1
0
1
0
1
0
1
0
0
1
1
0
1
0
VulnHub

AI-Powered Cybersecurity Intelligence

Latest Intelligence

SecurityWeek
Orange Belgium Data Breach Impacts 850,000 Customers

Orange Belgium reported a data breach that affected 850,000 customer accounts due to a cyberattack in July. The incident highlights the ongoing risks associated with cybersecurity threats targeting customer data. Read Original »


Impact: Not specified

Remediation: Not specified

Data Breach

Added:

SecurityWeek
Apple Patches Zero-Day Exploited in Targeted Attacks

Apple has released updates for iOS and macOS to address a zero-day vulnerability that was being exploited in targeted attacks. This patch aims to enhance the security of its devices against these threats. Read Original »


Impact: iOS, macOS

Remediation: Update to the latest iOS and macOS versions

macOSiOSZero-dayAppleVulnerabilityPatch

Added:

The Hacker News
Scattered Spider Hacker Gets 10 Years, $13M Restitution for SIM Swapping Crypto Theft

Noah Michael Urban, a 20-year-old member of the Scattered Spider cybercrime gang, has been sentenced to ten years in prison for his involvement in significant hacks and cryptocurrency thefts. He pleaded guilty to wire fraud and aggravated identity theft in April 2025. Read Original »


Impact: Not specified

Remediation: Not specified

Added:

darkreading
Hacktivist Tied to Multiple Cyber Groups Sentenced to Jail

Al-Tahery Al-Mashriky, a hacktivist associated with multiple cyber groups, was sentenced to jail after hacking thousands of websites and stealing personal data within a short period. His actions highlight the ongoing risks posed by cybercriminals in the digital landscape. Read Original »


Impact: Not specified

Remediation: Not specified

Added:

SecurityWeek
Europol Says Qilin Ransomware Reward Fake

Europol has declared that a $50,000 reward for information leading to the arrest of two members of the Qilin ransomware group is a scam. The agency aims to clarify the misinformation surrounding the reward offer. Read Original »


Impact: Not specified

Remediation: Not specified

Ransomware

Added:

The Hacker News
Apple Patches CVE-2025-43300 Zero-Day in iOS, iPadOS, and macOS Exploited in Targeted Attacks

Apple has issued security updates to fix a zero-day vulnerability, CVE-2025-43300, that affects iOS, iPadOS, and macOS. This out-of-bounds write flaw in the ImageIO framework could lead to memory corruption when processing malicious images and is currently being exploited in targeted attacks. Read Original »


Impact: iOS, iPadOS, macOS

Remediation: Apply the latest security updates from Apple.

macOSiOSCVEZero-dayAppleVulnerability

Added:

darkreading
DPRK, China Suspected in South Korean Embassy Attacks

The article discusses the involvement of North Korea and China in sophisticated spear-phishing attacks targeting European government entities in Seoul. These attacks are suspected to be linked to recent incidents affecting the South Korean embassy. Read Original »


Impact: Not specified

Remediation: Not specified

Phishing

Added:

darkreading
Microsoft Lays Out its Quantum-Safe Plans

Microsoft has initiated the Quantum-Safe Program, aiming to protect all its products and services from quantum-based attacks by the year 2033. This proactive approach highlights the company's commitment to cybersecurity in the face of emerging quantum threats. Read Original »


Impact: Not specified

Remediation: Not specified

Microsoft

Added:

darkreading
Fake Employees Pose Real Security Risks

The article highlights the significant security risks associated with fake employees, particularly those who obtain IT positions with privileged access and administrative permissions. Such individuals can pose a severe threat to organizational security. Read Original »


Impact: Not specified

Remediation: Not specified

Added:

darkreading
Critical SAP Vulns Under Exploitation in 'One-Two Punch' Attack

Critical vulnerabilities in SAP systems are being exploited in a new way that poses a significant threat of a devastating attack. Although the vulnerabilities are not new, their novel exploitation method raises concerns about potential impacts. Read Original »


Impact: SAP products

Remediation: Not specified

Added:

darkreading
System Shocks? EV Smart Charging Tech Poses Cyber-Risks

The article discusses the potential cybersecurity risks associated with the new ISO 15118 standard for electric vehicle smart charging and vehicle-to-grid communications. Salvatore Gariuolo from Trend Micro highlights how threat actors could exploit these technologies, posing significant challenges to cybersecurity in the EV sector. Read Original »


Impact: Not specified

Remediation: Not specified

Exploit

Added:

darkreading
How Warlock Ransomware Targets Vulnerable SharePoint Servers

The article discusses how Warlock, a new ransomware variant, specifically targets on-premises SharePoint servers, leveraging its advanced capabilities to exploit vulnerabilities. This poses significant risks to organizations using SharePoint for their operations. Read Original »


Impact: SharePoint

Remediation: Not specified

RansomwareExploit

Added:

darkreading
Cybercriminals Abuse Vibe Coding Service to Create Malicious Sites

Cybercriminals are leveraging LLM-created scripts and services like Lovable to quickly create convincing malicious websites, which lowers the entry barrier for less skilled attackers. This trend poses a significant threat to cybersecurity as it enables more individuals to engage in cybercrime. Read Original »


Impact: Not specified

Remediation: Not specified

Added:

darkreading
Why Video Game Anti-Cheat Systems Are a Cybersecurity Goldmine

The article discusses how anti-cheat systems in video games can offer insights into cybersecurity by revealing effective strategies to defend against various threat actors. Sam Collins and Marius Muench highlight the importance of these systems in understanding and mitigating cyber threats. Read Original »


Impact: Not specified

Remediation: Not specified

Added:

darkreading
FBI, Cisco Warn of Russian Attacks on 7-Year-Old Flaw

The article highlights a cybersecurity threat from a group known as 'Static Tundra' or 'Energetic Bear,' which has exploited a seven-year-old vulnerability in Cisco devices that have reached end-of-life status. This ongoing campaign has targeted enterprises and critical infrastructure, raising concerns about the security of unpatched systems. Read Original »


Impact: Cisco devices

Remediation: Patch devices against the 2018 flaw

CiscoVulnerability

Added: