Google has issued an emergency security update to address the seventh Chrome zero-day vulnerability exploited this year, caused by a type confusion weakness in the V8 JavaScript engine. While the fix is being rolled out across platforms, Google has warned that active exploitation requires users to update immediately. #CVE-2025-13223 #V8JavaScriptEngine
Tag: SPYWARE
Google released an urgent Chrome 142 update to fix a critical zero-day vulnerability (CVE-2025-13223) that is actively exploited in the wild. The flaw involves a type confusion issue in the V8 engine, potentially allowing remote code execution. #CVE-2025-13223 #V8Engine…
A significant data leak at Chinese cybersecurity firm Knownsec exposed sensitive hacking tools and operations involving over 20 countries. The breach underscores the depth of state-backed cyber espionage and the need for improved cybersecurity defenses. #Knownsec #CyberEspionage…
Iranian cyber espionage group APT42, associated with IRGC, has been targeting defense and government officials using social engineering and long-term relationship-building tactics. Their sophisticated operation employs modular malware and covert communication channels like Telegram and Discord for persistent data exfiltration. #APT42 #IRGC #TameCat #SpearSpecter…
Security researchers have uncovered an evolved North Korean-linked malware campaign called Contagious Interview that uses JSON storage services to host malicious code. The attackers target software developers and Web3 professionals through spoofed recruiter messages and deliver payloads like BeaverTail and InvisibleFerret for credential theft and remote access. #ContagiousInterview #BeaverTail #InvisibleFerret #NorthKorea…
Google plans to take action against Android apps on Google Play that cause excessive battery drain by tracking background activity and wake locks. Developers are given a deadline of March 1, 2026, to update their apps to meet new resource utilization standards aimed at improving user experience. #AndroidVitals #ExcessiveWakeLocks
Daily Recap, Law enforcement dismantled global botnets including Rhadamanthys, VenomRAT, and Elysium across 1,025 seized servers, marking a coordinated takedown. The drive highlights cross-border operations and ongoing efforts to curb botnet-led cybercrime. #Rhadamanthys #VenomRAT #Elysium
CISA has issued warnings and emergency directives urging U.S. federal agencies to urgently patch two critical vulnerabilities in Cisco ASA and Firepower devices, which are actively exploited in ongoing attacks. Despite previous updates, some organizations remain unpatched, leaving their networks vulnerable to remote code execution and complete device takeover. #CISA #CiscoASA #ZeroDay #ArcaneDoor
Cybercriminals are reusing old malware like DarkComet RAT by hiding it inside seemingly legitimate Bitcoin software, targeting cryptocurrency users. This malware allows hackers to control infected computers, steal keystrokes, and access sensitive information, posing a significant threat to digital currency security. #DarkComet #BitcoinWallet #CryptoThreats…
A North Korean-linked hacking group, KONNI, has used a sophisticated two-part attack involving spear phishing and remote device wiping to target Android users, primarily in South Korea. The attack leverages trust and popular platforms like KakaoTalk to spread malware and erase data remotely. #KONNI #APT37 #NorthKorea #KakaoTalk #AndroidSecurity…
Zimperium researchers have identified Fantasy Hub, a Russian Android RAT offered as Malware-as-a-Service, capable of device control, spying, and data theft through Telegram. This sophisticated MaaS platform targets banks and enterprise users, leveraging native droppers, WebRTC streaming, and SMS abuse to evade detection. #FantasyHub #RussianThreatActors #BankingTrojan…
Daily Recap, APT & Malware campaigns underpin a surge in weaponized documents and backdoors like Comebacker and ChaCha20, while vulnerabilities in Triofox, runC, and expr-eval threaten broader ecosystems. The news also covers credential phishing trends via Quantum Route Redirect and LinkedIn, regulatory actions on NY pricing and data privacy whistleblowers, plus notable incidents at Asahi and GitHub secrets leaks.
#ChaCha20 #Comebacker #KONNI #APT37 #FindHub #Triofox #runC #expr-eval #Yanluowang #Asahi #GitHub
A critical Samsung vulnerability (CVE-2025-21042) was exploited in zero-day attacks to deploy the LandFall spyware via WhatsApp, affecting flagship Galaxy devices. U.S. federal agencies are mandated to patch this flaw to prevent further breaches, with potential targets including multiple countries and espionage activities. #CVE-2025-21042 #LandFallSpyware
A former Trump official has been appointed as executive chairman of NSO Group, now owned by outside investors. The company, known for spyware like Pegasus, faces legal challenges and court orders restricting its operations, especially targeting WhatsApp users. #NSOGroup #Pegasus #WhatsApp #DavidFriedman…
Microsoft is launching a new Teams update that allows users to chat with anyone using just an email address, increasing connectivity across multiple platforms. However, security experts warn that this feature significantly enlarges the attack surface, raising risks of phishing, malware distribution, and data breaches. #MicrosoftTeams #B2BGuest #Phishing #OAuth #Malware…