Executive Award Phishing Scam Deploys Stealerium Malware via ClickFix Exploit A sophisticated phishing campaign, dubbed the Executive Award scam, has emerged, targeting organizations with a […]
Year: 2025
Microsoft Confirms Critical Windows 11 UI Failures in 24H2 and 25H2 Updates Affecting Enterprise Environments
Microsoft Confirms Critical UI Failures in Windows 11 24H2 and 25H2 Updates Microsoft has officially acknowledged a significant issue affecting enterprise and managed environments running […]
MuddyWater’s Advanced Cyberattacks Threaten Critical Infrastructure with New Malware Tactics
MuddyWater’s Advanced Cyber Assaults on Critical Infrastructure: Unveiling New Malware Tactics MuddyWater, an Iran-affiliated cyberespionage group also known as Mango Sandstorm, has initiated a sophisticated […]
CISA Warns of Active Exploitation of Critical Android Zero-Day Vulnerabilities CVE-2025-48572 and CVE-2025-48633
CISA Alerts on Active Exploitation of Android Zero-Day Vulnerabilities The Cybersecurity and Infrastructure Security Agency (CISA) has recently added two critical vulnerabilities within the Android […]
Microsoft Silently Patches Windows LNK Vulnerability Exploited Since 2017
Article Title: Microsoft Quietly Patches Long-Exploited Windows LNK Vulnerability In November 2025, Microsoft discreetly addressed a longstanding vulnerability in Windows shortcut (.lnk) files, identified as […]
Storm-0900 Phishing Blitz Exploits Holiday Themes to Deploy XWorm Malware Across US
Storm-0900’s Deceptive Phishing Blitz: Exploiting Parking Tickets and Medical Tests to Deploy XWorm Malware On the eve of Thanksgiving, November 26, 2025, a sophisticated cyber […]
Malicious Rust Crate ‘evm-units’ Targets OS-Specific Payloads in Developers’ Environments
Malicious Rust Crate ‘evm-units’ Masquerades as EVM Version Checker to Deploy OS-Specific Payloads In a recent development within the open-source software supply chain, a malicious […]
K7 Antivirus Flaw Allows SYSTEM Access, Exposing Users to Attacks; Patch Bypasses Found
Critical Vulnerability in K7 Antivirus Grants Attackers SYSTEM-Level Access A significant security flaw has been identified in K7 Ultimate Security, a product of K7 Computing, […]
Shai-Hulud 2.0 Malware Hits 30,000 GitHub Repos, Steals Developer Credentials in Massive Supply Chain Breach
Shai-Hulud 2.0 Malware Compromises 30,000 GitHub Repositories and Steals 500 User Credentials A significant supply chain security breach has emerged with the discovery of Shai-Hulud […]
Cybercriminals Use Calendly in Phishing Scheme to Target Google Workspace Accounts
Cybercriminals Exploit Calendly in Sophisticated Phishing Scheme Targeting Google Workspace Accounts A new phishing campaign has emerged, targeting business professionals by impersonating the popular scheduling […]