exploits
- REVIEWS
Found in the wild: 2 Secure Boot exploits. Microsoft is patching only 1 of them.
Researchers have unearthed two publicly available exploits that completely evade protections offered by Secure Boot, the industry-wide mechanism for ensuring…
Read More » - APPLICATIONS
New Atomic macOS Stealer Campaign Exploits ClickFix to Target Apple Users
Cybersecurity researchers are alerting to a new malware campaign that employs the ClickFix social engineering tactic to trick users into…
Read More » - APPLICATIONS
Cryptojacking Campaign Exploits DevOps APIs Using Off-the-Shelf Tools from GitHub
Cybersecurity researchers have discovered a new cryptojacking campaign that’s targeting publicly accessible DevOps web servers such as those associated with…
Read More » - APPLICATIONS
APT Intrusions, AI Malware, Zero-Click Exploits, Browser Hijacks and More
Jun 02, 2025Ravie LakshmananCybersecurity / Hacking News If this had been a security drill, someone would’ve said it went too…
Read More » - APPLICATIONS
DragonForce Exploits SimpleHelp Flaws to Deploy Ransomware Across Customer Endpoints
The threat actors behind the DragonForce ransomware gained access to an unnamed Managed Service Provider’s (MSP) SimpleHelp remote monitoring and…
Read More » - APPLICATIONS
Chinese APT41 Exploits Google Calendar for Malware Command-and-Control Operations
May 29, 2025Ravie LakshmananMalware / Cloud Security Google on Wednesday disclosed that the Chinese state-sponsored threat actor known as APT41…
Read More » - APPLICATIONS
Hazy Hawk Exploits DNS Records to Hijack CDC, Corporate Domains for Malware Delivery
May 20, 2025Ravie LakshmananMalware / Cloud Security A threat actor known as Hazy Hawk has been observed hijacking abandoned cloud…
Read More » - APPLICATIONS
Zero-Day Exploits, Insider Threats, APT Targeting, Botnets and More
May 19, 2025Ravie LakshmananThreat Intelligence / Cybersecurity Cybersecurity leaders aren’t just dealing with attacks—they’re also protecting trust, keeping systems running,…
Read More » - APPLICATIONS
Zero-Day Exploits, Developer Malware, IoT Botnets, and AI-Powered Scams
May 12, 2025Ravie LakshmananCybersecurity / Hacking News What do a source code editor, a smart billboard, and a web server…
Read More » - APPLICATIONS
Cisco Patches CVE-2025-20188 (10.0 CVSS) in IOS XE That Enables Root Exploits via JWT
May 08, 2025Ravie LakshmananVulnerability / Network Security Cisco has released software fixes to address a maximum-severity security flaw in its…
Read More »