Ulefone and Krüger&Matz smartphones found with dangerous preloaded app flaws
The flaws allow attackers to steal PIN codes, perform unauthorized factory resets, and gain system-level access.
The flaws allow attackers to steal PIN codes, perform unauthorized factory resets, and gain system-level access.
The threat actors are compromising services like Docker, Gitea, and HashiCorp’s Consul and Nomad platforms.
The flaw could allow attackers to corrupt memory on the heap via specially crafted HTML pages, potentially leading to remote code execution.
The initiative aims to standardize the confusing nicknames used by cybersecurity firms to track digital adversaries.
CVE-2025-48827 and CVE-2025-48828 affect vBulletin versions 5.0.0 through 5.7.5 and 6.0.0 through 6.0.3 running on PHP 8.1 or newer.
One of BitMEX's employees was targeted on LinkedIn by a fake recruiter promoting a job at an NFT project.
The attackers focused on internet café systems running specialized management software used to track customer usage and automate billing.
AVCheck enabled malware developers to stealthily test their malware against commercial antivirus solutions.
In brief: 9,000 ASUS routers hacked in a botnet campaign, a new Russian state-backed APT discovered, and more.
The attack chain begins with spear-phishing emails containing a ZIP archive hosted on the compromised site.
Showing elements 581 - 590