“Cyber warfare is as much about psychological strategy as technical prowess.”
― James Scott
-

Cisco Warns of Active Attacks Exploiting Unpatched 0-Day in AsyncOS Email Security Appliances [email protected] (The Hacker News)
Cisco has alerted users of a maximum-severity zero-day flaw in Cisco AsyncOS software that has been actively exploited by a China-nexus advanced persistent threat (APT) actor codenamed UAT-9686 in attacks targeting Cisco Secure Email Gateway and Cisco Secure Email and Web Manager. The networking equipment major said it became aware of the intrusion campaign on…
-

North Korea-Linked Hackers Steal $2.02 Billion in 2025, Leading Global Crypto Theft [email protected] (The Hacker News)
Threat actors with ties to the Democratic People’s Republic of Korea (DPRK or North Korea) have been instrumental in driving a surge in global cryptocurrency theft in 2025, accounting for at least $2.02 billion out of more than $3.4 billion stolen from January through early December. The figure represents a 51% increase year-over-year and $681…
-
How to detect a deepfake with visual clues and AI tools
Forewarned is forearmed, but too many employees don’t realize how sophisticated deepfakes have become. Integrate these deepfake detection tips into security awareness training.Read More
-

SonicWall Fixes Actively Exploited CVE-2025-40602 in SMA 100 Appliances [email protected] (The Hacker News)
SonicWall has rolled out fixes to address a security flaw in Secure Mobile Access (SMA) 100 series appliances that it said has been actively exploited in the wild. The vulnerability, tracked as CVE-2025-40602 (CVSS score: 6.6), concerns a case of local privilege escalation that arises as a result of insufficient authorization in the appliance management…
-

Kimwolf Botnet Hijacks 1.8 Million Android TVs, Launches Large-Scale DDoS Attacks [email protected] (The Hacker News)
A new distributed denial-of-service (DDoS) botnet known as Kimwolf has enlisted a massive army of no less than 1.8 million infected devices comprising Android-based TVs, set-top boxes, and tablets, and may be associated with another botnet known as AISURU, according to findings from QiAnXin XLab. “Kimwolf is a botnet compiled using the NDK [Native Development…
-

APT28 Targets Ukrainian UKR-net Users in Long-Running Credential Phishing Campaign [email protected] (The Hacker News)
The Russian state-sponsored threat actor known as APT28 has been attributed to what has been described as a “sustained” credential-harvesting campaign targeting users of UKR[.]net, a webmail and news service popular in Ukraine. The activity, observed by Recorded Future’s Insikt Group between June 2024 and April 2025, builds upon prior findings from the cybersecurity company…
-

New ForumTroll Phishing Attacks Target Russian Scholars Using Fake eLibrary Emails [email protected] (The Hacker News)
The threat actor linked to Operation ForumTroll has been attributed to a fresh set of phishing attacks targeting individuals within Russia, according to Kaspersky. The Russian cybersecurity vendor said it detected the new activity in October 2025. The origins of the threat actor are presently unknown. “While the spring cyberattacks focused on organizations, the fall…
-

Fix SOC Blind Spots: See Threats to Your Industry & Country in Real Time [email protected] (The Hacker News)
Modern security teams often feel like they’re driving through fog with failing headlights. Threats accelerate, alerts multiply, and SOCs struggle to understand which dangers matter right now for their business. Breaking out of reactive defense is no longer optional. It’s the difference between preventing incidents and cleaning up after them. Below is the path from…
-

China-Linked Ink Dragon Hacks Governments Using ShadowPad and FINALDRAFT Malware [email protected] (The Hacker News)
The threat actor known as Jewelbug has been increasingly focusing on government targets in Europe since July 2025, even as it continues to attack entities located in Southeast Asia and South America. Check Point Research is tracking the cluster under the name Ink Dragon. It’s also referenced by the broader cybersecurity community under the names…
-

GhostPoster Malware Found in 17 Firefox Add-ons with 50,000+ Downloads [email protected] (The Hacker News)
A new campaign named GhostPoster has leveraged logo files associated with 17 Mozilla Firefox browser add-ons to embed malicious JavaScript code designed to hijack affiliate links, inject tracking code, and commit click and ad fraud. The extensions have been collectively downloaded over 50,000 times, according to Koi Security, which discovered the campaign. The add-ons are…
“Security used to be an inconvenience sometimes, but now it’s a necessity all the time.”
― Martina Navratilova
