Skip to content
November 12, 2025
  • CVE-2025-10547: DrayOS WebUI Flaw Allows Hackers Full Control
  • BitLocker Encryption Bypassed: TPM SPI Attack on PIN Method
  • Your Small AD Blueprint: LAPS, Tiering, and PtH Control
  • Google Warns of ‘AI Psychosis’ in New Safety Report

Security Pulse

SecurityPulse delivers the latest cybersecurity news, threat updates, expert analysis, and digital security tips to help you stay ahead of cyber risks.

newsubscription
Random News
  • Cyber Topics
    • Privacy
  • Cyber Attacks
  • Vulnerabilities
  • Zero Days
  • Malware
  • IOT Security
  • Mobile Security
  • Web Security
  • AI
  • Bug Hunting
    • Privacy Policy
  • Security Tools
Headlines
  • U.S. courthouse exterior symbolizing legal ruling against NSO Group’s WhatsApp spyware targeting

    NSO Group Loses U.S. Court Case on WhatsApp Hacking Claims

    3 weeks ago3 weeks ago
  • DraftKings credential-stuffing breach exposing customer data and betting account information

    DraftKings Accounts Targeted in Credential-Stuffing Wave

    1 month ago1 month ago
  • Chrome zero-day exploited to install Memento spyware on enterprise endpoints

    Chrome Sandbox Escape Leads to Memento Spyware Implants

    2 weeks ago2 weeks ago
  • Hackers exploit zero-day vulnerability in Gladinet CentreStack file-sharing software

    Gladinet File-Sharing Platforms Targeted in Zero-Day Campaign

    1 month ago1 month ago
  • South Korean repatriated detainees arriving at Incheon Airport escorted by security officers after Cambodia online scam arrests

    Seoul Investigates Returnees Linked to Cambodian Scam Network

    4 weeks ago4 weeks ago
  • Australia considers GitHub age restriction for child safety

    Australia May Restrict GitHub for Kids Under 16

    2 months ago2 months ago
WireTap attack with DDR4 bus interposer extracting Intel SGX attestation key
  • Malware
  • vulnerability

Beyond Speculation: Physical DDR4 Tap Undercuts SGX Security

yohanmanuja1 month ago1 month ago03 mins

WireTap shows how a passive DDR4 interposer can recover Intel SGX attestation keys under physical access. The attack reframes trust in SGX-based services and demands stronger physical and cryptographic safeguards.

Read More
Teams client showing “In the office” status after connecting to corporate Wi-Fi, with a subtle building icon indicating building-level presence
  • LATEST

Microsoft Teams Location Updates: What It Means for Privacy

yohanmanuja2 weeks ago2 weeks ago14 mins

Teams will auto-detect work location via corporate Wi-Fi with user consent. Learn what ships, how it works, and how to set policy and privacy guardrails.

Read More
DrayOS router vulnerability CVE-2025-10547 under active threat
  • LATEST
  • vulnerability

CVE-2025-10547: DrayOS WebUI Flaw Allows Hackers Full Control

yohanmanuja1 month ago1 month ago03 mins

CVE-2025-10547, a vulnerability in DrayOS routers, can lead to remote code execution via the WebUI. Administrators should patch and disable external access immediately.

Read More
LockBit 5.0 ransomware cross-platform Windows Linux ESXi attack
  • LATEST
  • Malware
  • Ransomware
  • vulnerability

LockBit 5.0 Ransomware Variant Targets Hypervisors and Servers

yohanmanuja2 weeks ago2 weeks ago14 mins

The latest version of the ransomware family known as LockBit has resurfaced with a potent new variant, LockBit 5.0, capable of striking Windows endpoints, Linux servers and VMware ESXi hypervisor platforms in one campaign. Organisations must reassess their ransomware defences and detection posture now.

Read More
Illustration showing YouTube logo with malware download links emerging from
  • LATEST
  • Malware
  • vulnerability

YouTube Malware Campaign Uses 3,000+ Compromised Videos

yohanmanuja3 weeks ago3 weeks ago04 mins

Threat actors behind a coordinated network on YouTube have uploaded over 3,000 videos that masquerade as software tutorials and cheat walkthroughs, yet lead to credential‐stealer malware downloads. The operation uses compromised channels, fake engagement and download links to evade detection posing a new category of platform-based threat for security teams.

Read More
Android banking trojan using hidden VNC and overlay attacks
  • LATEST
  • Malware
  • National Security

Banking Trojan Adds Hidden VNC Full Remote Control for Attackers

yohanmanuja1 month ago53 mins

A newly discovered Android banking trojan combines overlay attacks with a stealthy hidden VNC server to gain full remote control over compromised devices.

Read More
Map showing Oracle-linked hacking campaign targeting global organizations.
  • Bypass
  • Data Breaches
  • vulnerability

Google Issues Warning on Expanding Oracle-Linked Threat Activity

yohanmanuja1 month ago1 month ago14 mins

Google has disclosed a widespread Oracle-linked hacking campaign impacting dozens of organizations across sectors including energy, tech, and logistics. The operation, active since mid-2025, exploited software integrations between vendors and clients marking one of the year’s most significant supply chain cyberattacks.

Read More
Cyber-espionage campaign architecture showing Neursite and NeuralExecutor implant workflow
  • LATEST
  • Malware
  • vulnerability

PassiveNeuron APT Exposed: Inside Neursite Malware

yohanmanuja3 weeks ago3 weeks ago04 mins

A sophisticated new espionage campaign, tracked as PassiveNeuron, uses novel malware families Neursite and NeuralExecutor to target government and industrial networks across Latin America and East Asia. This article breaks down the tools, techniques and defensive steps security teams must act on now.

Read More
Cisco firewall under attack, illustrative exploit boundary overflow
  • LATEST
  • vulnerability
  • Zeroday

Cisco Firewall Vulnerability CVE-20333 Allows RCE — Update Now

yohanmanuja1 month ago1 month ago23 mins

A 0-day buffer overflow vulnerability in Cisco ASA and FTD devices, exploitable via WebVPN, allows unauthenticated remote code execution. Cisco has released patches and issued guidance for mitigation.

Read More
Police officers inspect seized SIM modems and GSM gateways after Operation SIMCARTEL takedown
  • LATEST
  • Malware
  • vulnerability

Europol Raid Ends Multi-Nation SIM-Farm Used for SMS Phishing

yohanmanuja3 weeks ago3 weeks ago53 mins

Europol has shut down a cross-border SIM-farm network used to automate smishing and VoIP fraud, seizing equipment, servers, and arresting dozens of operators.

Read More
  • 1
  • 2
  • 3
  • 4
  • …
  • 23
Newsmatic - News WordPress Theme 2025. Powered By BlazeThemes.
  • Cyber Topics
  • Cyber Attacks
  • Vulnerabilities
  • Zero Days
  • Malware
  • IOT Security
  • Mobile Security
  • Web Security
  • AI
  • Bug Hunting
  • Security Tools
English (United States)
English (UK)