Cyber Security

Critical Unpatched SharePoint Zero-Day Actively Exploited, Breaches 75+ Global Organizations

î ‚Jul 20, 2025î „Ravie LakshmananZero-Day / Vulnerability A critical security vulnerability in Microsoft SharePoint Server has been weaponized as part of an “active, large-scale” exploitation campaign. The zero-day flaw, known as CVE-2025-53770 (CVSS score: 9.8), is a variant of CVE-2025-49706 (CVSS …

Critical Unpatched SharePoint Zero-Day Actively Exploited, Breaches 75+ Global Organizations Read More »

Chinese Hackers Target Taiwan’s Semiconductor Sector with Cobalt Strike, Custom Backdoors

The Taiwanese semiconductor industry has been targeted by spear-phishing campaigns carried out by three Chinese state-sponsored threat actors. “Targets of these campaigns ranged from organizations involved in the manufacturing, design, and testing of semiconductors and integrated circuits, wider equipment and …

Chinese Hackers Target Taiwan’s Semiconductor Sector with Cobalt Strike, Custom Backdoors Read More »

North Korean Hackers Flood npm Registry with XORIndex Malware in Ongoing Attack Campaign

î ‚Jul 15, 2025î „Ravie LakshmananMalware / Web Security The North Korean threat actors associated with the Contagious Interview campaign have recently released 67 new malicious packages on the npm registry, highlighting ongoing efforts to compromise the open-source ecosystem through software supply …

North Korean Hackers Flood npm Registry with XORIndex Malware in Ongoing Attack Campaign Read More »

CBI Shuts Down £390K U.K. Tech Support Scam, Arrests Key Operatives in Noida Call Center

î ‚Jul 14, 2025î „Ravie LakshmananCybercrime / Law Enforcement India’s Central Bureau of Investigation (CBI) has announced that it has dismantled a transnational cybercrime syndicate involved in sophisticated tech support scams targeting citizens of Australia and the United Kingdom. The fraudulent scheme …

CBI Shuts Down £390K U.K. Tech Support Scam, Arrests Key Operatives in Noida Call Center Read More »