Radical Empowerment From Your Leadership: Understood by Few, Essential for All

Radical empowerment in cybersecurity leadership involves giving front-line teams maximum authority, trust, and resources to foster innovation and quick problem-solving. However, misdefinitions and top-down approaches can lead to disempowerment, fear, and stagnation, emphasizing the importance of genuine trust and organizational safety. #CyberPsychology #CyberLeadership…

Read More
Cavalry Werewolf Launches Cyberattack on Government Agencies to Deploy Network Backdoor

A sophisticated cyberattack by the group Cavalry Werewolf targeted a Russian government organization, using phishing emails and multiple malware variants to steal data and perform network reconnaissance. The campaign highlights the threat posed by advanced persistent threat actors employing open-source tools and covert tactics. #CavalryWerewolf #BackDoorShellNET #TrojanFileSpyNET #ReverseSocks5…

Read More
Sandworm Hackers Target Ukrainian Organizations With Data-Wiping Malware

Russia-aligned threat actor Sandworm has intensified its destructive cyber operations targeting Ukrainian infrastructure using sophisticated data wipers like ZEROLOT and Sting. These attacks aim to cause maximum disruption to Ukraine’s economy and critical sectors, including government, energy, and agriculture. #Sandworm #ZEROLOT #Sting #UkrainianInfrastructure…

Read More
Survision License Plate Recognition Camera | CISA

Radiometrics VizAir devices are vulnerable to multiple critical security flaws that could allow remote attackers to manipulate weather data and disrupt airport operations. Cybercriminals could exploit these vulnerabilities to mislead air traffic control, cause hazardous flight conditions, and extract sensitive meteorological information. #VizAir #CVE-2025-61945 #CVE-2025-54863 #CycloneThreat…

Read More
Polish loan platform hacked; mobile payment system and other businesses disrupted

Polish authorities are Investigating a series of cyberattacks affecting major companies, including data breaches and disruption of payment services, highlighting the increasing frequency of cyber threats. The attacks, potentially linked to Russia, underscore the growing cyber warfare and espionage risks faced by Poland and European nations. #SuperGrosz #Blik #RussiaCyberattacks…

Read More
Cybersecurity News | Daily Recap [05 Nov 2025]

Daily Recap, Ransomware actors are exploiting the Linux kernel CVE-2024-1086 to deploy malware and escalate incidents while a new BOF tool bypasses Microsoft Teams cookie encryption to steal user chats. Chrome vulnerability rewards and a Windows Task Manager bug are also noted in the week’s security updates.
#CVE-2024-1086 #LinuxKernel #TeamsBOF #ChromeRewards #KB5067036

Read More
Hacktivist Attacks on Critical Infrastructure Soar: Cyble Report

Hacktivist attacks on critical infrastructure, especially industrial control systems (ICS), doubled in the third quarter, with Russia-linked groups leading the strikes. These threats are increasingly targeting energy, utilities, manufacturing, and agriculture sectors across Europe and North America, driven by geopolitical conflicts. #INTEID #Z-Pentest…

Read More
Operation Peek-a-Baku: Silent Lynx APT Targets Dushanbe with Espionage Campaign

Silent Lynx conducted spear-phishing campaigns using malicious RAR archives and LNK shortcuts to deploy multiple implants (PowerShell reverse shells, C++ Laplas, C++/TLS variants, .NET SilentSweeper) targeting diplomatic and infrastructure-related entities in Central Asia, Russia, Azerbaijan, and China. Infrastructure includes GitHub-hosted Base64 blobs, C2s at 206.189.11.142 and Russian hosts, and use of tunneling tools like Ligolo-ng. #SilentLynx #SilentSweeper

Read More
Hackers are attacking Britain’s drinking water suppliers

British water suppliers in Britain have experienced five cyberattacks targeting their organizations since last year, underscoring increasing threats to critical infrastructure. While these attacks did not affect the water supply directly, they highlight the importance of improved cybersecurity measures amid evolving threats. #VoltTyphoon #BritishWater #CriticalInfrastructure…

Read More
Weaponized Military Documents Deliver Advanced SSH-Tor Backdoor to Defense Sector

In October 2025, CRIL discovered a multi-stage backdoor campaign using a weaponized ZIP masquerading as a Belarusian military PDF that used nested archives, LNK-triggered PowerShell, scheduled tasks, and a Tor hidden-service with obfs4 to provide anonymous SSH/RDP/SFTP/SMB access. The TTPs and infrastructure show similarities to the December 2024 Army+ campaign attributed to Sandworm (UAC-0125/APT44), including pre-generated RSA keys and OpenSSH for Windows deployment. #Sandworm #obfs4

Read More
FCC plans vote to remove cyber regulations installed after theft of Trump info from telecoms

The FCC plans to revoke cybersecurity regulations previously imposed on telecom companies following Chinese hacking attacks linked to Salt Typhoon. The agency argues that telecoms have already taken voluntary security measures and that the earlier regulations were overly rigid and unnecessary. #SaltTyphoon #ChineseHackers…

Read More