πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
26.1K subscribers
89.3K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ–‹οΈ Red Hat OpenShift AI Flaw Exposes Hybrid Cloud Infrastructure to Full Takeover πŸ–‹οΈ

A severe security flaw has been disclosed in the Red Hat OpenShift AI service that could allow attackers to escalate privileges and take control of the complete infrastructure under certain conditions. OpenShift AI is a platform for managing the lifecycle of predictive and generative artificial intelligence GenAI models at scale and across hybrid cloud environments. It also facilitates data.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Red Hat OpenShift AI Flaw Exposes Hybrid Cloud Infrastructure to Full Takeover πŸ–‹οΈ

A severe security flaw has been disclosed in the Red Hat OpenShift AI service that could allow attackers to escalate privileges and take control of the complete infrastructure under certain conditions. OpenShift AI is a platform for managing the lifecycle of predictive and generative artificial intelligence GenAI models at scale and across hybrid cloud environments. It also facilitates data.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ 2025 Cybersecurity Reality Check: Breaches Hidden, Attack Surfaces Growing, and AI Misperceptions Rising πŸ–‹οΈ

Bitdefenders 2025 Cybersecurity Assessment Report paints a sobering picture of todays cyber defense landscape mounting pressure to remain silent after breaches, a gap between leadership and frontline teams, and a growing urgency to shrink the enterprise attack surface. The annual research combines insights from over 1,200 IT and security professionals across six countries, along with an.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ 2025 Cybersecurity Reality Check: Breaches Hidden, Attack Surfaces Growing, and AI Misperceptions Rising πŸ–‹οΈ

Bitdefenders 2025 Cybersecurity Assessment Report paints a sobering picture of todays cyber defense landscape mounting pressure to remain silent after breaches, a gap between leadership and frontline teams, and a growing urgency to shrink the enterprise attack surface. The annual research combines insights from over 1,200 IT and security professionals across six countries, along with an.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Hackers Exploit Milesight Routers to Send Phishing SMS to European Users πŸ–‹οΈ

Unknown threat actors are abusing Milesight industrial cellular routers to send SMS messages as part of a smishing campaign targeting users in European countries since at least February 2022. French cybersecurity company SEKOIA said the attackers are exploiting the cellular router's API to send malicious SMS messages containing phishing URLs, with the campaigns primarily targeting Sweden, Italy,.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Hackers Exploit Milesight Routers to Send Phishing SMS to European Users πŸ–‹οΈ

Unknown threat actors are abusing Milesight industrial cellular routers to send SMS messages as part of a smishing campaign targeting users in European countries since at least February 2022. French cybersecurity company SEKOIA said the attackers are exploiting the cellular router's API to send malicious SMS messages containing phishing URLs, with the campaigns primarily targeting Sweden, Italy,.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ New Android Banking Trojan β€œKlopatra” Uses Hidden VNC to Control Infected Smartphones πŸ–‹οΈ

A previously undocumented Android banking trojan called Klopatra has compromised over 3,000 devices, with a majority of the infections reported in Spain and Italy. Italian fraud prevention firm Cleafy, which discovered the sophisticated malware and remote access trojan RAT in late August 2025, said it leverages Hidden Virtual Network Computing VNC for remote control of infected devices and.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ New Android Banking Trojan β€œKlopatra” Uses Hidden VNC to Control Infected Smartphones πŸ–‹οΈ

A previously undocumented Android banking trojan called Klopatra has compromised over 3,000 devices, with a majority of the infections reported in Spain and Italy. Italian fraud prevention firm Cleafy, which discovered the sophisticated malware and remote access trojan RAT in late August 2025, said it leverages Hidden Virtual Network Computing VNC for remote control of infected devices and.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Ukraine Warns of CABINETRAT Backdoor + XLL Add-ins Spread via Signal ZIPs πŸ–‹οΈ

The Computer Emergency Response Team of Ukraine CERTUA has warned of new targeted cyber attacks in the country using a backdoor called CABINETRAT. The activity, observed in September 2025, has been attributed to a threat cluster it tracks as UAC0245. The agency said it spotted the attack following the discovery of software tools taking the form of XLL files, which refer to Microsoft Excel.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Ukraine Warns of CABINETRAT Backdoor + XLL Add-ins Spread via Signal ZIPs πŸ–‹οΈ

The Computer Emergency Response Team of Ukraine CERTUA has warned of new targeted cyber attacks in the country using a backdoor called CABINETRAT. The activity, observed in September 2025, has been attributed to a threat cluster it tracks as UAC0245. The agency said it spotted the attack following the discovery of software tools taking the form of XLL files, which refer to Microsoft Excel.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Shortcut-based Credential Lures Deliver DLL Implants πŸ“”

A new campaign has been observed using malicious Windows shortcuts in credentialthemed ZIP files to deploy PowerShell script.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Shortcut-based Credential Lures Deliver DLL Implants πŸ“”

A new campaign has been observed using malicious Windows shortcuts in credentialthemed ZIP files to deploy PowerShell script.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” AI Tops Cybersecurity Investment Priorities, PwC Finds πŸ“”

PwC found that AI security has become a top investment priority in cyber budgets over the next 12 months, ahead of cloud and network security.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” AI Tops Cybersecurity Investment Priorities, PwC Finds πŸ“”

PwC found that AI security has become a top investment priority in cyber budgets over the next 12 months, ahead of cloud and network security.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” New China-Aligned Hackers Hit State and Telecom Sectors πŸ“”

Phantom Taurus is the latest formally identified cyberespionage group aligned with Chinese state interest.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” New China-Aligned Hackers Hit State and Telecom Sectors πŸ“”

Phantom Taurus is the latest formally identified cyberespionage group aligned with Chinese state interest.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Campaign Warns Solicitors and House Buyers of Payment Diversion Fraud πŸ“”

The NCA warns that house buyers could face losses of over 80,000 from a type of BEC called payment diversion fraud.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Campaign Warns Solicitors and House Buyers of Payment Diversion Fraud πŸ“”

The NCA warns that house buyers could face losses of over 80,000 from a type of BEC called payment diversion fraud.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” ICO: Imgur’s UK Decision Won’t Prevent Regulatory Fine πŸ“”

Imagesharing platform Imgur has blocked its services within the UK, following a regulatory notice from the ICO.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” ICO: Imgur’s UK Decision Won’t Prevent Regulatory Fine πŸ“”

Imagesharing platform Imgur has blocked its services within the UK, following a regulatory notice from the ICO.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
🌊 Mid-Market Cybersecurity Budgets in 2026: Spend Smarter, Not Harder 🌊

Planning your 2026 cybersecurity budget isnt just a spreadsheet choreits survival. Midmarket companies are in a weird middle ground too tempting for attackers to ignore, but without Fortune 500 wallets The post MidMarket Cybersecurity Budgets in 2026 Spend Smarter, Not Harder appeared first on UnderDefense.

πŸ“– Read more.

πŸ”— Via "UnderDefense"

----------
πŸ‘οΈ Seen on @cibsecurity