ICYMI: 2025-10-01
Latest Headlines
New WireTap Attack Extracts Intel SGX ECDSA Key via DDR4 Memory-Bus Interposer
OneLogin Bug Let Attackers Use API Keys to Steal OIDC Secrets and Impersonate Apps
Learn How Leading Security Teams Blend AI + Human Workflows (Free Webinar)
Red Hat OpenShift AI Flaw Exposes Hybrid Cloud Infrastructure to Full Takeover
Hackers Exploit Milesight Routers to Send Phishing SMS to European Users
New Android Banking Trojan “Klopatra” Uses Hidden VNC to Control Infected Smartphones
Ukraine Warns of CABINETRAT Backdoor + XLL Add-ins Spread via Signal ZIPs
OpenSSL Vulnerabilities Allow Private Key Recovery, Code Execution, DoS Attacks
Chinese APT ‘Phantom Taurus’ Targeting Organizations With Net-Star Malware
NIST Publishes Guide for Protecting ICS Against USB-Borne Threats
Cybersecurity Awareness Month 2025: Prioritizing Identity to Safeguard Critical Infrastructure
Broadcom Fails to Disclose Zero-Day Exploitation of VMware Vulnerability
Battering RAM Attack Breaks Intel and AMD Security Tech With $50 Device
Ukraine Warns of Weaponized XLL Files Delivers CABINETRAT Malware Via Zip Files
Threat Actors Leveraging Senior Travel Scams to Deliver Datzbro Malware
Malicious PyPI Package Mimics as SOCKS5 Proxy Tool Attacking Windows Platforms
New Google Drive Desktop Feature adds AI-powered Ransomware Detection to Prevent Cyberattacks
New FlipSwitch Hooking Technique Bypasses Linux Kernel Defenses
New DNS Malware Detour Dog Delivers Strela Stealer Using DNS TXT Records
Hackers Abuse EV Certificates to Sign Completely Undetectable DMG Malware
Allianz Life Data Breach Exposes Personal Records of 1.5 Million Users
AI-Powered FunkLocker Ransomware Leverages Windows utilities to Disable Defenses
Google Releases Guide to Harden Security Strategy and Detection Capabilities Against UNC6040
Data breach at dealership software provider impacts 766k clients
Adobe Analytics bug leaked customer tracking data to other tenants
New bug in classic Outlook can only be fixed via Microsoft support
F-Droid project threatened by Google’s new dev registration rules
Microsoft to force install Microsoft 365 companion apps in October
WestJet data breach exposes travel details of 1.2 million customers
Google Drive for desktop gets AI-powered ransomware detection
Allianz Life says July data breach impacts 1.5 million people
How To Simplify CISA’s Zero Trust Roadmap with Modern Microsegmentation
Microsoft: Media Creation Tool broken on Windows 11 Arm64 PCs
– MTZ