
Month: March 2025
-
PhaaS actor uses DoH and DNS MX to dynamically distribute phishing
Infoblox discovered a phishing kit that creatively employs DNS mail exchange (MX) records to dynamically serve fake, tailored, login pages,…
-
Gamaredon campaign abuses LNK files to distribute Remcos backdoor
A campaign targeting users in Ukraine with malicious LNK files has been observed since November 2024. The files, using Russian…
-
Shoot the Messenger, Sunday Edition: Reporting on a leak is not unethical, Hamilton County
On March 26, DataBreaches linked to reporting by the Chattanooga Times Free Press. Their report indicated that the local government…
-
German Doner Kebab – 162,373 breached accounts
In response to evolving concerns around copyright, data ownership, and the ethical use of AI, we are updating how we…
-
Microsoft’s killing script used to avoid Microsoft Account in Windows 11
Microsoft has removed the ‘BypassNRO.cmd’ script from Windows 11 preview builds, which allowed users to bypass the requirement to…
-
New Crocodilus malware steals Android users’ crypto wallet keys
A newly discovered Android malware dubbed Crocodilus tricks users into providing the seed phrase for the cryptocurrency wallet using a…
-
Microsoft tests new Windows 11 tool to remotely fix boot crashes
Microsoft has begun testing a new Windows 11 tool called Quick Machine Recovery, which is designed to remotely deploy…
-
GSA reopens its Deferred Resignation Program and finalizes location consolidation
GSA reopens its Deferred Resignation Program and finalizes location consolidation=================================================================================…
-
Hackers Employ New ClickFix Captcha Technique to Deliver Ransomware
A sophisticated [social engineering](https://cybersecuritynews.com/social-engineering/) technique known as ClickFix has emerged, leveraging fake CAPTCHA verification processes to deceive users into executing…
-
Apache Tomcat Vulnerability (CVE-2025-24813) Exploited to Execute Code on Servers
A critical vulnerability in Apache Tomcat has been actively exploited by attackers to achieve [remote code execution (RCE](https://cyberpress.org/advanced-linux-backdoor-exploits-0-day-rce/)) on vulnerable…

