The rapid advancement of generative artificial intelligence (GenAI) has revolutionized various industries, offering tools that can generate human-like text, create realistic images, and even develop […]
Month: August 2025
Threat Actor Lists Windows Zero-Day RCE Exploit for Sale on Dark Web
A threat actor has reportedly listed a Windows Zero-Day Remote Code Execution (RCE) exploit for sale on the dark web, claiming it targets fully updated […]
Microsoft 365 Outage Disrupts Global Access to Office.com and Copilot Services
On August 20, 2025, Microsoft experienced a significant outage affecting its Microsoft 365 services, notably Office.com and the AI-powered assistant, Copilot. This disruption has left […]
Lenovo AI Chatbot Vulnerability Exposes Corporate Systems to Remote Script Execution
A critical security flaw has been identified in Lenovo’s AI chatbot, Lena, which allows attackers to execute malicious scripts on corporate machines through simple prompt […]
Emergence of Salty 2FA: A Sophisticated Phishing-as-a-Service Threat to Microsoft 365 Users
A newly identified Phishing-as-a-Service (PhaaS) platform, dubbed Salty 2FA, has surfaced as a significant cybersecurity threat, particularly targeting Microsoft 365 users across various industries in […]
Okta Introduces Auth0 Customer Detection Catalog to Enhance Proactive Threat Detection
In a significant advancement for identity and access management security, Okta has unveiled the Auth0 Customer Detection Catalog, an open-source repository aimed at bolstering proactive […]
U.S. Authorities Dismantle RapperBot Botnet; Administrator Indicted
In a significant move against cybercrime, the U.S. Department of Justice (DOJ) has announced the disruption of the RapperBot botnet and the indictment of its […]
Exploitation of Apache ActiveMQ Vulnerability Leads to Deployment of DripDropper Malware on Cloud Linux Systems
In recent developments, cybercriminals have been actively exploiting a critical security flaw in Apache ActiveMQ to infiltrate cloud-based Linux systems, deploying a sophisticated malware known […]
U.S. Department of Justice Charges 22-Year-Old for Operating RapperBot Botnet Involved in 370,000 DDoS Attacks
The U.S. Department of Justice (DoJ) has charged 22-year-old Ethan Foltz from Eugene, Oregon, for allegedly developing and managing a distributed denial-of-service (DDoS)-for-hire botnet known […]
North Korean Cyber Espionage Targets Diplomats Using GitHub and IT Worker Schemes
Between March and July 2025, North Korean cyber operatives orchestrated a sophisticated espionage campaign targeting diplomatic missions in South Korea. The attackers employed at least […]