Microsoft has urgently released a security advisory concerning critical zero-day vulnerabilities in on-premises SharePoint Server installations. These vulnerabilities, identified as CVE-2025-53770 and CVE-2025-53771, are currently […]
Month: July 2025
Critical Vulnerability in HPE Aruba Access Points Allows Unauthorized Administrative Access
A significant security flaw has been identified in Hewlett Packard Enterprise (HPE) Aruba Networking Instant On Access Points, potentially allowing attackers to bypass authentication mechanisms […]
CoinDCX Suffers $44.2 Million Cyberattack; Customer Funds Remain Secure
On July 19, 2025, CoinDCX, India’s second-largest cryptocurrency exchange, experienced a sophisticated cyberattack resulting in the theft of approximately $44.2 million from its operational funds. […]
Emergence of KAWA4096 Ransomware: A New Threat Leveraging Advanced Techniques
In June 2025, a new ransomware variant named KAWA4096 surfaced, targeting organizations primarily in the United States and Japan. This malware exhibits advanced evasion techniques […]
Critical Livewire Vulnerability Exposes Laravel Applications to Remote Code Execution
A significant security flaw has been identified in Livewire, a full-stack framework for Laravel, which could potentially expose numerous web applications to remote code execution […]
Critical Remote Code Execution Vulnerability Discovered in Lighthouse Studio Survey Software
A significant security flaw has been identified in Lighthouse Studio, a widely utilized survey software developed by Sawtooth Software. This vulnerability, designated as CVE-2025-34300, resides […]
Critical Zero-Day Vulnerability in Microsoft SharePoint Server Exploited in Active Attacks
The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent alert regarding a critical zero-day vulnerability in Microsoft SharePoint Server, identified as CVE-2025-53770. This […]
Dell’s Customer Solution Centers Breached by World Leaks Group
In July 2025, Dell Technologies confirmed a security breach involving its Customer Solution Centers platform, orchestrated by the cyber extortion group known as World Leaks. […]
APT41’s Advanced Tactics: Utilizing Atexec and WmiExec for Malware Deployment
APT41, a Chinese-speaking cyberespionage group, has recently expanded its operations into Africa, targeting government IT services with sophisticated attacks. This marks a significant geographical shift […]
Surveillance Firm Exploits SS7 Vulnerability to Track Mobile Users’ Locations
A surveillance company has been identified leveraging a sophisticated Signaling System No. 7 (SS7) bypass technique to monitor the real-time locations of mobile phone users. […]