Posted by malvuln on Dec 22 Discovery / credits: Malvuln (John Page aka hyp3rlinx) (c) 2025 Original source: https://malvuln.com/advisory/6c0eda1210da81b191bd970cb0f8660a.txt Malvuln Intelligence Feed: https://intel.malvuln.com/ Contact: malvuln13 () gmail com Media: x.com/malvuln Threat: Backdoor.Win32.ControlTotal.t Vulnerability: Insecure Credential Storage Description: The malware listens on TCP port 2032 and requires authentication. The password “jdf4df4vdf”… – Read More – Full … Read More “Backdoor.Win32.ControlTotal.t / Insecure Credential Storage / MVID-2025-0702 – Full Disclosure” »
Author: Joe-W
Posted by malvuln on Dec 22 Discovery / credits: Malvuln (John Page aka hyp3rlinx) (c) 2025 Original source: https://malvuln.com/advisory/6c0eda1210da81b191bd970cb0f8660a.txt Malvuln Intelligence Feed: https://intel.malvuln.com/ Contact: malvuln13 () gmail com Media: x.com/malvuln Threat: Backdoor.Win32.ControlTotal.t Vulnerability: Insecure Credential Storage Description: The malware listens on TCP port 2032 and requires authentication. The password “jdf4df4vdf”… – Read More – Full … Read More “Backdoor.Win32.ControlTotal.t / Insecure Credential Storage / MVID-2025-0702 – Full Disclosure” »
Posted by malvuln on Dec 22 Discovery / credits: Malvuln (John Page aka hyp3rlinx) (c) 2025 Original source: https://malvuln.com/advisory/6c0eda1210da81b191bd970cb0f8660a.txt Malvuln Intelligence Feed: https://intel.malvuln.com/ Contact: malvuln13 () gmail com Media: x.com/malvuln Threat: Backdoor.Win32.ControlTotal.t Vulnerability: Insecure Credential Storage Description: The malware listens on TCP port 2032 and requires authentication. The password “jdf4df4vdf”… – Read More – Full … Read More “Backdoor.Win32.ControlTotal.t / Insecure Credential Storage / MVID-2025-0702 – Full Disclosure” »
Cybersecurity researchers have discovered a new variant of a macOS information stealer called MacSync that’s delivered by means of a digitally signed, notarized Swift application masquerading as a messaging app installer to bypass Apple’s Gatekeeper checks. “Unlike earlier MacSync Stealer variants that primarily rely on drag-to-terminal or ClickFix-style techniques, this sample adopts a more – … Read More “New MacSync macOS Stealer Uses Signed App to Bypass Apple Gatekeeper – The Hacker News” »
The SEC has charged several crypto platforms and investment clubs for defrauding US investors of more than $14m – Read More –
A coordinated wave of fake online job ads targeting the Middle East and North Africa has been uncovered, exploiting remote work trends – Read More –
The fraudulent investment scheme known as Nomani has witnessed an increase by 62%, according to data from ESET, as campaigns distributing the threat have also expanded beyond Facebook to include other social media platforms, such as YouTube. The Slovak cybersecurity company said it blocked over 64,000 unique URLs associated with the threat this year. A … Read More “Nomani Investment Scam Surges 62% Using AI Deepfake Ads on Social Media – The Hacker News” »
Eurostar Accused Researchers of Blackmail for Reporting AI Chatbot Flaws – Hackread – Cybersecurity News, Data Breaches, AI, and More
Researchers discovered critical flaws in Eurostar’s AI chatbot including prompt injection, HTML injection, guardrail bypass, and unverified chat IDs – Eurostar later accused them of blackmail. – Read More – Hackread – Cybersecurity News, Data Breaches, AI, and More
Every year, cybercriminals find new ways to steal money and data from businesses. Breaching a business network, extracting sensitive data, and selling it on the dark web has become a reliable payday. But in 2025, the data breaches that affected small and medium-sized businesses (SMBs) challenged our perceived wisdom about exactly which types of businesses … Read More “Attacks are Evolving: 3 Ways to Protect Your Business in 2026 – The Hacker News” »
NIST and MITRE are collaboratively launching two centers to advance AI security for US manufacturing and critical infrastructure – Read More –
SEC Files Charges Over $14 Million Crypto Scam Using Fake AI-Themed Investment Tips – The Hacker News
The U.S. Securities and Exchange Commission (SEC) has filed charges against multiple companies for their alleged involvement in an elaborate cryptocurrency scam that swindled more than $14 million from retail investors. The complaint charged crypto asset trading platforms Morocoin Tech Corp., Berge Blockchain Technology Co., Ltd., and Cirkor Inc., as well as investment clubs AI … Read More “SEC Files Charges Over $14 Million Crypto Scam Using Fake AI-Themed Investment Tips – The Hacker News” »
French postal service warns of “major network incident” just before Christmas – Read More –
ServiceNow is set to acquire Armis for $7.75bn in a cash-only deal expected to close in the second half of 2026 – Read More –
A vulnerability has been discovered in WatchGuard Fireware OS, which could allow for unauthenticated arbitrary code execution. WatchGuard Fireware is the proprietary operating system that powers WatchGuard’s Firebox appliances. Successful exploitation of this vulnerability could allow a remote unauthenticated attacker to execute arbitrary code on the system. – Read More – Cyber Security Advisories – … Read More “A Vulnerability in WatchGuard Fireware OS Could Allow for Arbitrary Code Execution. – Cyber Security Advisories – MS-ISAC” »
The global acceleration of privacy regulation DPDP Act, GDPR, DIFC DP Law, PDPL (UAE), and evolving sectoral mandates has… The post Step-by-Step Guide to Implementing 72-Hour Breach Reporting appeared first on JISA Softech Pvt Ltd. – Read More – JISA Softech Pvt Ltd
Apple has been fined €98.6 million ($116 million) by Italy’s antitrust authority after finding that the company’s App Tracking Transparency (ATT) privacy framework restricted App Store competition. The Italian Competition Authority (Autorità Garante della Concorrenza e del Mercato, or AGCM) said the company’s “absolute dominant position” in app distribution allowed it to “unilaterally impose” – … Read More “Italy Fines Apple €98.6 Million Over ATT Rules Limiting App Store Competition – The Hacker News” »
New MacSync Stealer Disguised as Trusted Mac App Hunts Saved Passwords – Hackread – Cybersecurity News, Data Breaches, AI, and More
Jamf security experts have found a new version of MacSync Stealer. Disguised as a zk-call app, it uses official notarization to bypass security and steal your saved passwords. – Read More – Hackread – Cybersecurity News, Data Breaches, AI, and More
A newly discovered macOS malware mimics legitimate apps code-signed and notarized by Apple – Read More –
Cybersecurity researchers have discovered two malicious Google Chrome extensions with the same name and published by the same developer that come with capabilities to intercept traffic and capture user credentials. The extensions are advertised as a “multi-location network speed test plug-in” for developers and foreign trade personnel. Both the browser add-ons are available for download … Read More “Two Chrome Extensions Caught Secretly Stealing Credentials from Over 170 Sites – The Hacker News” »
Is Santa Claus real? This Christmas special of The AI Fix podcast sets out to answer that question in the most sensible way possible: by consulting chatbots, Google’s festive killjoys, and the laws of relativistic physics. Your hosts unwrap a festive grab-bag of AI absurdity as Waymo self-driving taxis run over a beloved San Francisco … Read More “The AI Fix #82: Santa Claus doesn’t exist (according to AI) – Graham Cluley” »
A University of Phoenix data breach affecting nearly 3.5 million individuals has been claimed by the Clop ransomware collective – Read More –
ServiceNow has agreed to buy cybersecurity firm Armis for $7.75 billion in cash, a deal that would push the enterprise software company deeper into a fast-growing corner of security focused on tracking and reducing “exposure” across sprawling networks of connected devices. The companies said Tuesday that combining ServiceNow’s workflow and risk products with Armis’ asset … Read More “ServiceNow agrees to buy cyber firm Armis for $7.75B – CyberScoop” »
Ransomware Hits Romanian Water Authority, 1000 Systems Knocked Offline – Hackread – Cybersecurity News, Data Breaches, AI, and More
Romania’s national water authority, Romanian Waters, was hit by a major ransomware attack affecting 1,000 systems but dams remain safe. Learn how authorities are fighting back without paying the ransom. – Read More – Hackread – Cybersecurity News, Data Breaches, AI, and More
Infosecurity has selected some of the key ransomware statistics for 2025 – Read More –
Agentic AI browsers like OpenAI’s Atlas have debuted to major fanfare, and the enthusiasm is warranted. These tools automate web browsing to close the gap between what you want to accomplish and getting it done. Rather than manually opening multiple tabs, you can simply tell the browser what you need. Ask it to file a … Read More “How to determine if agentic AI browsers are safe enough for your enterprise – CyberScoop” »
Passwd is designed specifically for organizations operating within Google Workspace. Rather than competing as a general consumer password manager, its purpose is narrow, and business-focused: secure credential storage, controlled sharing, and seamless Workspace integration. The platform emphasizes practicality over feature overload, aiming to provide a reliable system for teams that already rely – Read More … Read More “Passwd: A walkthrough of the Google Workspace Password Manager – The Hacker News” »
A law enforcement operation coordinated by INTERPOL has led to the recovery of $3 million and the arrest of 574 suspects by authorities from 19 countries, amidst a continued crackdown on cybercrime networks in Africa. The coordinated effort, named Operation Sentinel, took place between October 27 and November 27, 2025, and mainly focused on business … Read More “INTERPOL Arrests 574 in Africa; Ukrainian Ransomware Affiliate Pleads Guilty – The Hacker News” »
The Middle East and Africa region is moving through a fast digital shift. This shift covers national identity programs,… The post AI-Powered Attacks in MEA: Deepfakes, Automation & New Threat Vectors appeared first on JISA Softech Pvt Ltd. – Read More – JISA Softech Pvt Ltd
Pirate Group Anna’s Archive Copies 256M Spotify Songs in Data Scrape – Hackread – Cybersecurity News, Data Breaches, AI, and More
Spotify has confirmed a massive unauthorised data scrape involving 256 million track records and 86 million audio files. Learn how “Anna’s Archive” bypassed security, and why experts warn against downloading the leaked files. – Read More – Hackread – Cybersecurity News, Data Breaches, AI, and More
Nissan has revealed that over 20,000 customers have had personal information compromised in a third-party data breach – Read More –
The U.S. Justice Department (DoJ) on Monday announced the seizure of a web domain and database that it said was used to further a criminal scheme designed to target and defraud Americans by means of bank account takeover fraud. The domain in question, web3adspanels[.]org, was used as a backend web panel to host and manipulate … Read More “U.S. DoJ Seizes Fraud Domain Behind $14.6 Million Bank Account Takeover Scheme – The Hacker News” »
Operational Sentinel helps to crack down on cybercrime across 19 African countries in a month-long campaign – Read More –
Critical n8n Flaw (CVSS 9.9) Enables Arbitrary Code Execution Across Thousands of Instances – The Hacker News
A critical security vulnerability has been disclosed in the n8n workflow automation platform that, if successfully exploited, could result in arbitrary code execution under certain circumstances. The vulnerability, tracked as CVE-2025-68613, carries a CVSS score of 9.9 out of a maximum of 10.0. The package has about 57,000 weekly downloads, according to statistics on npm. … Read More “Critical n8n Flaw (CVSS 9.9) Enables Arbitrary Code Execution Across Thousands of Instances – The Hacker News” »
The U.S. Federal Communications Commission (FCC) on Monday announced a ban on all drones and critical components made in a foreign country, citing national security concerns. To that end, the agency has added to its Covered List Uncrewed aircraft systems (UAS) and UAS critical components produced in a foreign country, and all communications and video … Read More “FCC Bans Foreign-Made Drones and Key Parts Over U.S. National Security Risks – The Hacker News” »
Defense in depth — the Microsoft way (part 94): SAFER (SRPv1 and AppLocker alias SRPv2) bypass for dummies – Full Disclosure
Posted by Stefan Kanthak via Fulldisclosure on Dec 22 Hi @ll, since 30 years Microsoft ships Windows with “Windows Script Host”, an empty registry key and the following registry entries: [HKEY_CURRENT_USERSoftwareMicrosoftWindows Script HostSettings] [HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows Script HostSettings] “ActiveDebugging”=”1” “DisplayLogo”=”1” “SilentTerminate”=”0” “UseWINSAFER”=”1” The… – Read More – Full Disclosure
The National Institute of Standards and Technology announced that it will partner with The MITRE Corporation on a $20 million project to stand up two new research centers focused on artificial intelligence, including how the technology may impact cybersecurity for U.S. critical infrastructure. On Monday, the agency said one center will focus on advanced manufacturing … Read More “NIST, MITRE announce $20 million research effort on AI cybersecurity – CyberScoop” »
A 19-year-old man from San Antonio pleaded guilty Friday to multiple crimes involving the sexual exploitation of children while acting as an administrator and leader of 8884, a splinter group of the violent extremist collective known as 764. Alexis Aldair Chavez faces up to 60 years in prison for racketeering, distribution and possession of child … Read More “Leader of 764 offshoot pleads guilty, faces up to 60 years in jail – CyberScoop” »
NordVPN has warned that malicious postal service websites have surged by 86% over the past month, targeting holiday delivery tracking – Read More –
Frogblight Malware Targets Android Users With Fake Court and Aid Apps – Hackread – Cybersecurity News, Data Breaches, AI, and More
Kaspersky warns of ‘Frogblight,’ a new Android malware draining bank accounts in Turkiye. Learn how this ‘court case’ scam steals your data and how to stay safe. – Read More – Hackread – Cybersecurity News, Data Breaches, AI, and More
Cybersecurity researchers have disclosed details of a new malicious package on the npm repository that works as a fully functional WhatsApp API, but also contains the ability to intercept every message and link the attacker’s device to a victim’s WhatsApp account. The package, named “lotusbail,” has been downloaded over 56,000 times since it was first … Read More “Fake WhatsApp API Package on npm Steals Messages, Contacts, and Login Tokens – The Hacker News” »
Ukrainian National Pleads Guilty in Nefilim Ransomware Conspiracy – Hackread – Cybersecurity News, Data Breaches, AI, and More
Ukrainian man pleads guilty in United States to deploying Nefilim ransomware in global extortion scheme targeting companies across multiple countries. – Read More – Hackread – Cybersecurity News, Data Breaches, AI, and More
Hackers Abuse Popular Monitoring Tool Nezha as a Stealth Trojan – Hackread – Cybersecurity News, Data Breaches, AI, and More
Cybersecurity firm Ontinue reveals how the open-source tool Nezha is being used as a Remote Access Trojan (RAT) to bypass security and control servers globally. – Read More – Hackread – Cybersecurity News, Data Breaches, AI, and More
Open-source server monitoring tool, Nezha, is being exploited by attackers for remote system control – Read More –
Insider Threat: Hackers Paying Company Insiders to Bypass Security – Hackread – Cybersecurity News, Data Breaches, AI, and More
A new report from Check Point Research reveals a growing trend of cyber criminals recruiting employees at banks, telecoms, and tech giants. Learn how hackers use the darknet and Telegram to offer payouts up to $15,000 for internal access to companies like Apple, Coinbase, and the Federal Reserve. – Read More – Hackread – Cybersecurity … Read More “Insider Threat: Hackers Paying Company Insiders to Bypass Security – Hackread – Cybersecurity News, Data Breaches, AI, and More” »
How an LMS Cloud Model Supports Scalable Learning – Hackread – Cybersecurity News, Data Breaches, AI, and More
There’s a new era for training and development programs, making the LMS (Learning Management System) cloud model the… – Read More – Hackread – Cybersecurity News, Data Breaches, AI, and More
As the internet becomes an essential part of daily life, its environmental footprint continues to grow. Data centers, constant connectivity, and resource-heavy browsing habits all contribute to energy consumption and digital waste. While individual users may not see this impact directly, the collective effect of everyday browsing is significant. Choosing a browser designed with – … Read More “How to Browse the Web More Sustainably With a Green Browser – The Hacker News” »
⚡ Weekly Recap: Firewall Exploits, AI Data Theft, Android Hacks, APT Attacks, Insider Leaks & More – The Hacker News
Cyber threats last week showed how attackers no longer need big hacks to cause big damage. They’re going after the everyday tools we trust most — firewalls, browser add-ons, and even smart TVs — turning small cracks into serious breaches. The real danger now isn’t just one major attack, but hundreds of quiet ones using … Read More “⚡ Weekly Recap: Firewall Exploits, AI Data Theft, Android Hacks, APT Attacks, Insider Leaks & More – The Hacker News” »
DXS International, an official partner of NHS England, said the breach has not affected its operations – Read More –
Fortra has uncovered a prolific BEC group dubbed “Scripted Sparrow” spanning three continents and at least five countries – Read More –
A Ukrainian man has pleaded guilty to charges connecting him to Nefilim ransomware attacks – Read More –