XWorm 6.0 returns with 35 or more plugins and extended data theft

Cybersecurity researchers are illustratively turning the evolution of Xworm malware into a versatile tool to support a wide range of malicious actions on compromised hosts. “Xworm’s modular design is built around a set of specialized components known as core clients and plugins,” Trellix researchers Niranjan Hegde and Sijo Jacob said in an analysis published last […]
Vulnerability in CVSS 10.0 allows attackers to execute code remotely

October 7, 2025Ravi LakshmananVulnerability/Cloud Security Redis has revealed details of the maximum security flaws in in-memory database software that can result in remote code execution under certain circumstances. The vulnerability tracked as CVE-2025-49844 (aka Redishell) is assigned a CVSS score of 10.0. “Authenticated users can use specially written LUA scripts to manipulate garbage collectors, trigger […]
Microsoft links Storm-1175 to GoAnywhere exploits deploying Medusa ransomware

October 7, 2025Ravi LakshmananVulnerability/Cloud Security Microsoft on Monday determined that the attacker it tracks as Storm-1175 was a exploiting a serious security flaw in the Fortra GoAnywhere software to facilitate deployment of Medusa ransomware. This vulnerability is CVE-2025-10035 (CVSS score: 10.0) and is a critical deserialization bug that can cause command injection without authentication. This […]
As CL0P misuses CVE-2025-61882 in real-world attacks, OracleEB

October 7, 2025Ravi LakshmananCyber Attacks/Ransomware CrowdStrike said Monday that the first known exploitation occurred on August 9, 2025, when threat actors tracking the recently disclosed security flaw exploitation in Oracle E-Business Suite as Graceful Spider (also known as CL0P). Exploitation involves exploitation of CVE-2025-61882 (CVSS score: 9.8), a key vulnerability that facilitates remote code execution […]
The new report links research firms Bieta and CIII to MSS Cyber Operations in China

October 6, 2025Ravi LakshmananNetwork Security/Cyber Spy A Chinese company named Beijing Electronics and Technology Applications Institute (BIETA) is highly rated as likely to be led by the Ministry of National Security (MSS). This assessment comes from evidence that at least four BIETA staff members have a clear link to MSS officers and have or have […]
Oracle 0-Day, BitLocker Bypass, VMScape, WhatsApp Worm & More

Oct 06, 2025Ravie LakshmananCybersecurity / Hacking News The cyber world never hits pause, and staying alert matters more than ever. Every week brings new tricks, smarter attacks, and fresh lessons from the field. This recap cuts through the noise to share what really matters—key trends, warning signs, and stories shaping today’s security landscape. Whether you’re […]
Five key questions to adopt AI security solutions

Fast and fast in the age of artificial intelligence (AI) and cloud technology, organizations are increasingly implementing security measures to protect sensitive data and ensure regulatory compliance. Among these measurements, AI-SPM (AI Security Astute Management) solutions have gained the traction to secure AI pipelines, sensitive data assets, and the entire AI ecosystem. These solutions help […]
Chinese cybercrime group is running global SEO fraud rings using compromised IIS servers

October 6, 2025Ravi LakshmananMalware/Data Breaches Cybersecurity researchers are shedding light on a Chinese-speaking cybercriminal group called UAT-8099, which is caused by search engine optimization (SEO) fraud and theft of high-value credentials, configuration files, and certificate data. The attack is designed to target most infectious diseases reported in India, Thailand, Vietnam, Canada and Brazil, as well […]
Zimbra Zero-day targeted and exploited the Brazilian military through malicious ICS files

October 6, 2025Ravi LakshmananEmail Security / Zero Day The current security vulnerabilities during the patch in Zimbra collaboration were used as zero-days in cyberattacks targeting Brazilian military earlier this year. The vulnerability tracked as CVE-2025-27915 (CVSS score: 5.4) is a vulnerability in the classic web client cross-site scripting (XSS) that results in insufficient disinfection of […]
After CL0P exploits it in a data theft attack, Oracle Rushes patches are CVE-2025-61882

October 6, 2025Ravi LakshmananVulnerability/Threat Intelligence Oracle has released an emergency update to address critical security flaws in its e-business suite, which it said was exploited in the recent wave of CL0P data theft attacks. The vulnerability tracked as CVE-2025-61882 (CVSS score: 9.8) concerns an unspecified bug that allows unauthenticated attackers with network access over HTTP […]