Friday, November 21, 2025
Follow on LinkedIn
PROMPTFLUX Malware

Google Warns of New PROMPTFLUX Malware Using Gemini API to Rewrite Its Own Source...

Google Threat Intelligence Group (GTIG) has unveiled details of an experimental malware family called PROMPTFLUX, which leverages the Gemini AI API to rewrite its...

Hackers Exploit OneDrive.exe Through DLL Sideloading to Execute Arbitrary Code

A sophisticated attack technique that exploits Microsoft's OneDrive application through DLL sideloading, allowing threat actors to execute malicious code while evading detection mechanisms. The attack...
HydraPWK Penetration Testing OS

HydraPWK Penetration Testing OS With Necessary Hacking Tools and Simplified Interface

The HydraPWK project's latest Apes-T1 snapshot refines its penetration-testing Linux distribution by replacing Elasticsearch with the open-source OpenSearch, resolving licensing issues and enhancing tools...
React Native NPM Package Vulnerability

Critical RCE Vulnerability in Popular React Native NPM Package Exposes Developers to Attacks

A critical remote code execution (RCE) vulnerability tracked as CVE-2025-11953 in the @react-native-community/cli NPM package. With nearly 2 million weekly downloads, this package powers the...
Microsoft Teams Vulnerabilities

Hackers Can Exploit Microsoft Teams Vulnerabilities to Manipulate Messages and Alter Notifications

Critical vulnerabilities in Microsoft Teams, a platform central to workplace communication for over 320 million users worldwide, enable attackers to impersonate executives and tamper...

Hackers Stolen Over $100 Million by Exploiting Balancer DeFi Protocol

Hackers have successfully stolen more than $100 million by exploiting a critical vulnerability in the Balancer protocol. Balancer, a leading DeFi platform known for its...

Zscaler Acquires Enterprise AI Security Firm SPLX to Boost Zero Trust Exchange

Zscaler, a leading cloud security company, has announced the acquisition of SPLX, an innovative AI security firm, to enhance its Zero Trust Exchange platform...
Android 0-Click RCE Vulnerability

Critical Android 0-Click Vulnerability in System Component Allows Remote Code Execution Attacks

Google has issued a critical security alert for Android devices, highlighting a severe zero-click vulnerability in the system's core components that could allow attackers...
Weaponized Putty and Teams Ads

Weaponized Putty and Teams Ads Deliver Malware Allowing Hackers to Access Network

An ongoing malicious advertising campaign is weaponizing legitimate software downloads to deploy OysterLoader malware, previously identified as Broomstick and CleanUpLoader. This sophisticated initial access tool...
AMD Zen5 RDSEED Vulnerability

AMD Zen 5 Processors RDSEED Vulnerability Breaks Integrity With Randomness

AMD has disclosed a critical vulnerability affecting its Zen 5 processor lineup that compromises the reliability of random number generation, a fundamental security feature...
CSN

Top 10