Zimbra Zero-Day Exploited to Target Brazilian Military via Malicious ICS Files

A newly discovered zero-day flaw in Zimbra Collaboration has been used in real cyberattacks against military organizations in Brazil. Hackers exploited this vulnerability by sending specially crafted calendar files, known as ICS files, which contained malicious code designed to compromise systems. The attack was especially dangerous because it targeted a zero-day vulnerability one that was … Continued

CVE-2025-61882: Oracle Battles Cl0p’s Data Theft Campaign With Emergency Patch

Oracle has quickly released an emergency security patch after the Cl0p ransomware group reportedly exploited a serious zero-day vulnerability, tracked as CVE-2025-61882. The company confirmed that some customers using Oracle E-Business Suite received extortion emails claiming their data had been stolen through this flaw. The vulnerability affects the Concurrent Processing component of Oracle E-Business Suite … Continued

Oracle Alerts Clients to Extortion Campaign Targeting E-Business Suite Users

In a troubling escalation of corporate cyber threats, Oracle has confirmed that customers of its E-Business Suite are receiving extortion emails from hackers claiming to have exfiltrated sensitive data.  The vendor’s disclosure follows earlier warnings from Google’s cybersecurity teams, which described the campaign as “high-volume” and emphasized the urgent risk to enterprises across sectors. What … Continued

New Android Spyware in UAE Masquerades as Popular Messaging Apps

Cybersecurity researchers have uncovered two sophisticated Android spyware campaigns, ProSpy and ToSpy, targeting users in the United Arab Emirates (UAE) by masquerading as legitimate messaging applications. These campaigns exploit the popularity of secure messaging tools to secretly collect sensitive data from unsuspecting users. Spyware Campaigns: ProSpy and ToSpy According to ESET researchers, both ProSpy and … Continued

AI-Driven Voice Cloning Amplifies Vishing Threats

The New Era of Social Engineering Artificial intelligence has transformed industries from healthcare to entertainment—but it has also armed cybercriminals with new tools. Among the most alarming is AI-driven voice cloning, which allows attackers to replicate human voices with startling accuracy. This technology, once limited to research labs and Hollywood studios, is now widely accessible … Continued

South Korea Raises Cyber Threat Level After Major Data Center Fire Sparks Cybersecurity Concerns

South Korea’s National Intelligence Service (NIS) has raised the nation’s cyber threat level from “attention” to “caution” after a massive fire at a government-run data center in Daejeon disrupted several critical digital services. The blaze, which broke out on September 30, 2025, paralyzed access to government email, national identification verification, real estate transaction systems, school … Continued

Medusa Ransomware Targets Comcast with $1.2 Million Demand

The notorious Medusa ransomware group has taken responsibility for a significant data breach at Comcast, one of the largest telecommunications companies in the United States. According to reports, the attackers exfiltrated over 834.4 GB of sensitive corporate data, including internal documents, financial records, and potentially client information. The hackers are demanding a ransom of $1.2 … Continued

Newsletter line