Afraid of missing important security news during the week? We're here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- Children's names, pictures and addresses stolen in nursery chain hack
- Automaker giant Stellantis confirms data breach after Salesforce hack
- Feds tie ‘Scattered Spider’ duo to $115M in ransoms
- Threat actors spoofing the FBI IC3 website for possible malicious activity
- Man arrested in connection with cyber-attack on airports
For the more technical
- Kali Linux 2025.3 release (Vagrant & Nexmon)
- Old but gold, dumping LSASS with Windows Error Reporting on modern Windows 11
- Identify and mitigate potential compromise of Cisco devices
- CVE-2025-10184: OnePlus OxygenOS Telephony provider permission bypass
- TOP 25 Model Context Protocol (MCP) vulnerabilities
- First malicious MCP in the wild: The Postmark backdoor that's stealing your emails
- AI vs. AI: Detecting an AI-obfuscated phishing campaign
- ShadowLeak: A zero-click, service-side attack exfiltrating sensitive data using ChatGPT’s Deep Research agent
- Malicious fezbox npm package steals browser passwords from cookies via innovative QR code steganographic technique
- FileFix in the wild! New FileFix campaign goes beyond POC and leverages steganography
- Large-scale attack targeting Macs via GitHub pages impersonating companies to attempt to deliver stealer malware
- ShadowV2: An emerging DDoS for hire botnet
- APT28 operation Phantom Net Voxel
- Countering Chinese state-sponsored actors cCompromise of networks worldwide to feed global espionage system (PDF)
- Another Brickstorm: Stealthy backdoor enabling espionage into tech and legal sectors
- Bookworm to Stately Taurus using the Unit 42 attribution framework
- The PLA goes back to school: Mapping new developments in China’s military cyber education system
- Inside Salt Typhoon: China’s state-corporate advanced persistent threat
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.
Comments