Secure Cyber Labs | Cybersecurity Resources by DrewNet Cybersecurity

Secure Cyber Labs | Cybersecurity Resources by DrewNet Cybersecurity

  • Home
  • Toolkit
  • About
  • Services
  • Cybersecurity News
  • Contact
  • Facebook
  • X
  • LinkedIn
  • Packer-as-a-Service Shanya Hides Ransomware, Kills EDR

    Packer-as-a-Service Shanya Hides Ransomware, Kills EDR

    December 9, 2025
    Cyber News

    Shanya is the latest in an emerging field of packing malware, selling obfuscation functionality in order to help ransomware actors reach their target. ​ ​ ​Read More

  • Apache Issues Max-Severity Tika CVE After Patch Miss

    Apache Issues Max-Severity Tika CVE After Patch Miss

    December 8, 2025
    Cyber News

    The Apache Software Foundation’s earlier fix for a critical Tika flaw missed the full scope of the vulnerability, prompting an updated advisory and CVE. ​ ​ ​Read More

  • Exploitation Activity Ramps Up Against React2Shell

    Exploitation Activity Ramps Up Against React2Shell

    December 8, 2025
    Cyber News

    Attacks against CVE-2025-55182, which began almost immediately after public disclosure last week, have increased as more threat actors take advantage of the flaw. ​ ​ ​Read More

  • US Treasury Tracks $4.5B in Ransom Payments since 2013

    US Treasury Tracks $4.5B in Ransom Payments since 2013

    December 8, 2025
    Cyber News

    The US Treasury’s Financial Crimes Enforcement Network shared data showing how dramatically ransomware attacks have changed over time. ​ ​ ​Read More

  • Experts Confirm JS#SMUGGLER Uses Compromised Sites to Deploy NetSupport RAT

    Experts Confirm JS#SMUGGLER Uses Compromised Sites to Deploy NetSupport RAT

    December 8, 2025
    Cyber News

    Cybersecurity researchers are calling attention to a new campaign dubbed JS#SMUGGLER that has been observed leveraging compromised websites as a distribution vector for a remote access trojan named NetSupport RAT. The attack chain, analyzed by Securonix, involves three main moving parts: An obfuscated JavaScript loader injected into a website, an HTML Application (HTA) that runs…

  • Researchers Uncover 30+ Flaws in AI Coding Tools Enabling Data Theft and RCE Attacks

    Researchers Uncover 30+ Flaws in AI Coding Tools Enabling Data Theft and RCE Attacks

    December 6, 2025
    Cyber News

    Over 30 security vulnerabilities have been disclosed in various artificial intelligence (AI)-powered Integrated Development Environments (IDEs) that combine prompt injection primitives with legitimate features to achieve data exfiltration and remote code execution. The security shortcomings have been collectively named IDEsaster by security researcher Ari Marzouk (MaccariTA). They affect popular ​ ​ ​Read More

  • Drones to Diplomas: How Russia’s Largest Private University is Linked to a $25M Essay Mill

    Drones to Diplomas: How Russia’s Largest Private University is Linked to a $25M Essay Mill

    December 6, 2025
    Cyber News

    A sprawling academic cheating network turbocharged by Google Ads that has generated nearly $25 million in revenue has curious ties to a Kremlin-connected oligarch whose Russian university builds drones for Russia’s war against Ukraine. The Nerdify homepage. The link between essay mills and Russian attack drones might seem improbable, but understanding it begins with a…

  • Critical React2Shell Flaw Added to CISA KEV After Confirmed Active Exploitation

    Critical React2Shell Flaw Added to CISA KEV After Confirmed Active Exploitation

    December 6, 2025
    Cyber News

    The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday formally added a critical security flaw impacting React Server Components (RSC) to its Known Exploited Vulnerabilities (KEV) catalog following reports of active exploitation in the wild. The vulnerability, CVE-2025-55182 (CVSS score: 10.0), relates to a case of remote code execution that could be triggered by…

  • Rust Code Delivers Better Security, Also Streamlines DevOps

    Rust Code Delivers Better Security, Also Streamlines DevOps

    December 5, 2025
    Cyber News

    Software teams at Google and other Rust adopters see safer code when using the memory-safe language, and also fewer rollbacks and less code review. ​ ​ ​Read More

  • India Rolls Back App Mandate Amid Surveillance Concerns

    India Rolls Back App Mandate Amid Surveillance Concerns

    December 5, 2025
    Cyber News

    Remember when Apple put that U2 album in everyone’s music libraries? India wanted to do that to all of its citizens, but with a cybersecurity app. It wasn’t a good idea. ​ ​ ​Read More

Previous Page
1 … 3 4 5 6 7 … 45
Next Page
Secure Cyber Labs | Cybersecurity Resources by DrewNet Cybersecurity

Secure Cyber Labs | Cybersecurity Resources by DrewNet Cybersecurity

Privacy Policy

  • Facebook
  • X
  • LinkedIn