Dead but Not Forgotten Discontinued IoT Devices Fall Prey to New Mirai Botnet

The Akamai Security Intelligence and Response Team (SIRT) has uncovered active exploitation of two previously disclosed vulnerabilities CVE-2024-6047 and CVE-2024-11120 targeting discontinued GeoVision Internet of Things (IoT) devices. This marks the first publicly observed use of these vulnerabilities since their initial disclosures in June and November 2024, respectively. Detected through Akamai’s global network of honeypots … Continued

Zero-Click Remote DoS in WDS Ignored by Microsoft

A critical remote denial-of-service (DOS) vulnerability has been found in Microsoft’s Windows Deployment services(WDS), exposing enterprise networks to system crashes by zero-click attacks. Security researcher warns that the issue, based on remote memory exhaustion, has been dangerously overlooked in cybersecurity, especially within critical infrastructure services. The security researcher Zhiniang Peng reported the issue to Microsoft … Continued

SentinelOne EDR Flaw Exploited To Deploy Babuk Ransomware

A threat actor has successfully exploited a vulnerability in SentinelOne’s Endpoint Detection and Response (EDR) software to disable protections and deploy ransomware, according to a new disclosure from Aon’s Stroz Friedberg Incident Response Services. The incident, uncovered during a forensic investigation, involved a method that bypassed SentinelOne’s anti-tamper protections by manipulating the agent upgrade and … Continued

Yemeni Man Indicted in U.S. Over Black Kingdom Ransomware

U.S. federal authorities have indicted a Yemeni national accused of conducting a global ransomware campaign that targeted more than 1,500 Microsoft Exchange servers, compromising systems at schools, hospitals, and businesses across multiple countries. Rami Khaled Ahmed, 36, of Sana’a, Yemen, allegedly known online as “Black Kingdom” is accused of leading the ransomware operation that struck … Continued

RCE Vulnerability in Apache Parquet Java CVE-2025-46762

A critical high-severity remote code execution (RCE) vulnerability has been found in the Apache Parquet Java library, specifically affecting the parquet-avro module. Tracked as CVE-2025-46762, this flaw can allow attackers to execute arbitrary code during schema parsing, posing significant risk to data platforms and analytics pipelines that rely on Parquet files. What is Apache Parquet … Continued

Russia-Aligned Hactivists Target Dutch Organizations in Ongoing DDoS Campaign

Key public and private institutions across the Netherlands have been hit by a wave of distributed denial-of-service (DDoS) attacks in recent days, causing widespread access disruptions, according to the country’s National Cyber Security Center (NCSC). In a statement released this week, the NCSC, which operates under the Ministry of Justice and Security, confirmed that multiple … Continued

Cyber Espionage Group Billbug Targets Southeast Asian Countries

The cyber espionage group known as Billbug, also tracked under aliases Lotus Blossom, Lotus Panda, Bronze Elgin, and formerly Thrip, has been linked in to an intrusion campaign targeting critical organizations across Southeast Asia. This campaign was going on from August 2024 to February 2025 and compromised entities at least in three different countries, signalling … Continued

Phishing Campaign Exploits Europe’s Power Outage

As millions across Europe faced a major blackout earlier this week, cybercriminals quickly seized the moment to launch a targeted phishing campaign aimed to steal personal and financial information. According to a new report from Cofense Intelligence, a spoofed email campaign impersonating TAP Air Portugal, the Portuguese national airline, circulated widely during the April 28 … Continued

Indian Court Orders Nationwide Block of Proton Mail

A regional high court in India has ordered the government to block access to Proton Mail, a Switzerland-based encrypted email service, after a complaint alleged its platform was used to send sexually explicit and AI-generated abusive content. The Ruling The High Court of Karnataka, a state in southern India, issued the directive on April 29, … Continued

Newsletter line