Secure Cyber Labs | Cybersecurity Resources by DrewNet Cybersecurity

Secure Cyber Labs | Cybersecurity Resources by DrewNet Cybersecurity

  • Home
  • Toolkit
  • About
  • Services
  • Cybersecurity News
  • Contact
  • Facebook
  • X
  • LinkedIn
  • Critical Fortinet FortiWeb WAF Bug Exploited in the Wild

    November 17, 2025
    Cyber News

    The vulnerability could allow an unauthenticated attacker to remotely execute administrative commands. ​ ​ ​Read More

  • New EVALUSION ClickFix Campaign Delivers Amatera Stealer and NetSupport RAT

    November 17, 2025
    Cyber News

    Cybersecurity researchers have discovered malware campaigns using the now-prevalent ClickFix social engineering tactic to deploy Amatera Stealer and NetSupport RAT. The activity, observed this month, is being tracked by eSentire under the moniker EVALUSION. First spotted in June 2025, Amatera is assessed to be an evolution of ACR (short for “AcridRain”) Stealer, which was available…

  • Cursor Issue Paves Way for Credential-Stealing Attacks

    November 17, 2025
    Cyber News

    Researchers discovered a security weakness in the AI-powered coding tool that allows malicious MCP server to hijack Cursor’s internal browser. ​ ​ ​Read More

  • ⚡ Weekly Recap: Fortinet Exploited, China’s AI Hacks, PhaaS Empire Falls & More

    November 17, 2025
    Cyber News

    This week showed just how fast things can go wrong when no one’s watching. Some attacks were silent and sneaky. Others used tools we trust every day — like AI, VPNs, or app stores — to cause damage without setting off alarms. It’s not just about hacking anymore. Criminals are building systems to make money,…

  • RondoDox Exploits Unpatched XWiki Servers to Pull More Devices Into Its Botnet

    November 15, 2025
    Cyber News

    The botnet malware known as RondoDox has been observed targeting unpatched XWiki instances against a critical security flaw that could allow attackers to achieve arbitrary code execution. The vulnerability in question is CVE-2025-24893 (CVSS score: 9.8), an eval injection bug that could allow any guest user to perform arbitrary remote code execution through a request…

  • Five Plead Guilty in U.S. for Helping North Korean IT Workers Infiltrate 136 Companies

    November 15, 2025
    Cyber News

    The U.S. Department of Justice (DoJ) on Friday announced that five individuals have pleaded guilty to assisting North Korea’s illicit revenue generation schemes by enabling information technology (IT) worker fraud in violation of international sanctions. The five individuals are listed below – Audricus Phagnasay, 24 Jason Salazar, 30 Alexander Paul Travis, 34 Oleksandr Didenko, 28,…

  • Akira RaaS Targets Nutanix VMs, Threatens Critical Orgs

    November 14, 2025
    Cyber News

    The Akira ransomware group has been experimenting with new tools, bugs, and attack surfaces, with demonstrated success in significant sectors. ​ ​ ​Read More

  • New Security Tools Target Growing macOS Threats

    November 14, 2025
    Cyber News

    A public dataset and platform-agnostic analysis tool aim to help organizations in the fight against Apple-targeted malware, which researchers say has lacked proper attention. ​ ​ ​Read More

  • Hardened Containers Look to Eliminate Common Source of Vulnerabilities

    November 14, 2025
    Cyber News

    A kitchen-sink approach to building containers has loaded many with vulnerabilities. A handful of companies are trying to slim them down to address the issue. ​ ​ ​Read More

  • 150,000 Packages Flood NPM Registry in Token Farming Campaign

    November 14, 2025
    Cyber News

    A self-replicating attack led to a tidal wave of malicious packages in the NPM registry, targeting tokens for the tea.xyz protocol. ​ ​ ​Read More

Previous Page
1 … 21 22 23 24 25 … 56
Next Page
Secure Cyber Labs | Cybersecurity Resources by DrewNet Cybersecurity

Secure Cyber Labs | Cybersecurity Resources by DrewNet Cybersecurity

Privacy Policy

  • Facebook
  • X
  • LinkedIn