SOCs) detect, respond, and adapt. However, not all AI SOC platforms are created equal. Today’s market offers everything from prompt-dependent co-pilots to […]

175 malicious npm packages with 26,000 downloads used in credential phishing campaign

October 10, 2025Ravi LakshmananCybercrime/Malware Cybersecurity researchers have flagged a new set of 175 malicious packages on the npm registry that were used to facilitate credential harvesting attacks as part of an unusual campaign. According to Socket, these packages were downloaded a total of 26,000 times and serve as the infrastructure for a widespread phishing campaign […]

Active exploit detected for Gladinet and TrioFox vulnerabilities

October 10, 2025Ravi LakshmananVulnerability/Zero-day Cybersecurity firm Huntress said it has seen active exploitation of an unpatched security flaw affecting its Gladinet CentreStack and TrioFox products in the wild. The zero-day vulnerability, tracked as CVE-2025-11371 (CVSS score: 6.1), is an unauthenticated local file inclusion bug that allows unintentional disclosure of system files. This affects all versions […]

CL0P-linked hackers exploit flaws in Oracle software to infiltrate dozens of organizations

October 10, 2025Ravi LakshmananVulnerability/Threat Intelligence Google Threat Intelligence Group (GTIG) and Mandiant said in a new report released Thursday that a zero-day exploit of a security flaw in Oracle’s E-Business Suite (EBS) software may have affected dozens of organizations since August 9, 2025. “While we are still assessing the scope of this incident, we believe […]

Evolution of UTA0388 espionage malware

October 9, 2025Ravi LakshmananCyber ​​espionage/artificial intelligence A Chinese-aligned threat actor codenamed UTA0388 is believed to be involved in a series of spear-phishing campaigns targeting North America, Asia, and Europe aimed at delivering a Go-based implant known as GOVERSHELL. “The campaign initially observed was tailored to targets, with messages purportedly sent by senior researchers and analysts […]

New ClayRat spyware targets Android users via fake WhatsApp and TikTok apps

October 9, 2025Ravi LakshmananMobile security/malware A rapidly evolving Android spyware campaign called ClayRat targets users in Russia by impersonating popular apps such as WhatsApp, Google Photos, TikTok, and YouTube, using a combination of Telegram channels and similar phishing websites as decoys to install them. “Once activated, the spyware can steal SMS messages, call logs, notifications, […]

Hackers access SonicWall cloud firewall backups and initiate emergency security checks

October 9, 2025Ravi LakshmananCloud security / network security SonicWall disclosed Wednesday that an unauthorized person had accessed the firewall configuration backup files of all customers using its cloud backup service. “The files contain encrypted credentials and configuration data. While encryption is maintained, possession of these files may increase the risk of targeted attacks,” the company […]

MS Teams Hack, MFA Hijacking, $2B Crypto Heist, Apple Siri Probe & More

Oct 09, 2025Ravie LakshmananCybersecurity / Hacking News Cyber threats are evolving faster than ever. Attackers now combine social engineering, AI-driven manipulation, and cloud exploitation to breach targets once considered secure. From communication platforms to connected devices, every system that enhances convenience also expands the attack surface. This edition of ThreatsDay Bulletin explores these converging risks […]

SaaS breaches start with the token

Token theft is a leading cause of SaaS breaches. Learn why OAuth and API tokens are often overlooked and how security teams can improve token hygiene to prevent attacks. Most businesses in 2025 rely on all kinds of Software-as-a-Service (SaaS) applications to get their jobs done. However, the security of these applications relies on small […]

AI becomes Russia’s new cyber weapon in war against Ukraine

October 9, 2025Ravi LakshmananArtificial intelligence/malware The introduction of artificial intelligence (AI) in cyberattacks on Ukraine by Russian hackers has reached a new level in the first half of 2025 (H1 2025), the country’s State Special Communications and Information Protection Service (SSSCIP) has announced. “Hackers are now using this to do more than just generate phishing […]