πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
27.2K subscribers
89.9K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ–‹οΈ Chinese Hackers Weaponize Open-Source Nezha Tool in New Attack Wave πŸ–‹οΈ

Threat actors with suspected ties to China have turned a legitimate opensource monitoring tool called Nezha into an attack weapon, using it to deliver a known malware called Gh0st RAT to targets. The activity, observed by cybersecurity company Huntress in August 2025, is characterized by the use of an unusual technique called log poisoning aka log injection to plant a web shell on a web.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Teens arrested over nursery chain Kido hack πŸ“’

The ransom attack caused widespread shock when the hackers published children's personal data.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Critical networks face unprecedented threat as DDoS attacks are getting shorter and more intense πŸ“’

Attackers have stepped up their intrusions into core networks, according to Nokia's 11th annual Threat Intelligence Report.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Critical networks face unprecedented threat as DDoS attacks are getting shorter and more intense πŸ“’

Attackers have stepped up their intrusions into core networks, according to Nokia's 11th annual Threat Intelligence Report.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Teens arrested over nursery chain Kido hack πŸ“’

The ransom attack caused widespread shock when the hackers published children's personal data.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Digital Fraud Costs Companies Worldwide 7.7% of Annual Revenue πŸ“”

According to TransUnion, digital fraud has cost companies 534bn in losses globally with US business hit hardest.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Step Into the Password Graveyard… If You Dare (and Join the Live Session) πŸ–‹οΈ

Every year, weak passwords lead to millions in losses and many of those breaches could have been stopped. Attackers dont need advanced tools they just need one careless login. For IT teams, that means endless resets, compliance struggles, and sleepless nights worrying about the next credential leak. This Halloween, The Hacker News and Specops Software invite you to a live webinar .

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Teens arrested over nursery chain Kido hack πŸ“’

The ransom attack caused widespread shock when the hackers published children's personal data.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Critical networks face unprecedented threat as DDoS attacks are getting shorter and more intense πŸ“’

Attackers have stepped up their intrusions into core networks, according to Nokia's 11th annual Threat Intelligence Report.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” ICO’s Β£7.5m Clearview AI Fine a Step Closer After Legal Victory πŸ“”

The ICO has won an Upper Tribunal appeal against Clearview AI over its ability to fine the company.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ From Phishing to Malware: AI Becomes Russia's New Cyber Weapon in War on Ukraine πŸ–‹οΈ

Russian hackers' adoption of artificial intelligence AI in cyber attacks against Ukraine has reached a new level in the first half of 2025 H1 2025, the country's State Service for Special Communications and Information Protection SSSCIP said. "Hackers now employ it not only to generate phishing messages, but some of the malware samples we have analyzed show clear signs of being generated.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ From Phishing to Malware: AI Becomes Russia's New Cyber Weapon in War on Ukraine πŸ–‹οΈ

Russian hackers' adoption of artificial intelligence AI in cyber attacks against Ukraine has reached a new level in the first half of 2025 H1 2025, the country's State Service for Special Communications and Information Protection SSSCIP said. "Hackers now employ it not only to generate phishing messages, but some of the malware samples we have analyzed show clear signs of being generated.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ DNS Security 101: Safeguarding your business from cyber threats πŸ“’

What strategies can businesses implement to strengthen defenses against the increased threat landscape?.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ From Phishing to Malware: AI Becomes Russia's New Cyber Weapon in War on Ukraine πŸ–‹οΈ

Russian hackers' adoption of artificial intelligence AI in cyber attacks against Ukraine has reached a new level in the first half of 2025 H1 2025, the country's State Service for Special Communications and Information Protection SSSCIP said. "Hackers now employ it not only to generate phishing messages, but some of the malware samples we have analyzed show clear signs of being generated.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Critical Exploit Lets Hackers Bypass Authentication in WordPress Service Finder Theme πŸ–‹οΈ

Threat actors are actively exploiting a critical security flaw impacting the Service Finder WordPress theme that makes it possible to gain unauthorized access to any account, including administrators, and take control of susceptible sites. The authentication bypass vulnerability, tracked as CVE20255947 CVSS score 9.8, affects the Service Finder Bookings, a WordPress plugin bundled with the.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Critical Exploit Lets Hackers Bypass Authentication in WordPress Service Finder Theme πŸ–‹οΈ

Threat actors are actively exploiting a critical security flaw impacting the Service Finder WordPress theme that makes it possible to gain unauthorized access to any account, including administrators, and take control of susceptible sites. The authentication bypass vulnerability, tracked as CVE20255947 CVSS score 9.8, affects the Service Finder Bookings, a WordPress plugin bundled with the.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“’ Organizations lag on deepfake protection πŸ“’

Defenses are failing to keep up with the rapidly growing attack vector, with most organizations being overconfident.

πŸ“– Read more.

πŸ”— Via "ITPro"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ From Phishing to Malware: AI Becomes Russia's New Cyber Weapon in War on Ukraine πŸ–‹οΈ

Russian hackers' adoption of artificial intelligence AI in cyber attacks against Ukraine has reached a new level in the first half of 2025 H1 2025, the country's State Service for Special Communications and Information Protection SSSCIP said. "Hackers now employ it not only to generate phishing messages, but some of the malware samples we have analyzed show clear signs of being generated.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Critical Exploit Lets Hackers Bypass Authentication in WordPress Service Finder Theme πŸ–‹οΈ

Threat actors are actively exploiting a critical security flaw impacting the Service Finder WordPress theme that makes it possible to gain unauthorized access to any account, including administrators, and take control of susceptible sites. The authentication bypass vulnerability, tracked as CVE20255947 CVSS score 9.8, affects the Service Finder Bookings, a WordPress plugin bundled with the.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Hackers Exploit WordPress Sites to Power Next-Gen ClickFix Phishing Attacks πŸ–‹οΈ

Cybersecurity researchers are calling attention to a nefarious campaign targeting WordPress sites to make malicious JavaScript injections that are designed to redirect users to sketchy sites. "Site visitors get injected content that was driveby malware like fake Cloudflare verification," Sucuri researcher Puja Srivastava said in an analysis published last week. The website security company.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Chinese Hackers Weaponize Open-Source Nezha Tool in New Attack Wave πŸ–‹οΈ

Threat actors with suspected ties to China have turned a legitimate opensource monitoring tool called Nezha into an attack weapon, using it to deliver a known malware called Gh0st RAT to targets. The activity, observed by cybersecurity company Huntress in August 2025, is characterized by the use of an unusual technique called log poisoning aka log injection to plant a web shell on a web.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity