Secure Cyber Labs | Cybersecurity Resources by DrewNet Cybersecurity

Secure Cyber Labs | Cybersecurity Resources by DrewNet Cybersecurity

  • Home
  • Toolkit
  • About
  • Services
  • Cybersecurity News
  • Contact
  • Facebook
  • X
  • LinkedIn
  • Experts Warn of Widespread SonicWall VPN Compromise Impacting Over 100 Accounts

    Experts Warn of Widespread SonicWall VPN Compromise Impacting Over 100 Accounts

    October 11, 2025
    Cyber News

    Cybersecurity company Huntress on Friday warned of “widespread compromise” of SonicWall SSL VPN devices to access multiple customer environments. “Threat actors are authenticating into multiple accounts rapidly across compromised devices,” it said. “The speed and scale of these attacks imply that the attackers appear to control valid credentials rather than brute-forcing.” A significant chunk of…

  • Hackers Turn Velociraptor DFIR Tool Into Weapon in LockBit Ransomware Attacks

    Hackers Turn Velociraptor DFIR Tool Into Weapon in LockBit Ransomware Attacks

    October 11, 2025
    Cyber News

    Threat actors are abusing Velociraptor, an open-source digital forensics and incident response (DFIR) tool, in connection with ransomware attacks likely orchestrated by Storm-2603 (aka CL-CRI-1040 or Gold Salem), which is known for deploying the Warlock and LockBit ransomware. The threat actor’s use of the security utility was documented by Sophos last month. It’s assessed that…

  • 1Password Addresses Critical AI Browser Agent Security Gap

    1Password Addresses Critical AI Browser Agent Security Gap

    October 10, 2025
    Cyber News

    The security company looks to tackle new authentication challenges that could lead to credential leakage, as enterprises increasingly leverage AI browser agents. ​ ​ ​Read More

  • RondoDox Botnet: an ‘Exploit Shotgun’ for Edge Vulns

    RondoDox Botnet: an ‘Exploit Shotgun’ for Edge Vulns

    October 10, 2025
    Cyber News

    RondoDox takes a hit-and-run, shotgun approach to exploiting bugs in consumer edge devices around the world. ​ ​ ​Read More

  • The Fight Against Ransomware Heats Up on the Factory Floor

    The Fight Against Ransomware Heats Up on the Factory Floor

    October 10, 2025
    Cyber News

    Ransomware gangs continue to set their sights on the manufacturing industry, but companies are taking steps to protect themselves, starting with implementing timely patch management protocols. ​ ​ ​Read More

  • Deepfake Awareness High at Orgs, But Cyber Defenses Badly Lag

    Deepfake Awareness High at Orgs, But Cyber Defenses Badly Lag

    October 10, 2025
    Cyber News

    The vast majority of organizations are encountering AI-augmented threats, but remain confident in their defenses, despite inadequate detection investment and more than half falling to successful attacks. ​ ​ ​Read More

  • Stealit Malware Abuses Node.js Single Executable Feature via Game and VPN Installers

    Stealit Malware Abuses Node.js Single Executable Feature via Game and VPN Installers

    October 10, 2025
    Cyber News

    Cybersecurity researchers have disclosed details of an active malware campaign called Stealit that has leveraged Node.js’ Single Executable Application (SEA) feature as a way to distribute its payloads. According to Fortinet FortiGuard Labs, select iterations have also employed the open-source Electron framework to deliver the malware. It’s assessed that the malware is being propagated through…

  • Commentary Section Launches New, More Opinionated Era

    Commentary Section Launches New, More Opinionated Era

    October 10, 2025
    Cyber News

    Dark Reading is looking for leading industry experts with a point of view they want to share with the rest of the cybersecurity community for our new Commentary section. ​ ​ ​Read More

  • Microsoft Warns of ‘Payroll Pirates’ Hijacking HR SaaS Accounts to Steal Employee Salaries

    Microsoft Warns of ‘Payroll Pirates’ Hijacking HR SaaS Accounts to Steal Employee Salaries

    October 10, 2025
    Cyber News

    A threat actor known as Storm-2657 has been observed hijacking employee accounts with the end goal of diverting salary payments to attacker-controlled accounts. “Storm-2657 is actively targeting a range of U.S.-based organizations, particularly employees in sectors like higher education, to gain access to third-party human resources (HR) software as a service (SaaS) platforms like Workday,”…

  • From Detection to Patch: Fortra Reveals Full Timeline of CVE-2025-10035 Exploitation

    From Detection to Patch: Fortra Reveals Full Timeline of CVE-2025-10035 Exploitation

    October 10, 2025
    Cyber News

    Fortra on Thursday revealed the results of its investigation into CVE-2025-10035, a critical security flaw in GoAnywhere Managed File Transfer (MFT) that’s assessed to have come under active exploitation since at least September 11, 2025. The company said it began its investigation on September 11 following a “potential vulnerability” reported by a customer, uncovering “potentially…

Previous Page
1 … 8 9 10 11 12 … 28
Next Page
Secure Cyber Labs | Cybersecurity Resources by DrewNet Cybersecurity

Secure Cyber Labs | Cybersecurity Resources by DrewNet Cybersecurity

Privacy Policy

  • Facebook
  • X
  • LinkedIn