Cyber Security Week in Review: February 14, 2025
In brief: Microsoft patches actively exploited zero-days, Chinese hackers Salt Typhoon exploit Cisco flaws, the US and partners sanction Zservers, and more.
In brief: Microsoft patches actively exploited zero-days, Chinese hackers Salt Typhoon exploit Cisco flaws, the US and partners sanction Zservers, and more.
The 'BadPilot' campaign involves a series of targeted cyberattacks leveraging bugs in widely used IT infrastructure software.
The two men arrested in Spain are accused of overseeing the global distribution of Sky ECC devices and software.
The attackers utilized a BACKORDER loader to deploy DarkCrystal RAT.
The new tactic involves the threat actor tricking individuals into executing PowerShell commands as administrators.
The two actively exploited vulnerabilities are tracked as CVE-2025-21391 and CVE-2025-21418.
CVE-2025-24200 could allow a malicious actor to disable USB Restricted Mode on a locked device.
Zservers is responsible for providing cybercriminals with servers and other critical infrastructure designed to evade law enforcement detection.
Council and his co-conspirators gained access to the SEC’s account through a SIM swap.
The alleged crimes include deploying Phobos ransomware between April 30, 2023, and October 26, 2024, against 17 Swiss companies.
Showing elements 991 - 1000