Aug 18, 2025Ravie LakshmananCybersecurity / Hacking News Power doesn’t just disappear in one big breach. It slips away in the small stuff—a patch that’s missed, a setting that’s wrong, a …
Exploits
-
-
Security
New Android Malware Wave Hits Banking via NFC Relay Fraud, Call Hijacking, and Root Exploits
by Wikdailyby WikdailyCybersecurity researchers have disclosed a new Android trojan called PhantomCard that abuses near-field communication (NFC) to conduct relay attacks for facilitating fraudulent transactions in attacks targeting banking customers in Brazil. …
-
Security
Russian Group EncryptHub Exploits MSC EvilTwin Vulnerability to Deploy Fickle Stealer Malware
by Wikdailyby WikdailyAug 16, 2025Ravie LakshmananMalware / Vulnerability The threat actor known as EncryptHub is continuing to exploit a now-patched security flaw impacting Microsoft Windows to deliver malicious payloads. Trustwave SpiderLabs said …
-
Security
Fire Ant Exploits VMware Flaws to Compromise ESXi Hosts and vCenter Environments
by Wikdailyby WikdailyJul 24, 2025Ravie LakshmananVirtualization / Network Security Virtualization and networking infrastructure have been targeted by a threat actor codenamed Fire Ant as part of a prolonged cyber espionage campaign. The …
-
Security
Microsoft’s incomplete SharePoint patch led to global exploits by China-linked hackers
by Wikdailyby WikdailyAccording to Dani, the shift toward collaboration platforms like SharePoint is no coincidence. “SharePoint acts as a one-stop shop for sensitive documents, source code, HR, and legal content,” he said. …
-
Security
Storm-2603 Exploits SharePoint Flaws to Deploy Warlock Ransomware on Unpatched Systems
by Wikdailyby WikdailyJul 24, 2025Ravie LakshmananVulnerability / Ransomware Microsoft has revealed that one of the threat actors behind the active exploitation of SharePoint flaws is deploying Warlock ransomware on targeted systems. The …
-
Security
New Coyote Malware Variant Exploits Windows UI Automation to Steal Banking Credentials
by Wikdailyby WikdailyJul 23, 2025Ravie LakshmananWindows Security / Cryptocurrency The Windows banking trojan known as Coyote has become the first known malware strain to exploit the Windows accessibility framework called UI Automation …
-
Security
Microsoft Links Ongoing SharePoint Exploits to Three Chinese Hacker Groups
by Wikdailyby WikdailyJul 22, 2025Ravie LakshmananVulnerability / Threat Intelligence Microsoft has formally tied the exploitation of security flaws in internet-facing SharePoint Server instances to two Chinese hacking groups called Linen Typhoon and …
-
Security
Cisco Confirms Active Exploits Targeting ISE Flaws Enabling Unauthenticated Root Access
by Wikdailyby WikdailyJul 22, 2025Ravie LakshmananNetwork Security / Vulnerability Cisco on Monday updated its advisory of a set of recently disclosed security flaws in Identity Services Engine (ISE) and ISE Passive Identity …
-
Multiple Fortinet FortiWeb instances recently infected with web shells are believed to have been compromised using public exploits for a recently patched remote code execution (RCE) flaw tracked as CVE-2025-25257. …