SAP Patch Critical Net Weber (CVSS up to 10.0) and previously misused S/4HANA flaws

September 10, 2025Ravi LakshmananSoftware Security/Vulnerabilities On Tuesday, SAP released a security update to address multiple security flaws, including three critical vulnerabilities in SAP NetWeaver. The vulnerabilities are listed below – CVE-2025-42944 (CVSS score: 10.0) – SAP NetWeaver degassing vulnerability allows unauthorized attackers to submit malicious payloads to open ports via RMI-P4 modules and execute operating […]
Axios Abuse and Salty2FA Kit Fuel Advanced Microsoft 365 Fishing Attack

According to new ReliaQuest research, threat actors have abused HTTP client tools like Axios alongside Microsoft’s Direct Send capabilities, forming a “very efficient attack pipeline” in recent phishing campaigns. “Axios User Agent Activity has skyrocketed 241% between June and August 2025, and has increased the growth of 85% for all other flagged user agents,” the […]
Raton Android Malware Detected with NFC Relay and ATS Banking Fraud Features

September 9, 2025Ravi LakshmananMobile Security/Threat Intelligence A new Android malware called Raton has evolved from a basic tool that allows for sleek remote access trojan-like field communication (NFC) relay attacks with automatic forwarding system (ATS) capabilities to enforce device fraud. “Raton combines traditional overlay attacks with automatic remittances and NFC relay capabilities, making them a […]
[Webinar] ShadowAI agents grow fast – learn how to detect and control them

September 9, 2025Hacker NewsArtificial Intelligence/Threat Detection ⚠§You only need one click. Engineers spin “experimental” AI agents to test their workflow. Business units connect to automatic reports. The cloud platform quietly enables new agents behind the scenes. Individually, they look harmless. But together, they form an invisible flock of Shadow AI agents. This manipulates the outside […]
New malware campaigns highlight the rise in AI and the risks of phishing

Cybersecurity researchers have revealed details of a phishing campaign that provides a remote access trojan that has been turned into stealth banking malware called Master Rats. Phishing attacks incorporate many advanced evasion techniques, extending functionality by providing full control over compromised systems, Siphon-sensitive data and providing secondary plugins, says Fortinet Fortiguard Labs. “This includes the […]
TOR-based crypto jacking attacks escalate through misconfigured Docker APIs

Cybersecurity researchers have discovered a variant of a recently disclosed campaign that abuses the TOR network for cryptojacking attacks targeting exposed Docker APIs. Akamai, who discovered the latest activity last month, said it was designed to block other actors from accessing the Docker API from the Internet. The findings were built on a previous report […]
How major CISOs are getting budget approval

It’s budget season. Again, security is being questioned, scrutinized or stripped. If you are a CISO or security leader, you will notice that the program explains why it is important, why certain tools or personnel are essential, and why the next violation is one blind spot. However, these discussions are often lacking unless framed in […]
20 popular NPM packages with 2 billion weekly downloads compromised in supply chain attacks

September 9, 2025Ravi LakshmananCryptocurrency/Software Security Multiple NPM packages have been compromised as part of a software supply chain attack after the maintainer’s account was compromised in a phishing attack. The attack targeted Josh Junon (aka QIX) who received an email message mimicking NPM (support @npmjs[.]Help) and click on the embedded link to prompt you to […]
45 Previously unreported domain reveals long-standing salt typhoon cyberspy

September 9, 2025Ravi LakshmananCyberspy/Telecom Security Threat Hunter discovered a set of domains that had not been reported before returning to May 2020. “The domain dates back several years ago and further confirms that the oldest registration activity occurred in May 2020 and that the 2024 chloride attack was not the first activity carried out by […]
Compromise on GitHub accounts resulted in SalesLoft drift violations affecting 22 companies

September 8th, 2025Ravi LakshmananSupply Chain Attacks/API Security SalesLoft has revealed that a data breaches linked to the drift application started with a compromise on GitHub accounts. Mandiant, owned by Google, which began investigating the incident, said the threat actor, tracked as UNC6395, accessed his SalesLoft GitHub account from March to June 2025. So far, 22 […]