2025

SonicWall Firewall Vulnerability Exploited After PoC Publication

SonicWall Firewall Vulnerability Exploited After PoC Publication 2025-02-14 at 14:36 By Ionut Arghire The exploitation of a recent SonicWall vulnerability has started shortly after proof-of-concept (PoC) code was published. The post SonicWall Firewall Vulnerability Exploited After PoC Publication appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

SonicWall Firewall Vulnerability Exploited After PoC Publication Read More »

2 charged over alleged New IRA terrorism activity linked to cops’ spilled data

2 charged over alleged New IRA terrorism activity linked to cops’ spilled data 2025-02-14 at 14:18 By Connor Jones Officer says mistakenly published police details were shared ‘a considerable amount of times’ Two suspected New IRA members were arrested on Tuesday and charged under the Terrorism Act 2000 after they were found in possession of

2 charged over alleged New IRA terrorism activity linked to cops’ spilled data Read More »

Germany is Strengthening Cybersecurity with Federal-State Collaboration and Digital Violence Prevention 

Germany is Strengthening Cybersecurity with Federal-State Collaboration and Digital Violence Prevention  2025-02-14 at 14:18 By Cyble BSI Expands Cybersecurity Cooperation with Hamburg  Germany continues to strengthen its cybersecurity framework as the Federal Office for Information Security (BSI) and the Free and Hanseatic City of Hamburg formalize their collaboration. The agreement, signed on February 7, at

Germany is Strengthening Cybersecurity with Federal-State Collaboration and Digital Violence Prevention  Read More »

Salt Typhoon Targeting Old Cisco Vulnerabilities in Fresh Telecom Hacks

Salt Typhoon Targeting Old Cisco Vulnerabilities in Fresh Telecom Hacks 2025-02-14 at 14:05 By Ionut Arghire China-linked APT Salt Typhoon has been exploiting known vulnerabilities in Cisco devices in attacks on telecom providers in the US and abroad. The post Salt Typhoon Targeting Old Cisco Vulnerabilities in Fresh Telecom Hacks appeared first on SecurityWeek. This

Salt Typhoon Targeting Old Cisco Vulnerabilities in Fresh Telecom Hacks Read More »

New Windows Zero-Day Exploited by Chinese APT: Security Firm

New Windows Zero-Day Exploited by Chinese APT: Security Firm 2025-02-14 at 13:52 By Eduard Kovacs ClearSky Cyber Security says it has seen a new Windows zero-day being exploited by a Chinese APT named Mustang Panda.  The post New Windows Zero-Day Exploited by Chinese APT: Security Firm appeared first on SecurityWeek. This article is an excerpt

New Windows Zero-Day Exploited by Chinese APT: Security Firm Read More »

SGNL Raises $30 Million for Identity Management Solution

SGNL Raises $30 Million for Identity Management Solution 2025-02-14 at 13:24 By Ionut Arghire Identity management provider SGNL has raised $30 million in a Series A funding round led by Brightmind Partners. The post SGNL Raises $30 Million for Identity Management Solution appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original

SGNL Raises $30 Million for Identity Management Solution Read More »

Hackers Exploit Palo Alto Firewall Vulnerability Day After Disclosure

Hackers Exploit Palo Alto Firewall Vulnerability Day After Disclosure 2025-02-14 at 13:24 By Eduard Kovacs Attempts to exploit CVE-2024-0108, an authentication bypass vulnerability in Palo Alto firewalls, started one day after disclosure.  The post Hackers Exploit Palo Alto Firewall Vulnerability Day After Disclosure appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View

Hackers Exploit Palo Alto Firewall Vulnerability Day After Disclosure Read More »

AI-Powered Social Engineering: Ancillary Tools and Techniques

AI-Powered Social Engineering: Ancillary Tools and Techniques 2025-02-14 at 13:24 By Social engineering is advancing fast, at the speed of generative AI. This is offering bad actors multiple new tools and techniques for researching, scoping, and exploiting organizations. In a recent communication, the FBI pointed out: ‘As technology continues to evolve, so do cybercriminals’ tactics.’

AI-Powered Social Engineering: Ancillary Tools and Techniques Read More »

Microsoft: Russian-Linked Hackers Using ‘Device Code Phishing’ to Hijack Accounts

Microsoft: Russian-Linked Hackers Using ‘Device Code Phishing’ to Hijack Accounts 2025-02-14 at 13:24 By Microsoft is calling attention to an emerging threat cluster it calls Storm-2372 that has been attributed to a new set of cyber attacks aimed at a variety of sectors since August 2024. The attacks have targeted government, non-governmental organizations (NGOs), information

Microsoft: Russian-Linked Hackers Using ‘Device Code Phishing’ to Hijack Accounts Read More »

RansomHub Becomes 2024’s Top Ransomware Group, Hitting 600+ Organizations Globally

RansomHub Becomes 2024’s Top Ransomware Group, Hitting 600+ Organizations Globally 2025-02-14 at 13:24 By The threat actors behind the RansomHub ransomware-as-a-service (RaaS) scheme have been observed leveraging now-patched security flaws in Microsoft Active Directory and the Netlogon protocol to escalate privileges and gain unauthorized access to a victim network’s domain controller as part of their

RansomHub Becomes 2024’s Top Ransomware Group, Hitting 600+ Organizations Globally Read More »

FBI, CISA Urge Memory-Safe Practices for Software Development 

FBI, CISA Urge Memory-Safe Practices for Software Development  2025-02-14 at 12:20 By Paul Shread In a strongly worded advisory, the FBI and the U.S. Cybersecurity and Infrastructure Security Agency (CISA) have urged software developers to cease unsafe development practices that lead to “unforgivable” buffer overflow vulnerabilities.  “Despite the existence of well-documented, effective mitigations for buffer

FBI, CISA Urge Memory-Safe Practices for Software Development  Read More »

Watchdog ponders why Apple doesn’t apply its strict app tracking rules to itself

Watchdog ponders why Apple doesn’t apply its strict app tracking rules to itself 2025-02-14 at 11:30 By Jude Karabus Germany’s Federal Cartel Office voices concerns iPhone maker may be breaking competition law Apple is feeling the heat over its acclaimed iPhone privacy policy after a German regulator’s review of iOS tracking consent alleged that the

Watchdog ponders why Apple doesn’t apply its strict app tracking rules to itself Read More »

Grip Security unveils SSPM solution to strengthen SaaS security posture

Grip Security unveils SSPM solution to strengthen SaaS security posture 2025-02-14 at 10:46 By Industry News Grip Security has unveiled its SaaS Security Posture Management (SSPM) solution, which proactively identifies misconfigurations, enforces best practices and strengthens SaaS security posture against emerging risks. Unlike traditional SSPM products, Grip SSPM is built on a foundation of visibility

Grip Security unveils SSPM solution to strengthen SaaS security posture Read More »

HPE says blocking Juniper buy is a sure Huawei to ensure China and Cisco thrive

HPE says blocking Juniper buy is a sure Huawei to ensure China and Cisco thrive 2025-02-14 at 09:02 By Simon Sharwood Analyst argues stopping the deal benefits Switchzilla by preventing rise of strong challenger for AI networks HPE has fired back at the US Department of Justice’s objection to its takeover of Juniper Networks, with

HPE says blocking Juniper buy is a sure Huawei to ensure China and Cisco thrive Read More »

Chinese AI marches on as Baidu makes its chatbot free, Alibaba scores Apple deal

Chinese AI marches on as Baidu makes its chatbot free, Alibaba scores Apple deal 2025-02-14 at 07:30 By Simon Sharwood New ‘Deep Search’ thinking and planning bot to go up against peoples’ champion DeepSeek Chinese AI continued to march onto the world stage this week, with Alibaba and Baidu both taking major strides.… This article

Chinese AI marches on as Baidu makes its chatbot free, Alibaba scores Apple deal Read More »

PostgreSQL Vulnerability Exploited Alongside BeyondTrust Zero-Day in Targeted Attacks

PostgreSQL Vulnerability Exploited Alongside BeyondTrust Zero-Day in Targeted Attacks 2025-02-14 at 07:22 By Threat actors who were behind the exploitation of a zero-day vulnerability in BeyondTrust Privileged Remote Access (PRA) and Remote Support (RS) products in December 2024 likely also exploited a previously unknown SQL injection flaw in PostgreSQL, according to findings from Rapid7. The

PostgreSQL Vulnerability Exploited Alongside BeyondTrust Zero-Day in Targeted Attacks Read More »

Pig butchering scams are exploding

Pig butchering scams are exploding 2025-02-14 at 07:03 By Help Net Security 2024 is set to be a record year for scammers who received at least US$9.9 billion in crypto revenues from their illicit activities, according to Chainalysis. This figure is projected to rise to an all-time high of $12.4 billion as ongoing analysis uncovers

Pig butchering scams are exploding Read More »

Scroll to Top