UK launches vulnerability research program for external experts
https://www.bleepingcomputer.com/news/security/uk-launches-vulnerability-research-program-for-external-experts/
https://www.bleepingcomputer.com/news/security/uk-launches-vulnerability-research-program-for-external-experts/
BleepingComputer
UK launches vulnerability research program for external experts
UK's National Cyber Security Centre (NCSC) has announced a new Vulnerability Research Initiative (VRI) that aims to strengthen relations with external cybersecurity experts.
CitrixBleed 2 beckons sweeping alarm as exploits spread across the globe
https://cyberscoop.com/citrixbleed2-exploits-spread/
https://cyberscoop.com/citrixbleed2-exploits-spread/
CyberScoop
CitrixBleed 2 beckons sweeping alarm as exploits spread across the globe
The number of Citrix customers impacted by CVE-2025-5777 remains unknown, but researchers have already observed more than 11.5 million attack attempts, targeting thousands of sites.
House passes bill to formalize NTIA’s cyber role following Salt Typhoon attacks
https://cyberscoop.com/ntia-cybersecurity-salt-typhoon-telecoms-house-bill/
https://cyberscoop.com/ntia-cybersecurity-salt-typhoon-telecoms-house-bill/
CyberScoop
House passes bill to formalize NTIA’s cyber role following Salt Typhoon attacks
The bipartisan legislation would codify the agency’s position as the one in charge of coordinating responses to incidents like the breach on U.S. telecoms.
BlackSuit: New Royal/Conti Rebrand Hits With Speed, Stealth, & Data Exfiltration
https://securityonline.info/blacksuit-new-royal-conti-rebrand-hits-with-speed-stealth-data-exfiltration/
https://securityonline.info/blacksuit-new-royal-conti-rebrand-hits-with-speed-stealth-data-exfiltration/
Daily CyberSecurity
BlackSuit: New Royal/Conti Rebrand Hits With Speed, Stealth, & Data Exfiltration
BlackSuit, a rebranded Royal/Conti ransomware, unleashes destructive multi-stage attacks. It uses Cobalt Strike, rclone for data exfil, and deletes shadow copies for stealth and speed.
CVE-2025-43856: OAuth2 Account Hijacking Flaw Found in Immich, a Popular Self-Hosted Photo Platform
https://securityonline.info/cve-2025-43856-oauth2-account-hijacking-flaw-found-in-immich-a-popular-self-hosted-photo-platform/
https://securityonline.info/cve-2025-43856-oauth2-account-hijacking-flaw-found-in-immich-a-popular-self-hosted-photo-platform/
Daily CyberSecurity
CVE-2025-43856: OAuth2 Account Hijacking Flaw Found in Immich, a Popular Self-Hosted Photo Platform
A flaw (CVE-2025-43856) in Immich allows account hijacking via a broken OAuth2 implementation (missing state parameter check). Update to v1.132.0 immediately!
HazyBeacon: Novel Backdoor Uses AWS Lambda for Stealthy C2, Targets Govts
https://securityonline.info/hazybeacon-novel-backdoor-uses-aws-lambda-for-stealthy-c2-targets-govts/
https://securityonline.info/hazybeacon-novel-backdoor-uses-aws-lambda-for-stealthy-c2-targets-govts/
Daily CyberSecurity
HazyBeacon: Novel Backdoor Uses AWS Lambda for Stealthy C2, Targets Govts
Unit 42 uncovers HazyBeacon, a novel backdoor using AWS Lambda URLs for stealthy C2. It's deployed via DLL sideloading, targeting Southeast Asian govts for trade documents.
XORIndex: North Korea’s Evolving Supply Chain Malware Targets npm Ecosystem Again
https://securityonline.info/xorindex-north-koreas-evolving-supply-chain-malware-targets-npm-ecosystem-again/
https://securityonline.info/xorindex-north-koreas-evolving-supply-chain-malware-targets-npm-ecosystem-again/
Daily CyberSecurity
XORIndex: North Korea’s Evolving Supply Chain Malware Targets npm Ecosystem Again
North Korean APTs are using XORIndex malware in a new npm supply chain attack, infiltrating developers via 67 malicious packages to steal crypto wallets and credentials.
ImageMagick Flaw (CVE-2025-53101): Stack Buffer Overflow Allows Potential Remote Code Execution
https://securityonline.info/imagemagick-flaw-cve-2025-53101-stack-buffer-overflow-allows-potential-remote-code-execution/
https://securityonline.info/imagemagick-flaw-cve-2025-53101-stack-buffer-overflow-allows-potential-remote-code-execution/
Daily CyberSecurity
ImageMagick Flaw (CVE-2025-53101): Stack Buffer Overflow Allows Potential Remote Code Execution
A flaw (CVE-2025-53101) in ImageMagick allows stack buffer overflows via filename templates, risking memory corruption and remote code execution. Patch now!
CISA Warns of Active Exploitation of Wing FTP Server Flaw (CVE-2025-47812), CVSS 10
https://securityonline.info/cisa-warns-of-active-exploitation-of-wing-ftp-server-flaw-cve-2025-47812-cvss-10/
https://securityonline.info/cisa-warns-of-active-exploitation-of-wing-ftp-server-flaw-cve-2025-47812-cvss-10/
Daily CyberSecurity
CISA Warns of Active Exploitation of Wing FTP Server Flaw (CVE-2025-47812), CVSS 10
CISA adds critical Wing FTP Server RCE flaw (CVE-2025-47812, CVSS 10.0) to KEV. Actively exploited via null byte and Lua code injection; patch to 7.4.4 immediately!
Google Confirms Major OS Merger: Android & ChromeOS to Become a Single Unified Platform
https://securityonline.info/google-confirms-major-os-merger-android-chromeos-to-become-a-single-unified-platform/
https://securityonline.info/google-confirms-major-os-merger-android-chromeos-to-become-a-single-unified-platform/
Daily CyberSecurity
Google Confirms Major OS Merger: Android & ChromeOS to Become a Single Unified Platform
Google officially confirmed plans to unify Android and ChromeOS into a single platform, aiming for seamless cross-device experiences and streamlined development for its AI-driven future.
CVE-2025-53833 (CVSS 10): Critical SSTI Flaw in LaRecipe Threatens Millions of Laravel Apps
https://securityonline.info/cve-2025-53833-cvss-10-critical-ssti-flaw-in-larecipe-threatens-millions-of-laravel-apps/
https://securityonline.info/cve-2025-53833-cvss-10-critical-ssti-flaw-in-larecipe-threatens-millions-of-laravel-apps/
Daily CyberSecurity
CVE-2025-53833 (CVSS 10): Critical SSTI Flaw in LaRecipe Threatens Millions of Laravel Apps
A critical SSTI flaw (CVE-2025-53833, CVSS 10.0) in LaRecipe allows unauthenticated RCE on affected servers via template injection. Update to v2.8.1 immediately!
Cursor AI IDE Hacked: Fraudulent Extension Steals $500K in Crypto from Russian Developer
https://securityonline.info/cursor-ai-ide-hacked-fraudulent-extension-steals-500k-in-crypto-from-russian-developer/
https://securityonline.info/cursor-ai-ide-hacked-fraudulent-extension-steals-500k-in-crypto-from-russian-developer/
Daily CyberSecurity
Cursor AI IDE Hacked: Fraudulent Extension Steals $500K in Crypto from Russian Developer
A Russian crypto developer lost $500K after installing a fraudulent "Solidity Language" extension for Cursor AI IDE from Open VSX, which deployed malware for remote access and data theft.
Federal IT Contractor Pays $14.75 Million Fine to Settle Cyber Fraud Charges
https://thecyberexpress.com/federal-contractor-pays-14m-to-settle-fraud/
https://thecyberexpress.com/federal-contractor-pays-14m-to-settle-fraud/
The Cyber Express
Federal Contractor Pays $14.7M To Settle Cyber Fraud Charges
A Maryland-based IT firm, Hill ASC Inc., has agreed to fork over at least $14.75 million in a settlement that brings the federal contractors under the
FBI seized multiple piracy sites distributing pirated video games
https://securityaffairs.com/179925/cyber-crime/fbi-seized-multiple-piracy-sites-distributing-pirated-video-games.html
https://securityaffairs.com/179925/cyber-crime/fbi-seized-multiple-piracy-sites-distributing-pirated-video-games.html
Security Affairs
FBI seized multiple piracy sites distributing pirated video games
FBI seizes multiple piracy sites for Nintendo Switch and PlayStation 4 games, dismantling their infrastructure.
Government Organizations Targeted via AWS Lambda URL Endpoint Exploits
https://gbhackers.com/government-organizations-targeted/
https://gbhackers.com/government-organizations-targeted/
GBHackers Security | #1 Globally Trusted Cyber Security News Platform
Government Organizations Targeted via AWS Lambda URL Endpoint Exploits
Unit 42 researchers from Palo Alto Networks have been monitoring a sophisticated threat cluster designated CL-STA-1020.
Cybercriminals Clone CNN, BBC, and CNBC Sites to Lure Victims into Investment Fraud
https://gbhackers.com/cybercriminals-clone-cnn-bbc-and-cnbc-sites/
https://gbhackers.com/cybercriminals-clone-cnn-bbc-and-cnbc-sites/
GBHackers Security | #1 Globally Trusted Cyber Security News Platform
Cybercriminals Clone CNN, BBC, and CNBC Sites to Lure Victims into Investment Fraud
Researchers have unveiled a sprawling cybercrime syndicate orchestrating an elaborate phishing and investment fraud campaign.
AWS Overhauls Free Tier: Replaces 1-Year Plan with Credit-Based Model, Max 6 Months Free
https://securityonline.info/aws-overhauls-free-tier-replaces-1-year-plan-with-credit-based-model-max-6-months-free/
https://securityonline.info/aws-overhauls-free-tier-replaces-1-year-plan-with-credit-based-model-max-6-months-free/
Daily CyberSecurity
AWS Overhauls Free Tier: Replaces 1-Year Plan with Credit-Based Model, Max 6 Months Free
AWS replaced its 1-year free tier with a credit-based model (up to $200 credits, 6 months max) for new users, effective July 15, 2025. Accounts close if not upgraded.
Jack Dorsey Unveils “Sun Day”: A New App to Track UV Exposure and Vitamin D
https://securityonline.info/jack-dorsey-unveils-sun-day-a-new-app-to-track-uv-exposure-and-vitamin-d/
https://securityonline.info/jack-dorsey-unveils-sun-day-a-new-app-to-track-uv-exposure-and-vitamin-d/
Daily CyberSecurity
Jack Dorsey Unveils "Sun Day": A New App to Track UV Exposure and Vitamin D
Jack Dorsey launches "Sun Day," a new iOS app for tracking personal sun exposure, UV radiation, and estimating Vitamin D synthesis based on user data.
Meta’s $100B AI Push: Gigawatt Data Centers Spark Water Crisis & Community Tensions
https://securityonline.info/metas-100b-ai-push-gigawatt-data-centers-spark-water-crisis-community-tensions/
https://securityonline.info/metas-100b-ai-push-gigawatt-data-centers-spark-water-crisis-community-tensions/
Daily CyberSecurity
Meta's $100B AI Push: Gigawatt Data Centers Spark Water Crisis & Community Tensions
Meta's multi-billion dollar investment in gigawatt-scale AI data centers is raising alarms over massive water consumption and escalating community tensions.
Windows 10 End-of-Life: Microsoft Extends 365 Support Until 2028 with ESU Program
https://securityonline.info/windows-10-end-of-life-microsoft-extends-365-support-until-2028-with-esu-program/
https://securityonline.info/windows-10-end-of-life-microsoft-extends-365-support-until-2028-with-esu-program/
Daily CyberSecurity
Windows 10 End-of-Life: Microsoft Extends 365 Support Until 2028 with ESU Program
Microsoft extends Windows 10 security updates via ESU until Oct 2028 and Microsoft 365 support, giving users more time to migrate to Windows 11.
Pentagon Funds AI Giants: OpenAI, Google, Anthropic, xAI Tapped for Military AI Development
https://securityonline.info/pentagon-funds-ai-giants-openai-google-anthropic-xai-tapped-for-military-ai-development/
https://securityonline.info/pentagon-funds-ai-giants-openai-google-anthropic-xai-tapped-for-military-ai-development/
Daily CyberSecurity
Pentagon Funds AI Giants: OpenAI, Google, Anthropic, xAI Tapped for Military AI Development
The U.S. DoD is investing up to $200M in AI firms like OpenAI, Google, Anthropic, and xAI to develop advanced AI for military applications and "superintelligence."