New Variant of Agenda Ransomware with NETXLOADER and SmokeLoader Dropped

Cybersecurity researchers at Trend Micro have uncovered a significant evolution in the Agenda ransomware group, also known as Qilin, highlighting the group’s growing technical sophistication and expanding global footprint. First identified in July 2022, Agenda has steadily transformed into a formidable threat, now using advanced malware loaders, stealth tactics, and diverse distribution infrastructure. Trend Micro … Continued

Critical Kibana Vulnerability CVE-2025-25014 Patched in Latest Security Update

Elastic has issued a critical security advisory for Kibana, warning users of a high-severity vulnerability that could allow attackers to execute arbitrary code via prototype pollution. The issue, tracked as CVE-2025-25014, carries a CVSS v3.1 score of 9.1, indicating a critical risk to affected systems. The vulnerability, disclosed under Elastic Security Advisory ESA-2025-07, impacts Kibana … Continued

Dead but Not Forgotten Discontinued IoT Devices Fall Prey to New Mirai Botnet

The Akamai Security Intelligence and Response Team (SIRT) has uncovered active exploitation of two previously disclosed vulnerabilities CVE-2024-6047 and CVE-2024-11120 targeting discontinued GeoVision Internet of Things (IoT) devices. This marks the first publicly observed use of these vulnerabilities since their initial disclosures in June and November 2024, respectively. Detected through Akamai’s global network of honeypots … Continued

Zero-Click Remote DoS in WDS Ignored by Microsoft

A critical remote denial-of-service (DOS) vulnerability has been found in Microsoft’s Windows Deployment services(WDS), exposing enterprise networks to system crashes by zero-click attacks. Security researcher warns that the issue, based on remote memory exhaustion, has been dangerously overlooked in cybersecurity, especially within critical infrastructure services. The security researcher Zhiniang Peng reported the issue to Microsoft … Continued

SentinelOne EDR Flaw Exploited To Deploy Babuk Ransomware

A threat actor has successfully exploited a vulnerability in SentinelOne’s Endpoint Detection and Response (EDR) software to disable protections and deploy ransomware, according to a new disclosure from Aon’s Stroz Friedberg Incident Response Services. The incident, uncovered during a forensic investigation, involved a method that bypassed SentinelOne’s anti-tamper protections by manipulating the agent upgrade and … Continued

Yemeni Man Indicted in U.S. Over Black Kingdom Ransomware

U.S. federal authorities have indicted a Yemeni national accused of conducting a global ransomware campaign that targeted more than 1,500 Microsoft Exchange servers, compromising systems at schools, hospitals, and businesses across multiple countries. Rami Khaled Ahmed, 36, of Sana’a, Yemen, allegedly known online as “Black Kingdom” is accused of leading the ransomware operation that struck … Continued

RCE Vulnerability in Apache Parquet Java CVE-2025-46762

A critical high-severity remote code execution (RCE) vulnerability has been found in the Apache Parquet Java library, specifically affecting the parquet-avro module. Tracked as CVE-2025-46762, this flaw can allow attackers to execute arbitrary code during schema parsing, posing significant risk to data platforms and analytics pipelines that rely on Parquet files. What is Apache Parquet … Continued

Russia-Aligned Hactivists Target Dutch Organizations in Ongoing DDoS Campaign

Key public and private institutions across the Netherlands have been hit by a wave of distributed denial-of-service (DDoS) attacks in recent days, causing widespread access disruptions, according to the country’s National Cyber Security Center (NCSC). In a statement released this week, the NCSC, which operates under the Ministry of Justice and Security, confirmed that multiple … Continued

5 Must See Cybersecurity Products That Stole the Spotlight at RSA 2025

As RSA Conference 2025 winds down, one thing is clear: this year has delivered some genuine “aha!” moments. Whether it was a jaw-dropping demo or a breakthrough idea that redefines how we think about security, a handful of products stood out from the noise. These aren’t just incremental updates—they’re innovations you need to experience firsthand. … Continued

Newsletter line