Secure Cyber Labs | Cybersecurity Resources by DrewNet Cybersecurity

Secure Cyber Labs | Cybersecurity Resources by DrewNet Cybersecurity

  • Home
  • Toolkit
  • About
  • Services
  • Cybersecurity News
  • Contact
  • Facebook
  • X
  • LinkedIn
  • FBI Warns of Threat Actors Hitting Salesforce Customers

    FBI Warns of Threat Actors Hitting Salesforce Customers

    September 15, 2025
    Cyber News

    The FBI’s IC3 recently warned of two threat actors, UNC6040 and UNC6395, targeting Salesforce customers, separately and in tandem. ​ ​ ​Read More

  • Shiny tools, shallow checks: how the AI hype opens the door to malicious MCP servers

    Shiny tools, shallow checks: how the AI hype opens the door to malicious MCP servers

    September 15, 2025
    Cyber News

    Introduction In this article, we explore how the Model Context Protocol (MCP) — the new “plug-in bus” for AI assistants — can be weaponized as a supply chain foothold. We start with a primer on MCP, map out protocol-level and supply chain attack paths, then walk through a hands-on proof of concept: a seemingly legitimate…

  • AI-Powered Villager Pen Testing Tool Hits 11,000 PyPI Downloads Amid Abuse Concerns

    AI-Powered Villager Pen Testing Tool Hits 11,000 PyPI Downloads Amid Abuse Concerns

    September 15, 2025
    Cyber News

    A new artificial intelligence (AI)-powered penetration testing tool linked to a China-based company has attracted nearly 11,000 downloads on the Python Package Index (PyPI) repository, raising concerns that it could be repurposed by cybercriminals for malicious purposes. Dubbed Villager, the framework is assessed to be the work of Cyberspike, which has positioned the tools as…

  • HiddenGh0st, Winos and kkRAT Exploit SEO, GitHub Pages in Chinese Malware Attacks

    HiddenGh0st, Winos and kkRAT Exploit SEO, GitHub Pages in Chinese Malware Attacks

    September 15, 2025
    Cyber News

    Chinese-speaking users are the target of a search engine optimization (SEO) poisoning campaign that uses fake software sites to distribute malware. “The attackers manipulated search rankings with SEO plugins and registered lookalike domains that closely mimicked legitimate software sites,” Fortinet FortiGuard Labs researcher Pei Han Liao said. “By using convincing language and small character ​…

  • FBI Warns of UNC6040 and UNC6395 Targeting Salesforce Platforms in Data Theft Attacks

    FBI Warns of UNC6040 and UNC6395 Targeting Salesforce Platforms in Data Theft Attacks

    September 13, 2025
    Cyber News

    The U.S. Federal Bureau of Investigation (FBI) has issued a flash alert to release indicators of compromise (IoCs) associated with two cybercriminal groups tracked as UNC6040 and UNC6395 for a string of data theft and extortion attacks. “Both groups have recently been observed targeting organizations’ Salesforce platforms via different initial access mechanisms,” the FBI said.…

  • French Advisory Sheds Light on Apple Spyware Activity

    French Advisory Sheds Light on Apple Spyware Activity

    September 12, 2025
    Cyber News

    CERT-FR’s advisory follows last month’s disclosure of a zero-day flaw Apple said was used in “sophisticated” attacks against targeted individuals. ​ ​ ​Read More

  • Samsung Fixes Critical Zero-Day CVE-2025-21043 Exploited in Android Attacks

    Samsung Fixes Critical Zero-Day CVE-2025-21043 Exploited in Android Attacks

    September 12, 2025
    Cyber News

    Samsung has released its monthly security updates for Android, including a fix for a security vulnerability that it said has been exploited in zero-day attacks. The vulnerability, CVE-2025-21043 (CVSS score: 8.8), concerns an out-of-bounds write that could result in arbitrary code execution. “Out-of-bounds Write in libimagecodec.quram.so prior to SMR Sep-2025 Release 1 allows remote attackers…

  • Apple Warns French Users of Fourth Spyware Campaign in 2025, CERT-FR Confirms

    Apple Warns French Users of Fourth Spyware Campaign in 2025, CERT-FR Confirms

    September 12, 2025
    Cyber News

    Apple has notified users in France of a spyware campaign targeting their devices, according to the Computer Emergency Response Team of France (CERT-FR). The agency said the alerts were sent out on September 3, 2025, making it the fourth time this year that Apple has notified citizens in the county that at least one of…

  • Without Federal Help, Cyber Defense Is Up to the Rest of Us

    Without Federal Help, Cyber Defense Is Up to the Rest of Us

    September 12, 2025
    Cyber News

    Together, we can foster a culture of collaboration and vigilance, ensuring that we are not just waiting for a hero to save us, but actively working to protect ourselves and our communities. ​ ​ ​Read More

  • Cloud-Native Security in 2025: Why Runtime Visibility Must Take Center Stage

    Cloud-Native Security in 2025: Why Runtime Visibility Must Take Center Stage

    September 12, 2025
    Cyber News

    The security landscape for cloud-native applications is undergoing a profound transformation. Containers, Kubernetes, and serverless technologies are now the default for modern enterprises, accelerating delivery but also expanding the attack surface in ways traditional security models can’t keep up with. As adoption grows, so does complexity. Security teams are asked to monitor sprawling hybrid ​…

Previous Page
1 … 18 19 20 21 22 … 28
Next Page
Secure Cyber Labs | Cybersecurity Resources by DrewNet Cybersecurity

Secure Cyber Labs | Cybersecurity Resources by DrewNet Cybersecurity

Privacy Policy

  • Facebook
  • X
  • LinkedIn