π’ This DeepSeek-powered pen testing tool could be a Cobalt Strike successor β and hackers have downloaded it 10,000 times since July π’
π Read more.
π Via "ITPro"
----------
ποΈ Seen on @cibsecurity
Villager, a tool developed by a Chinabased red team project known as Cyberspike, is being used to automate attacks under the guise of penetration testing.π Read more.
π Via "ITPro"
----------
ποΈ Seen on @cibsecurity
IT Pro
This DeepSeek-powered pen testing tool could be a Cobalt Strike successor β and hackers have downloaded it 10,000 times since July
βVillagerβ is a China-developed tool that can dynamically adapt attacks to breach the domains and devices of victims
π’ NinjaOne expands availability on CrowdStrike Marketplace π’
π Read more.
π Via "ITPro"
----------
ποΈ Seen on @cibsecurity
CrowdStrike Falcon customers now have simplified access to NinjaOnes automated endpoint management capabilities.π Read more.
π Via "ITPro"
----------
ποΈ Seen on @cibsecurity
ChannelPro
NinjaOne expands availability on CrowdStrike Marketplace
CrowdStrike Falcon customers now have simplified access to NinjaOneβs automated endpoint management capabilities
π’ Hackers behind Jaguar Land Rover announce their 'retirement' β should we believe them? π’
π Read more.
π Via "ITPro"
----------
ποΈ Seen on @cibsecurity
Is this really the end for Scattered Lapsus Hunters?.π Read more.
π Via "ITPro"
----------
ποΈ Seen on @cibsecurity
IT Pro
Hackers behind Jaguar Land Rover announce their 'retirement' β should we believe them?
Is this really the end for Scattered Lapsus$ Hunters?
ποΈ Apple Backports Fix for CVE-2025-43300 Exploited in Sophisticated Spyware Attack ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
Apple on Monday backported fixes for a recently patched security flaw that has been actively exploited in the wild. The vulnerability in question is CVE202543300 CVSS score 8.8, an outofbounds write issue in the ImageIO component that could result in memory corruption when processing a malicious image file. "Apple is aware of a report that this issue may have been exploited in an.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
ποΈ Securing the Agentic Era: Introducing Astrix's AI Agent Control Plane ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
AI agents are rapidly becoming a core part of the enterprise, being embedded across enterprise workflows, operating with autonomy, and making decisions about which systems to access and how to use them. But as agents grow in power and autonomy, so do the risks and threats. Recent studies show 80 of companies have already experienced unintended AI agent actions, from unauthorized system.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
π UK: Tax Refund-Themed Phishing Slows in 2025 π
π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
Reports of email phishing attempts impersonating the UKs HM Revenue Customs plummeted in the first half of 2025.π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
Infosecurity Magazine
UK: Tax Refund-Themed Phishing Slows in 2025
Reports of email phishing attempts impersonating the UKβs HM Revenue & Customs plummeted in the first half of 2025
π JLR Extends Production Halt After Cyber-Attack π
π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
Jaguar Land Rover JLR has confirmed that its pause in production will last until at least Wednesday, September 24.π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
Infosecurity Magazine
JLR Extends Production Halt After Cyber-Attack
Jaguar Land Rover (JLR) has confirmed that its pause in production will last until at least Wednesday, September 24
π API Threats Surge to 40,000 Incidents in 1H 2025 π
π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
Thales claims there were over 40,000 API incidents in the first half of 2025.π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
Infosecurity Magazine
API Threats Surge to 40,000 Incidents in 1H 2025
Thales claims there were over 40,000 API incidents in the first half of 2025
π FinWise Bank Warns of Insider Data Breach π
π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
An insider data breach at FinWise may have impacted 689,000 customers.π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
Infosecurity Magazine
FinWise Bank Warns of Insider Data Breach
An insider data breach at FinWise may have impacted 689,000 customers
ποΈ New FileFix Variant Delivers StealC Malware Through Multilingual Phishing Site ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
Cybersecurity researchers have warned of a new campaign that's leveraging a variant of the FileFix social engineering tactic to deliver the StealC information stealer malware. "The observed campaign uses a highly convincing, multilingual phishing site e.g., fake Facebook Security page, with antianalysis techniques and advanced obfuscation to evade detection," Acronis security researcher Eliad.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
βοΈ Self-Replicating Worm Hits 180+ Software Packages βοΈ
π Read more.
π Via "Krebs on Security"
----------
ποΈ Seen on @cibsecurity
At least 187 code packages made available through the JavaScript repository NPM have been infected with a selfreplicating worm that steals credentials from developers and publishes those secrets on GitHub, experts warn. The malware, which briefly infected multiple code packages from the security vendor CrowdStrike, steals and publishes even more credentials every time an infected package is installed.π Read more.
π Via "Krebs on Security"
----------
ποΈ Seen on @cibsecurity
Krebs on Security
Self-Replicating Worm Hits 180+ Software Packages
At least 187 code packages made available through the JavaScript repository NPM have been infected with a self-replicating worm that steals credentials from developers and publishes those secrets on GitHub, experts warn. The malware, which briefly infectedβ¦
ποΈ SlopAds Fraud Ring Exploits 224 Android Apps to Drive 2.3 Billion Daily Ad Bids ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
A massive ad fraud and click fraud operation dubbed SlopAds ran a cluster of 224 apps, collectively attracting 38 million downloads across 228 countries and territories. "These apps deliver their fraud payload using steganography and create hidden WebViews to navigate to threat actorowned cashout sites, generating fraudulent ad impressions and clicks," HUMANs Satori Threat Intelligence and.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
π Gucci and Alexander McQueen Hit by Customer Data Breach π
π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
The attack, which is linked to ShinyHunters, has reportedly compromised data relating to 7.4 million unique email addresses.π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
Infosecurity Magazine
Gucci and Alexander McQueen Hit by Customer Data Breach
The attack, which is linked to ShinyHunters, has reportedly compromised data relating to 7.4 million unique email addresses
π Chinese AI Villager Pen Testing Tool Hits 11,000 PyPI Downloads π
π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
AInative Villager, which automates Kali and DeepSeek penetration tests, has reached 11,000 PyPI downloads fueling dualuse threat.π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
Infosecurity Magazine
Chinese AI Villager Pen Testing Tool Hits 11,000 PyPI Downloads
AI-native Villager, which automates Kali and DeepSeek penetration tests, has reached 11,000 PyPI downloads fueling dual-use threat
β€1
π Fifteen Ransomware Gangs βRetire,β Future Unclear π
π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
Fifteen ransomware groups have claimed shutdown on BreachForums experts warn of rebrands and copycats.π Read more.
π Via "Infosecurity Magazine"
----------
ποΈ Seen on @cibsecurity
Infosecurity Magazine
Fifteen Ransomware Gangs βRetire,β Future Unclear
Fifteen ransomware groups have claimed shutdown on BreachForums; experts warn of rebrands and copycats
π Lessons from Medusa: What the Industryβs Most Efficient Ransomware Teaches Us π
π Read more.
π Via "UnderDefense"
----------
ποΈ Seen on @cibsecurity
Medusa is one of 2025s most aggressive multiextortion ransomware families it encrypts systems, steals data, and uses public pressure to force payment. Emerging in June 2021, it has evolved into a RansomwareasaService RaaS powerhouse, impacting over 300 victims by February 2025 across critical sectors like healthcare, education, manufacturing, and technology. With attacks surging 42 from The post Lessons from Medusa What the Industrys Most Efficient Ransomware Teaches Us appeared first on UnderDefense.π Read more.
π Via "UnderDefense"
----------
ποΈ Seen on @cibsecurity
UnderDefense
Medusa Ransomware Playbook: How to Detect and Recover
Learn Medusa ransomware indicators, triage, containment, forensics, recovery, and prevention strategies to survive multi-extortion attacks.
π’ Jaguar Land Rover says IT disruption set to continue π’
π Read more.
π Via "ITPro"
----------
ποΈ Seen on @cibsecurity
The automotive manufacturer is still not fully operational after the recent cyber attack.π Read more.
π Via "ITPro"
----------
ποΈ Seen on @cibsecurity
IT Pro
Jaguar Land Rover says IT disruption set to continue
The automotive manufacturer is still not fully operational after the recent cyber attack
π’ Nearly 700,000 customers impacted after insider attack at US fintech firm π’
π Read more.
π Via "ITPro"
----------
ποΈ Seen on @cibsecurity
FinWise, which provides loans on behalf of US financial services firms, revealed a former employee accessed sensitive customer information after leaving the firm.π Read more.
π Via "ITPro"
----------
ποΈ Seen on @cibsecurity
IT Pro
Nearly 700,000 customers impacted after insider attack at US fintech firm
Details on how the insider attack unfolded aren't clear, but FinWise has taken action to prevent future incidents
π¦Ώ Apple Releases iOS 26, macOS Tahoe 26 and 50+ Security Fixes π¦Ώ
π Read more.
π Via "Tech Republic"
----------
ποΈ Seen on @cibsecurity
Apple just fixed more than 50 security flaws across iPhone, iPad, Mac, Watch, TV, and Vision Pro. The post Apple Releases iOS 26, macOS Tahoe 26 and 50 Security Fixes appeared first on TechRepublic.π Read more.
π Via "Tech Republic"
----------
ποΈ Seen on @cibsecurity
TechRepublic
Apple Releases iOS 26, macOS Tahoe 26 and 50+ Security Fixes
Apple just fixed more than 50 security flaws across iPhone, iPad, Mac, Watch, TV, and Vision Pro.
ποΈ TA558 Uses AI-Generated Scripts to Deploy Venom RAT in Brazil Hotel Attacks ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
The threat actor known as TA558 has been attributed to a fresh set of attacks delivering various remote access trojans RATs like Venom RAT to breach hotels in Brazil and Spanishspeaking markets. Russian cybersecurity vendor Kaspersky is tracking the activity, observed in summer 2025, to a cluster it tracks as RevengeHotels. "The threat actors continue to employ phishing emails with invoice.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
ποΈ Chinese TA415 Uses VS Code Remote Tunnels to Spy on U.S. Economic Policy Experts ποΈ
π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity
A Chinaaligned threat actor known as TA415 has been attributed to spearphishing campaigns targeting the U.S. government, think tanks, and academic organizations utilizing U.S.China economicthemed lures. "In this activity, the group masqueraded as the current Chair of the Select Committee on Strategic Competition between the United States and the Chinese Communist Party CCP, as well as the.π Read more.
π Via "The Hacker News"
----------
ποΈ Seen on @cibsecurity