Tag: cyber
-
Digitale Souveränität: TeleTrusT aktualisiert Positionspapier und fordert klare Impulse aus der Politik
Deutschlands digitale Sicherheit braucht einen Neustart strategisch, europäisch und wertebasiert. Mit dem überarbeiteten Positionspapier ‘Cyber-Nation” fordert der Bundesverband IT-Sicherheit (TeleTrusT) die Bundesregierung auf, endlich klare Prioritäten zu setzen. Denn in Zeiten wachsender geopolitischer Spannungen, neuer EU-Gesetze und technologischer Abhängigkeiten ist ein souveräner Umgang mit IT-Sicherheit überfällig. First seen on itsicherheit-online.com Jump to article: www.itsicherheit-online.com/news/security-management/digitale-souveraenitaet-teletrust-aktualisiert-positionspapier-und-fordert-klare-impulse-aus-der-politik/
-
Cellcom Confirms Cybersecurity Breach After Network Failure
Cellcom/Nsight has officially confirmed a cyberattack as the cause of a five-day service disruption affecting customers across its network. In an official statement released today, company leadership acknowledged the incident while assuring customers that sensitive personal information appears to remain secure. The telecommunications provider, with a 115-year history as a local telephone service, has reported…
-
Scattered Spider is focus of NCA inquiry into cyber-attacks against UK retailers
Detectives say English-speaking hacker community a key suspect after M&S, Co-op and Harrods targeted<ul><li><a href=”https://www.theguardian.com/business/live/2025/may/21/uk-inflation-forecast-jumped-april-higher-household-bills-reeves-g7-canada-business-live”>Business live latest updates</li></ul>A hacker community known as Scattered Spider is a key suspect in a criminal inquiry into cyber-attacks against UK retailers including Marks & Spencer, detectives have said.Scattered Spider, a loose collective of native English-speaking cybercriminals, has been strongly…
-
Over 1.5 Million Indian Websites Targeted in Coordinated Attacks
In a significant escalation of cyber warfare, over 1.5 million Indian websites have been targeted in a series of coordinated cyberattacks attributed to seven Advanced Persistent Threat (APT) groups, primarily based in Pakistan. These attacks, following the Pahalgam terror strike and India’s subsequent Operation Sindoor, aimed at critical infrastructure and government websites across the country.…
-
Navigating the Digital Seas: Addressing Cybersecurity Challenges in Maritime Shipping
The maritime industry is undergoing a significant digital transformation, integrating advanced technologies to enhance efficiency and connectivity. However, this digital evolution brings forth escalating cybersecurity risks that cannot be overlooked. The Rising Tide of Cyber Threats A recent report by Thetius highlights the increasing vulnerability of maritime operations to cyber threats, while the Allianz Risk…
-
India Launches e-Zero FIR System to Fast-Track Financial Cybercrime Cases
Indian Ministry of Home Affairs (MHA) has introduced the e-Zero FIR system, a digital-forward solution to ensure justice for victims of financial cybercrimes. Announced by India’s Union Home Minister and Minister of Cooperation Amit Shah on May 19, 2025, this initiative is part of the government’s Cyber Secure Bharat initiative. First seen on thecyberexpress.com Jump…
-
LockBit Internal Data Leak Reveals Payload Creation Methods and Ransom Demands
Tags: breach, cyber, data, data-breach, group, infrastructure, Internet, leak, lockbit, ransom, ransomware, service, tacticsThe notorious ransomware group LockBit inadvertently suffered a major data breach, exposing the inner workings of their ransomware-as-a-service (RaaS) operations. This leak, which surfaced on the internet after remaining undetected for months, has offered invaluable insights into the group’s internal processes, from ransomware payload creation to negotiation tactics with victims. Glimpse into LockBit’s Infrastructure The…
-
Ivanti EPMM 0-Day RCE Vulnerability Under Active Attack
Tags: attack, authentication, cyber, endpoint, flaw, ivanti, mobile, rce, remote-code-execution, vulnerability, zero-dayIvanti’s Endpoint Manager Mobile (EPMM) contains a critical vulnerability chain that has been actively abused. The vulnerabilities, initially disclosed by Ivanti on March 13th, 2025, combine an authentication bypass (CVE-2025-4427) and a remote code execution flaw (CVE-2025-4428) to create a critical attack vector that allows unauthenticated attackers to execute arbitrary code on vulnerable systems. While…
-
M&S Braces for £300 Million Cyber-Attack Costs
An M&S trading update estimates the ongoing cyber-incident will cost £300m, largely from lost sales due to the suspension of online orders First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/ms-300million-cyber-costs/
-
Kettering Health Experiences System-Wide Outage Due to Ransomware Attack
Kettering Health, a major healthcare provider, has been hit by what appears to be a ransomware attack causing a system-wide technology outage that has severely limited access to critical patient care systems. The attack, which began early Tuesday, May 20, has forced the organization to cancel all elective procedures and has impacted their call center…
-
Atlassian Alerts Users to Multiple Critical Vulnerabilities Affecting Data Center Server
Atlassian has released its May 2025 Security Bulletin addressing eight high-severity vulnerabilities affecting multiple enterprise products in its Data Center and Server offerings. The vulnerabilities, discovered through Atlassian’s Bug Bounty program, penetration testing processes, and third-party library scans, pose significant security risks including denial-of-service (DoS) attacks and privilege escalation. All identified issues have been patched…
-
Cybercriminals Could Leverage Google Cloud Platform for Malicious Activities
A Research by Tenable and Cisco Talos has shed light on a critical vulnerability in Google Cloud Platform’s (GCP) Cloud Functions and Cloud Build services, revealing a potential attack vector for cybercriminals. According to Tenable, the default Cloud Build Service Account (SA) previously granted excessive permissions during the deployment of Cloud Functions, a serverless compute…
-
Malicious Hackers Create Fake AI Tool to Exploit Millions of Users
A concerning development in the field of cybersecurity is the initiation of a sophisticated campaign by hostile actors posing as Kling AI, a well-known AI-powered picture and video synthesis platform that has amassed 6 million users since its June 2024 launch. According to the Report , Uncovered by Check Point Research (CPR) in early 2025,…
-
New Phishing Attack Uses AES Malicious npm Packages to Office 365 Login Credentials
Fortra’s Suspicious Email Analysis (SEA) team uncovered a highly sophisticated phishing campaign targeting Microsoft Office 365 (O365) credentials. Unlike typical phishing attempts, this attack stood out due to its intricate use of modern technologies and developer infrastructure. The threat actors employed a multi-layered strategy involving AES (Advanced Encryption Standard) encryption, malicious npm (Node Package Manager)…
-
Attaxion Leads the Way as First EASM Platform to Integrate ENISA’s EU Vulnerability Database (EUVD)
Attaxion, the external attack surface management (EASM) vendor with industry-leading asset coverage, announces the integration of the European Vulnerability Database (EUVD) into its platform. Operated by the European Union Agency for Cybersecurity (ENISA), theEUVDis a publicly accessible vulnerability repository developed in response to the NIS2 Directive. It entered beta testing in mid-April 2025. The database…
-
Critical Vulnerability in Lexmark Printers Enables Remote Code Execution
Security researchers from DEVCORE discovered the vulnerability through Trend Micro’s Zero Day Initiative (ZDI), marking the third major printer firmware flaw disclosed in 2025 following similar incidents affecting HP and Canon devices. Critical security vulnerability affecting over 150 Lexmark printer and multifunction device models enables remote attackers to execute malicious code on unpatched systems through…
-
Hazy Hawk Targets DNS Vulnerabilities to Hijack Cloud Resources and Spread Malware
The threat actor gained attention in February 2025 after successfully hijacking a subdomain of the U.S. Centers for Disease Control and Prevention (CDC). Sophisticated threat actor dubbed >>Hazy Hawk
-
M&S expects cyber-attack to last into July and cost £300m in lost profits
Hack on IT systems since Easter weekend has forced M&S to halt online orders and left it struggling to stack shelvesMarks & Spencer has said it will take an estimated £300m hit to profits this year from a damaging cyber-attack that it expects will disrupt its online business into July.The number was revealed as M&S…
-
Critical Vulnerability in Palo Alto GlobalProtect Gateway Portal Enables Remote Code Execution
Palo Alto Networks has assigned the vulnerability aLOW severity ratingbut urges administrators to apply patches by upgrading to fixed PAN-OS versions, with timelines extending through August 2025. Reflected cross-site scripting (XSS) vulnerability in Palo Alto Networks’ GlobalProtect gateway and portal features (CVE-2025-0133) has been disclosed, enabling attackers to execute malicious JavaScript in authenticated users’ browsers.…
-
Threat intelligence platform buyer’s guide: Top vendors, selection advice
Tags: ai, attack, automation, breach, cloud, computing, credentials, crowdstrike, cyber, cybersecurity, dark-web, data, data-breach, deep-fake, detection, dns, edr, email, endpoint, exploit, finance, firewall, fraud, gartner, google, group, guide, identity, incident response, infrastructure, intelligence, kubernetes, law, malicious, malware, microsoft, mitigation, monitoring, network, open-source, phishing, privacy, risk, service, siem, soar, soc, sophos, sql, supply-chain, technology, threat, tool, vpn, vulnerability, zero-dayThe Cybersecurity and Infrastructure Security Agency (CISA) found that since 2023 the majority of exploits were zero days, meaning exploiting heretofore unknown methods. And according to the latest Verizon Data Breach Investigations report (DBIR), the percentage of AI-assisted malicious emails doubled to 10% of the totals they observed over the past two years, making staying…
-
Critical VMware ESXi vCenter Flaw Allows Remote Execution of Arbitrary Commands
VMware by Broadcom has released critical security updates to address multiple severe vulnerabilities affecting its virtualization products, with evidence suggesting active exploitation in the wild. The vulnerabilities, tracked as CVE-2025-22224, CVE-2025-22225, and CVE-2025-22226, affect VMware ESXi, Workstation, Fusion, Cloud Foundation, and Telco Cloud Platform products. With CVSS scores ranging from 7.1 to 9.3, these flaws…
-
Marks & Spencer expects £300m hit in lost profits from cyber-attack
Hack on IT systems since Easter weekend has forced halt to online orders and left M&S struggling to stack shelvesMarks & Spencer has said it will lose an estimated £300m as a result of a damaging cyber-attack that has forced it to <a href=”https://www.theguardian.com/business/2025/apr/25/marks-and-spencer-pauses-online-orders-cyber-attack-fallout”>halt online orders and struggle to keep store shelves stocked.The number was…
-
What good threat intelligence looks like in practice
In this Help Net Security interview, Anuj Goel, CEO of Cyware, discusses how threat intelligence is no longer a nice to have, it’s a core cyber defense requirement. But … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2025/05/21/anuj-goel-cyware-good-threat-intelligence/
-
Cyberangriff auf eine Notrufzentrale in Alabama, USA
Morgan County 911 Cyber attack leaves systems down for days First seen on whnt.com Jump to article: whnt.com/news/decatur/morgan-county-911-cyber-attack-leaves-systems-down-for-days/
-
Third-party cyber risks and what you can do
When a third-party tech vendor suffers a cyber incident, your business can feel the effects immediately. That’s why it’s crucial to treat vendor risk as part of your … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2025/05/21/third-party-cyber-risks-video/
-
Nation-state APTs ramp up attacks on Ukraine and the EU
Russian APT groups intensified attacks against Ukraine and the EU, exploiting zero-day vulnerabilities and deploying wipers, according to ESET. Ukraine faces rising cyber … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2025/05/21/apt-groups-attacks-eu-ukraine/
-
Ransomware bei einem Logistikunternehmen in England
Supplier to major supermarkets hit by cyber attack First seen on bbc.com Jump to article: www.bbc.com/news/articles/czr88myp570o
-
Asia Produces More APT Actors, As Focus Expands Globally
China and North Korea-aligned groups account for more than half of global attacks, and an increasing number of countries look to cyber to balance power in the region. First seen on darkreading.com Jump to article: www.darkreading.com/cyber-risk/asia-apt-actors-focus-expands-globally
-
CloudSEK Secures $19M to Advance Predictive Cyber Threat Intelligence
First seen on scworld.com Jump to article: www.scworld.com/brief/cloudsek-secures-19m-to-advance-predictive-cyber-threat-intelligence

