LOTUSLITE Backdoor Deployed in Venezuela-Themed Spear Phishing Against U.S. Policy Targets

Security researchers have disclosed a targeted cyber-espionage campaign that used politically themed spear-phishing emails to target U.S. government and policy-related organizations with a previously undocumented backdoor known as LOTUSLITE. The activity leveraged lures tied to recent geopolitical developments involving the United States and Venezuela. The phishing emails delivered a ZIP archive titled “US now deciding … Continued

Active Zero-Day in Cisco Email Security Products Fixed After APT Exploitation

Cisco has issued emergency security updates for a previously exploited zero-day vulnerability affecting its enterprise email security infrastructure, after confirming real-world attacks linked to a China-associated threat actor identified as UAT-9686.   What Was Fixed The flaw, assigned CVE-2025-20393, allows unauthenticated remote command execution and has been given a CVSS severity score of 10.0. The … Continued

FTC Cracks Down on GM Over Unauthorized Driver Location Data Sales

The Federal Trade Commission (FTC) has banned General Motors (GM) from selling drivers’ location and driving behavior data for five years. The decision comes after a federal investigation into GM’s data-sharing practices. Regulators found that sensitive vehicle data was shared without proper transparency. The ban officially applies across the United States. The FTC said GM … Continued

Monroe University Confirms 2024 Data Breach Impacting Over 320,000 Individuals

Monroe University has confirmed that a major data breach in December 2024 affected 320,973 individuals. The incident occurred when unauthorized attackers gained access to the university’s internal systems. The intrusion lasted for nearly two weeks, from December 9 to December 23, 2024, during which files were copied from the network. After discovering the cyberattack, Monroe … Continued

PLUGGYAPE Malware Campaign Targets Ukrainian Defense Forces via Signal and WhatsApp

In late 2025, Ukrainian cybersecurity authorities uncovered a new malware campaign that targeted members of Ukraine’s defense forces. The attackers used trusted messaging platforms like Signal and WhatsApp to spread the infection. This made the attack more dangerous because victims did not expect threats from these secure apps. The campaign was active between October and … Continued

New Malware Campaign Delivers Remcos RAT via Multi-Stage Windows Attack

A new malware campaign has been identified by cybersecurity researchers that targets Windows systems using a multi-stage attack method. The attackers are spreading a dangerous remote access malware known as Remcos RAT. This campaign uses advanced techniques to avoid detection and gain full control over infected computers. Security experts confirm that the threat is active … Continued

CISA Reports Active Exploitation of High-Severity Gogs Vulnerability

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical Gogs vulnerability to its Known Exploited Vulnerabilities (KEV) catalog, confirming it is being actively exploited in the wild. The flaw, CVE-2025-8110 (CVSS 8.7), impacts Gogs and arises from a path traversal issue in the repository file editor. Improper handling of symbolic links in … Continued

BreachForums Database Leak Exposes Threat Actors Operating in the Shadows

BreachForums, a well-known underground hacking forum, has suffered a major database leak that exposed information linked to its own users. The incident has surprised many in the cybersecurity community. A platform known for trading stolen data has now become a victim itself. Researchers say this leak changes the usual balance between attackers and defenders. BreachForums … Continued

Newsletter line