Security Bulletin

3 Jul 2025
Biztonsági szemle
US sanctions 'bulletproof' hosting provider Aeza for cybercrime ops
Russia-based bulletproof hosting (BPH) service offers no-questions-asked access to servers.

3 Jul 2025
Biztonsági szemle
Qantas Airlines Breached, Impacting 6M Customers
Passengers' personal information was likely accessed via a third-party platform used at a call center, but didn't include passport or credit card info.

2 Jul 2025
Biztonsági szemle
Incorrect links output by LLMs could lead to phishing, researchers say
AI models may fail to recognize social engineering content in training data and searches.

2 Jul 2025
Biztonsági szemle
Initial Access Broker Self-Patches Zero Days as Turf Control
A likely China-nexus threat actor has been exploiting unpatched Ivanti vulnerabilities to gain initial access to victim networks and then patching the systems to block others from breaking in to the same network.

2 Jul 2025
Biztonsági szemle
OWASP unpacks GenAI security’s biggest risks to LLMs
Explore the Top 10 vulnerabilities and mitigation strategies shaping the future of secure generative AI development — starting with prompt injection.

2 Jul 2025
Biztonsági szemle
US Treasury Sanctions BPH Provider Aeza Group
In the past, the bulletproof group has been affiliated with many well-known ransomware and malware groups, such as BianLian and Lumma Stealer.

2 Jul 2025
Biztonsági szemle
Qantas confirms cyberattack on third-party call center app
While not confirmed, security pros say the attack resembles recent attacks on airlines and retailers by Scattered Spider.

2 Jul 2025
Biztonsági szemle
Russian APT 'Gamaredon' Hits Ukraine With Fierce Phishing
A Russian APT known as "Gamaredon" is using spear-phishing attacks and network-drive weaponization to target government entities in Ukraine.

2 Jul 2025
Biztonsági szemle
Deepfakes have reshaped corporate security and culture
The industry needs to adopt new AI-based tools and educate the workforce on how to recognize Deepfakes.

2 Jul 2025
Biztonsági szemle
ClickFix Spin-Off Attack Bypasses Key Browser Safeguards
A new threat vector exploits how modern browsers save HTML files, bypassing Mark of the Web and giving attackers another social-engineering attack for delivering malware.

2 Jul 2025
Biztonsági szemle
1 Year Later: Lessons Learned From the CrowdStrike Outage
The ever-growing volume of vulnerabilities and threats requires organizations to remain resilient and anti-fragile — that is, to be able to proactively respond to issues and continuously improve.

2 Jul 2025
Biztonsági szemle
Cybercom seeks fivefold budget increase for Indo-Pacom
DefenseScoop reports that the U.S. Cyber Command is seeking a substantial funding boost in its fiscal 2026 budget, requesting $117.2 million for its "Data and Sensors" portfolio to enhance network defense and sensing capabilities in the Indo-Pacific...
Pagination
- Page 1
- Next page ››