Cybersecurity

Taking the shine off BreachForums – Sophos News

On June 25, 2025, French authorities announced that four members of the ShinyHunters (also known as ShinyCorp) cybercriminal group were arrested in multiple French...

Critical Open VSX Registry Flaw Exposes Millions of Developers to Supply Chain Attacks

Jun 26, 2025Ravie LakshmananOpen Source / Vulnerability Cybersecurity researchers have disclosed a critical vulnerability in the Open VSX Registry ("open-vsxorg") that, if successfully exploited, could...

Kaspersky 2025 SMB threat report

Cyberattackers often view small and medium-sized businesses (SMBs) as easier targets, assuming their security measures are less robust than those of larger enterprises. In...

Quick Password Brute Forcing Evolution Statistics

We have collected SSH and telnet honeypot data in various forms for about 10 years. Yesterday's diaries, and looking at some new usernames attempted...

Krispy Kreme hack exposed sensitive data of over 160,000 people

Krispy Kreme, the dispenser of delectable doughnuts, has revealed that an astonishingly wide range of personal information belonging to past and present employees, as...

Team Xecuter – Darknet Diaries

Full Transcript Team Xecuter was a group involved with making and selling modchips for video game systems. They often made mods...

This month in security with Tony Anscombe – May 2025 edition

From a flurry of attacks targeting UK retailers to campaigns corralling end-of-life...

Troy Hunt: Weekly Update 456

It's time to fly! It's two months to the day since we...

June Patch Tuesday digs into 67 bugs – Sophos News

.Microsoft on Tuesday released 67 patches affecting 12 product families. Ten of the addressed issues, five involving 365 and Office and one involving SharePoint,...

New Linux Flaws Enable Full Root Access via PAM and Udisks Across Major Distributions

Jun 19, 2025Ravie LakshmananLinux / Vulnerability Cybersecurity researchers have uncovered two local privilege escalation (LPE) flaws that could be exploited to gain root privileges on...

New BrowserVenom malware being distributed via fake DeepSeek phishing website

Introduction DeepSeek-R1 is one of the most popular LLMs right now. Users of all experience levels look for chatbot websites on search engines, and threat...

A JPEG With A Payload

Over the weekend, Xavier posted about another image with a payload: "More Steganography!". Xavier did a static analysis, and I want to explain how you...

Recent articles