Critical Vulnerabilities in Dassault Systèmes’ DELMIA Apriso Under Active Exploitation The Cybersecurity and Infrastructure Security Agency (CISA) has recently identified and added two critical vulnerabilities […]
Year: 2025
Windows Narrator Vulnerability Persists, Allowing DLL Hijacking and Stealthy Code Execution
A persistent vulnerability in Windows’ Narrator accessibility tool has been identified, allowing attackers to exploit DLL hijacking techniques for stealthy code execution, system persistence, and […]
Atroposia RAT: New Stealthy Malware Enables Hidden Remote Desktop Access and System Persistence
Atroposia RAT: The New Stealthy Cyber Threat with Advanced Remote Desktop Capabilities A new remote access trojan (RAT) named Atroposia has surfaced, presenting a significant […]
Chrome to Enforce Mandatory HTTPS for Public Sites Starting in 2026
Chrome’s New Security Feature: Mandatory HTTPS for Public Sites In a significant move to bolster online security, Google has announced that starting October 2026, Chrome […]
Google’s Mandiant Releases Guide to Secure Privileged User Accounts Against Cyber Threats
Google’s Comprehensive Guide to Securing Privileged User Accounts In an era where cyber threats are increasingly sophisticated, Google’s Mandiant cybersecurity division has released an in-depth […]
Gunra Ransomware Targets Windows and Linux; Exploits ChaCha Vulnerabilities in Linux Variant
Gunra Ransomware: A Dual-Platform Threat Targeting Windows and Linux Systems Since its emergence in April 2025, the Gunra ransomware group has rapidly become a formidable […]
Malicious npm Packages Exploit Typosquatting to Deploy Credential Stealers Across Platforms
Stealthy npm Packages Deploy Multi-Stage Credential Harvesters Across Platforms The npm ecosystem has recently been infiltrated by ten malicious packages designed to execute automatically upon […]
Thousands of German Exchange Servers at Cyber Risk Due to Outdated Software, Warns BSI
Thousands of German Exchange Servers at Risk Due to Outdated Software In a recent alert issued on October 28, 2025, Germany’s Federal Office for Information […]
HikvisionExploiter Toolkit Automates Attacks on Vulnerable IP Cameras, Exploiting CVE-2021-36260
HikvisionExploiter: Unveiling the Automated Toolkit Targeting Vulnerable Hikvision IP Cameras In the ever-evolving landscape of cybersecurity, a new tool named HikvisionExploiter has surfaced, designed to […]
XSS Vulnerability in LiteSpeed Cache Plugin Puts Millions of WordPress Sites at Risk
Critical XSS Vulnerability in LiteSpeed Cache Plugin Threatens Millions of WordPress Sites A significant security flaw has been identified in the widely-used LiteSpeed Cache plugin […]