Security Bulletin
21 Mar 2025
Biztonsági szemle
Attackers Pivot to SEMrush Spoof to Steal Google Credentials
The attackers are taking an indirect approach to targeting SEO professionals and their Google credentials, using a fake digital marketing website.
21 Mar 2025
Biztonsági szemle
Nation-State 'Paragon' Spyware Infections Target Civil Society
Law enforcement entities in democratic states have been deploying top-of-the-line messaging app spyware against journalists and aid workers.
21 Mar 2025
Biztonsági szemle
Popular AI tools tricked to create malware for Chrome browser
Cato Networks researchers create jailbreak method where hacking is normal in an alternate reality.
21 Mar 2025
Biztonsági szemle
Updated CISA vulnerabilities catalog includes Edimax, NAKIVO, SAP NetWeaver bugs
Most severe of the newly added flaws is the Edimax IC-7100 IP camera OS command injection vulnerability, tracked as CVE-2025-1316.
21 Mar 2025
Biztonsági szemle
Data breach refuted by Baidu after user info leak
All of the information posted by the daughter of Baidu Vice President Xie Guangjun has been procured from foreign platforms' "doxing databases," said Baidu.
21 Mar 2025
Biztonsági szemle
GitHub Action supply chain attack less impactful than thought
Most of the exposed secrets were GitHub install action tokens but their 24-hour expiration has restricted exploitation opportunities.
21 Mar 2025
Biztonsági szemle
Suspected Chinese-linked hackers set sights on Taiwan
After achieving initial access by targeting vulnerable internet-exposed web and application servers, UAT-5918 utilized tools previously associated with Volt Typhoon and Flax Typhoon to facilitate lateral movement, credential and data theft, and...
21 Mar 2025
Biztonsági szemle
Ukrainian defense sector hit with Dark Crystal RAT
Attackers, tracked under the UAC-0200 threat cluster, leveraged the Signal messaging app to deliver messages purportedly containing minutes of the meeting reports as archive files.
21 Mar 2025
Biztonsági szemle
Novel Betruger backdoor deployed by RansomHub affiliate
Threat actors have leveraged fake mailing-related apps to facilitate the distribution of Betruger, which has been integrated with network scanning, keylogging, privilege escalation, credential dumping, and other capabilities prevalent in tools often...
21 Mar 2025
Biztonsági szemle
Active exploitation of Cisco Smart Licensing flaws underway
Exploitation of the the static credential flaw through the use of simple fixed passwords could facilitate the compromise of a log file exposed by the information disclosure bug.
21 Mar 2025
Biztonsági szemle
Evolving Together: The Next Chapter in Our Partner Journey
Cisco is transforming its business model to focus on subscription-based revenue, aligning partner programs with this evolution. Enhanced incentives will reward partners for driving customer outcomes, ensuring growth and profitability.
21 Mar 2025
Biztonsági szemle
Why Cyber Quality Is the Key to Security
The time to secure foundations, empower teams, and make cyber resilience the standard is now — because the cost of waiting is far greater than the investment in proactive security.
Pagination
- Previous page ‹‹
- Page 285
- Next page ››