Featured

Japan Issues OT Security Guidance for Semiconductor Factories

Japan Issues OT Security Guidance for Semiconductor Factories 2025-10-31 at 11:45 By Eduard Kovacs The 130-page document covers several important aspects and it’s available in both Japanese and English. The post Japan Issues OT Security Guidance for Semiconductor Factories appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Japan Issues OT Security Guidance for Semiconductor Factories Read More »

Major US Telecom Backbone Firm Hacked by Nation-State Actors

Major US Telecom Backbone Firm Hacked by Nation-State Actors 2025-10-30 at 15:46 By Eduard Kovacs Ribbon Communications provides technology for communications networks and its customers include the US government and major telecom firms.  The post Major US Telecom Backbone Firm Hacked by Nation-State Actors appeared first on SecurityWeek. This article is an excerpt from SecurityWeek

Major US Telecom Backbone Firm Hacked by Nation-State Actors Read More »

Former US Defense Contractor Executive Admits to Selling Exploits to Russia

Former US Defense Contractor Executive Admits to Selling Exploits to Russia 2025-10-30 at 11:32 By Ionut Arghire Peter Williams stole trade secrets from his US employer and sold them to a Russian cybersecurity tools broker. The post Former US Defense Contractor Executive Admits to Selling Exploits to Russia appeared first on SecurityWeek. This article is

Former US Defense Contractor Executive Admits to Selling Exploits to Russia Read More »

New Attack Targets DDR5 Memory to Steal Keys From Intel and AMD TEEs 

New Attack Targets DDR5 Memory to Steal Keys From Intel and AMD TEEs  2025-10-29 at 10:23 By Eduard Kovacs Intel and AMD have published advisories after academics disclosed details of the new TEE.fail attack method. The post New Attack Targets DDR5 Memory to Steal Keys From Intel and AMD TEEs  appeared first on SecurityWeek. This

New Attack Targets DDR5 Memory to Steal Keys From Intel and AMD TEEs  Read More »

Hackers Target Swedish Power Grid Operator

Hackers Target Swedish Power Grid Operator 2025-10-28 at 12:32 By Ionut Arghire The hackers stole information from a file transfer solution and the country’s power supply was not affected. The post Hackers Target Swedish Power Grid Operator appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Hackers Target Swedish Power Grid Operator Read More »

$1M WhatsApp Hack Flops: Only Low-Risk Bugs Disclosed to Meta After Pwn2Own Withdrawal

$1M WhatsApp Hack Flops: Only Low-Risk Bugs Disclosed to Meta After Pwn2Own Withdrawal 2025-10-25 at 23:58 By Eduard Kovacs WhatsApp told SecurityWeek that the two low-impact vulnerabilities cannot be used for arbitrary code execution.  The post $1M WhatsApp Hack Flops: Only Low-Risk Bugs Disclosed to Meta After Pwn2Own Withdrawal appeared first on SecurityWeek. This article

$1M WhatsApp Hack Flops: Only Low-Risk Bugs Disclosed to Meta After Pwn2Own Withdrawal Read More »

Critical Windows Server WSUS Vulnerability Exploited in the Wild 

Critical Windows Server WSUS Vulnerability Exploited in the Wild  2025-10-24 at 17:56 By Eduard Kovacs CVE-2025-59287 allows a remote, unauthenticated attacker to execute arbitrary code and a PoC exploit is available. The post Critical Windows Server WSUS Vulnerability Exploited in the Wild  appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original

Critical Windows Server WSUS Vulnerability Exploited in the Wild  Read More »

Pwn2Own WhatsApp Hacker Says Exploit Privately Disclosed to Meta

Pwn2Own WhatsApp Hacker Says Exploit Privately Disclosed to Meta 2025-10-24 at 12:43 By Eduard Kovacs Questions have been raised over the technical viability of the purported WhatsApp exploit, but the researcher says he wants to keep his identity private. The post Pwn2Own WhatsApp Hacker Says Exploit Privately Disclosed to Meta appeared first on SecurityWeek. This

Pwn2Own WhatsApp Hacker Says Exploit Privately Disclosed to Meta Read More »

AI Sidebar Spoofing Puts ChatGPT Atlas, Perplexity Comet and Other Browsers at Risk

AI Sidebar Spoofing Puts ChatGPT Atlas, Perplexity Comet and Other Browsers at Risk 2025-10-23 at 17:10 By Eduard Kovacs SquareX has shown how malicious browser extensions can impersonate AI sidebar interfaces. The post AI Sidebar Spoofing Puts ChatGPT Atlas, Perplexity Comet and Other Browsers at Risk appeared first on SecurityWeek. This article is an excerpt

AI Sidebar Spoofing Puts ChatGPT Atlas, Perplexity Comet and Other Browsers at Risk Read More »

Mobile Security: Verizon Says Attacks Soar, AI-Powered Threats Raise Alarm

Mobile Security: Verizon Says Attacks Soar, AI-Powered Threats Raise Alarm 2025-10-23 at 13:05 By Eduard Kovacs Verizon’s 2025 Mobile Security Index shows that 85% of organizations believe mobile device attacks are on the rise. The post Mobile Security: Verizon Says Attacks Soar, AI-Powered Threats Raise Alarm appeared first on SecurityWeek. This article is an excerpt

Mobile Security: Verizon Says Attacks Soar, AI-Powered Threats Raise Alarm Read More »

Hackers Earn Over $520,000 on First Day of Pwn2Own Ireland 2025

Hackers Earn Over $520,000 on First Day of Pwn2Own Ireland 2025 2025-10-22 at 10:36 By Eduard Kovacs Participants exploited 34 previously unknown vulnerabilities to hack printers, NAS devices, and smart home products. The post Hackers Earn Over $520,000 on First Day of Pwn2Own Ireland 2025 appeared first on SecurityWeek. This article is an excerpt from

Hackers Earn Over $520,000 on First Day of Pwn2Own Ireland 2025 Read More »

CISA Confirms Exploitation of Latest Oracle EBS Vulnerability 

CISA Confirms Exploitation of Latest Oracle EBS Vulnerability  2025-10-21 at 11:54 By Eduard Kovacs The cybersecurity agency has added CVE-2025-61884 to its Known Exploited Vulnerabilities (KEV) catalog. The post CISA Confirms Exploitation of Latest Oracle EBS Vulnerability  appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

CISA Confirms Exploitation of Latest Oracle EBS Vulnerability  Read More »

American Airlines Subsidiary Envoy Air Hit by Oracle Hack

American Airlines Subsidiary Envoy Air Hit by Oracle Hack 2025-10-20 at 13:17 By Eduard Kovacs Envoy Air, which operates the American Eagle brand, has confirmed that business information was stolen by hackers. The post American Airlines Subsidiary Envoy Air Hit by Oracle Hack appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View

American Airlines Subsidiary Envoy Air Hit by Oracle Hack Read More »

China Accuses US of Cyberattack on National Time Center

China Accuses US of Cyberattack on National Time Center 2025-10-20 at 03:58 By Associated Press The Ministry of State Security alleged that the NSA exploited vulnerabilities in the messaging services of a foreign mobile phone brand to steal sensitive information. The post China Accuses US of Cyberattack on National Time Center appeared first on SecurityWeek.

China Accuses US of Cyberattack on National Time Center Read More »

Prosper Data Breach Impacts 17.6 Million Accounts

Prosper Data Breach Impacts 17.6 Million Accounts 2025-10-17 at 11:47 By Ionut Arghire Hackers stole names, addresses, dates of birth, email addresses, Social Security numbers, government IDs, and other information. The post Prosper Data Breach Impacts 17.6 Million Accounts appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Prosper Data Breach Impacts 17.6 Million Accounts Read More »

Organizations Warned of Exploited Adobe AEM Forms Vulnerability

Organizations Warned of Exploited Adobe AEM Forms Vulnerability 2025-10-16 at 17:45 By Ionut Arghire A public PoC existed when Adobe patched the Experience Manager Forms (AEM Forms) bug in early August. The post Organizations Warned of Exploited Adobe AEM Forms Vulnerability appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Organizations Warned of Exploited Adobe AEM Forms Vulnerability Read More »

F5 Hack: Attack Linked to China, BIG-IP Flaws Patched, Governments Issue Alerts 

F5 Hack: Attack Linked to China, BIG-IP Flaws Patched, Governments Issue Alerts  2025-10-16 at 12:58 By Eduard Kovacs More information has come to light on the cyberattack disclosed this week by F5, including on attribution and potential risks. The post F5 Hack: Attack Linked to China, BIG-IP Flaws Patched, Governments Issue Alerts  appeared first on

F5 Hack: Attack Linked to China, BIG-IP Flaws Patched, Governments Issue Alerts  Read More »

F5 Blames Nation-State Hackers for Theft of Source Code and Vulnerability Data

F5 Blames Nation-State Hackers for Theft of Source Code and Vulnerability Data 2025-10-15 at 18:18 By Eduard Kovacs F5 has not shared too much information on the threat actor, but the attack profile seems to point to China. The post F5 Blames Nation-State Hackers for Theft of Source Code and Vulnerability Data appeared first on

F5 Blames Nation-State Hackers for Theft of Source Code and Vulnerability Data Read More »

Microsoft Patches 173 Vulnerabilities, Including Exploited Windows Flaws

Microsoft Patches 173 Vulnerabilities, Including Exploited Windows Flaws 2025-10-15 at 07:40 By Ionut Arghire The tech giant has rolled out fixes for 173 CVEs, including five critical-severity security defects. The post Microsoft Patches 173 Vulnerabilities, Including Exploited Windows Flaws appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Microsoft Patches 173 Vulnerabilities, Including Exploited Windows Flaws Read More »

CISO Conversations: Are Microsoft’s Deputy CISOs a Signpost to the Future?

CISO Conversations: Are Microsoft’s Deputy CISOs a Signpost to the Future? 2025-10-14 at 14:08 By Kevin Townsend SecurityWeek talks to Microsoft Deputy CISOs Ann Johnson and Mark Russinovich. The post CISO Conversations: Are Microsoft’s Deputy CISOs a Signpost to the Future? appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

CISO Conversations: Are Microsoft’s Deputy CISOs a Signpost to the Future? Read More »

Scroll to Top