Secure Cyber Labs | Cybersecurity Resources by DrewNet Cybersecurity

Secure Cyber Labs | Cybersecurity Resources by DrewNet Cybersecurity

  • Home
  • Toolkit
  • About
  • Services
  • Cybersecurity News
  • Contact
  • Facebook
  • X
  • LinkedIn
  • 18 Popular Code Packages Hacked, Rigged to Steal Crypto

    18 Popular Code Packages Hacked, Rigged to Steal Crypto

    September 8, 2025
    Cyber News

    At least 18 popular JavaScript code packages that are collectively downloaded more than two billion times each week were briefly compromised with malicious software today, after a developer involved in maintaining the projects was phished. The attack appears to have been quickly contained and was narrowly focused on stealing cryptocurrency. But experts warn that a…

  • ‘MostereRAT’ Malware Blends In, Blocks Security Tools

    ‘MostereRAT’ Malware Blends In, Blocks Security Tools

    September 8, 2025
    Cyber News

    A threat actor is using a sophisticated EDR-killing malware tool in a campaign to maintain long-term, persistent access on Windows systems. ​ ​ ​Read More

  • Salesloft Breached via GitHub Account Compromise

    Salesloft Breached via GitHub Account Compromise

    September 8, 2025
    Cyber News

    The breach kickstarted a massive supply chain attack that led to the compromise of hundreds of Salesforce instances through stolen OAuth tokens. ​ ​ ​Read More

  • Noisy Bear Targets Kazakhstan Energy Sector With BarrelFire Phishing Campaign

    Noisy Bear Targets Kazakhstan Energy Sector With BarrelFire Phishing Campaign

    September 6, 2025
    Cyber News

    A threat actor possibly of Russian origin has been attributed to a new set of attacks targeting the energy sector in Kazakhstan. The activity, codenamed Operation BarrelFire, is tied to a new threat group tracked by Seqrite Labs as Noisy Bear. The threat actor has been active since at least April 2025. “The campaign is…

  • Malicious npm Packages Impersonate Flashbots, Steal Ethereum Wallet Keys

    Malicious npm Packages Impersonate Flashbots, Steal Ethereum Wallet Keys

    September 6, 2025
    Cyber News

    A new set of four malicious packages have been discovered in the npm package registry with capabilities to steal cryptocurrency wallet credentials from Ethereum developers. “The packages masquerade as legitimate cryptographic utilities and Flashbots MEV infrastructure while secretly exfiltrating private keys and mnemonic seeds to a Telegram bot controlled by the threat actor,” Socket researcher…

  • GOP Cries Censorship Over Spam Filters That Work

    GOP Cries Censorship Over Spam Filters That Work

    September 6, 2025
    Cyber News

    The chairman of the Federal Trade Commission (FTC) last week sent a letter to Google’s CEO demanding to know why Gmail was blocking messages from Republican senders while allegedly failing to block similar missives supporting Democrats. The letter followed media reports accusing Gmail of disproportionately flagging messages from the GOP fundraising platform WinRed and sending…

  • How Has IoT Security Changed Over the Past 5 Years?

    How Has IoT Security Changed Over the Past 5 Years?

    September 5, 2025
    Cyber News

    Experts agree there have been subtle improvements, with new laws and applied best practices, but there is still a long way to go. ​ ​ ​Read More

  • Critical SAP S/4HANA Vulnerability Under Attack, Patch Now

    Critical SAP S/4HANA Vulnerability Under Attack, Patch Now

    September 5, 2025
    Cyber News

    Exploitation of CVE-2025-42957 requires “minimal effort” and can result in a complete compromise of the SAP system and host OS, according to researchers. ​ ​ ​Read More

  • Anyone Using Agentic AI Needs to Understand Toxic Flows

    Anyone Using Agentic AI Needs to Understand Toxic Flows

    September 5, 2025
    Cyber News

    The biggest vulnerabilities may lie at the boundaries of where the AI agent connects with the enterprise system. ​ ​ ​Read More

  • Sitecore Zero-Day Sparks New Round of ViewState Threats

    Sitecore Zero-Day Sparks New Round of ViewState Threats

    September 4, 2025
    Cyber News

    The vulnerability marks the latest example of threat actors weaponizing exposed ASP.NET machine keys for remote injection and deserialization attacks. ​ ​ ​Read More

Previous Page
1 … 54 55 56 57 58 … 62
Next Page
Secure Cyber Labs | Cybersecurity Resources by DrewNet Cybersecurity

Secure Cyber Labs | Cybersecurity Resources by DrewNet Cybersecurity

Privacy Policy

  • Facebook
  • X
  • LinkedIn