Security

Cyber Incidents Digest — 2025-12-18

Daily Cyber Incidents Digest — 2025-12-18 Cisco Warns of Active Attacks Exploiting Unpatched 0-Day in AsyncOS Email Security Appliances Published: 2025-12-18 05:00 UTC Source: https://thehackernews.com/2025/12/cisco-warns-of-active-attacks.html Cisco has alerted users of a maximum-severity zero-day flaw in Cisco AsyncOS software that has been actively exploited by a China-nexus advanced persistent threat (APT) actor codenamed UAT-9686 in attacks […]

Cyber Incidents Digest — 2025-12-18 Read More »

Cyber Incidents Digest — 2025-12-17

Daily Cyber Incidents Digest — 2025-12-17 Analytics provider: We didn’t expose smut site data to crims Published: 2025-12-17 05:00 UTC Source: https://go.theregister.com/feed/www.theregister.com/2025/12/16/mixpanel_breach_leak_denial/ An employee of the adult site could be responsible. Analytics vendor Mixpanel says it is not the source of data stolen from Pornhub and says the info was last accessed by an employee

Cyber Incidents Digest — 2025-12-17 Read More »

Cyber Incidents Digest — 2025-12-16

Daily Cyber Incidents Digest — 2025-12-16 Amazon security boss blames Russia’s GRU for years-long energy-sector hacks Published: 2025-12-16 05:00 UTC Source: https://go.theregister.com/feed/www.theregister.com/2025/12/15/amazon_ongoing_gru_campaign/ ‘Sustained focus on Western critical infrastructure’ Russia’s Main Intelligence Directorate (GRU) is behind a years-long campaign targeting energy, telecommunications, and tech providers, stealing credentials and compromising misconfigured devices hosted on AWS to give

Cyber Incidents Digest — 2025-12-16 Read More »

Cyber Incidents Digest — 2025-12-15

Daily Cyber Incidents Digest — 2025-12-15 Honeypots can help defenders, or damn them if implemented badly Published: 2025-12-15 05:00 UTC Source: https://go.theregister.com/feed/www.theregister.com/2025/12/14/infosec_news_in_brief/ PLUS: Crims could burn your AI budgets thanks to weak defaults; CISA’s top 25 vulns for 2025; And more Infosec In Brief  The UK’s National Cyber Security Centre (NCSC) has found that cyber-deception

Cyber Incidents Digest — 2025-12-15 Read More »

Cyber Incidents Digest — 2025-12-14

Daily Cyber Incidents Digest — 2025-12-14 CISA Adds Actively Exploited Sierra Wireless Router Flaw Enabling RCE Attacks Published: 2025-12-14 05:00 UTC Source: https://thehackernews.com/2025/12/cisa-adds-actively-exploited-sierra.html The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added a high-severity flaw impacting Sierra Wireless AirLink ALEOS routers to its Known Exploited Vulnerabilities (KEV) catalog, following reports of active exploitation

Cyber Incidents Digest — 2025-12-14 Read More »

Cyber Incidents Digest — 2025-12-13

Daily Cyber Incidents Digest — 2025-12-13 Half of exposed React servers remain unpatched amid active exploitation Published: 2025-12-13 05:00 UTC Source: https://go.theregister.com/feed/www.theregister.com/2025/12/12/vulnerable_react_instances_unpatched/ Wiz says React2Shell attacks accelerating, ranging from cryptominers to state-linked crews Half of the internet-facing systems vulnerable to a fast-moving React remote code execution flaw remain unpatched, even as exploitation has exploded into

Cyber Incidents Digest — 2025-12-13 Read More »

Cyber Incidents Digest — 2025-12-12

Daily Cyber Incidents Digest — 2025-12-12 Crypto-crasher Do Kwon jailed for 15 years over $40bn UST bust Published: 2025-12-12 05:00 UTC Source: https://go.theregister.com/feed/www.theregister.com/2025/12/12/do_kwon_sentenced/ Judge said his fraud was on ‘epic, generational scale’ Terraform Labs founder Do Kwon will spend 15 years in jail after pleading guilty to committing fraud.… Tags: cybersecurity Russian hackers debut simple

Cyber Incidents Digest — 2025-12-12 Read More »

Cyber Incidents Digest — 2025-12-11

Daily Cyber Incidents Digest — 2025-12-11 Mistaking AI vulnerability could lead to large-scale breaches, NCSC warns Published: 2025-12-11 05:00 UTC Source: https://www.ncsc.gov.uk/news/mistaking-ai-vulnerability-could-lead-to-large-scale-breaches NCSC raises alert on “dangerous” misunderstanding of emergent class of vulnerability in generative artificial intelligence (AI) applications. Tags: vulnerability 700+ self-hosted Gits battered in 0-day attacks with no fix imminent Published: 2025-12-11 05:00

Cyber Incidents Digest — 2025-12-11 Read More »

Cyber Incidents Digest — 2025-12-10

Daily Cyber Incidents Digest — 2025-12-10 Microsoft Patch Tuesday, December 2025 Edition Published: 2025-12-10 05:00 UTC Source: https://krebsonsecurity.com/2025/12/microsoft-patch-tuesday-december-2025-edition/ Microsoft today pushed updates to fix at least 56 security flaws in its Windows operating systems and supported software. This final Patch Tuesday of 2025 tackles one zero-day bug that is already being exploited, as well as

Cyber Incidents Digest — 2025-12-10 Read More »

Cyber Incidents Digest — 2025-12-09

Daily Cyber Incidents Digest — 2025-12-09 A method to assess ‘forgivable’ vs ‘unforgivable’ vulnerabilities Published: 2025-12-09 05:00 UTC Source: https://www.ncsc.gov.uk/report/a-method-to-assess-forgivable-vs-unforgivable-vulnerabilities Research from the NCSC designed to eradicate vulnerability classes and make the top-level mitigations easier to implement. Tags: vulnerability 193 cybercrims arrested, accused of plotting ‘violence-as-a-service’ Published: 2025-12-09 05:00 UTC Source: https://go.theregister.com/feed/www.theregister.com/2025/12/08/european_cops_arrest_193/ Minors groomed to

Cyber Incidents Digest — 2025-12-09 Read More »

Scroll to Top