Category: Threat Intel Reports


  • ASD Warns of Ongoing BADCANDY Attacks Exploiting Cisco IOS XE Vulnerability

    ![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEivjJxC82aGCds7xQg0mAqxFwkMrJCO3JdIyu5ShCl2QYOrnrJpOdBSnJdlnN1euQiL6blI-sBypwPP-nCcWSrkvxZkNGsH1yb9zE7bgLKXOpwFvit66JlEtekICCBuPxgMY6uYJaWAMyXYmAvvdsrdjoV6qzVdSyPUjzS332wVtMWxg4AaF2DTiYrfmQQM/s790-rw-e365/cisco.jpg)The Australian Signals Directorate (ASD) has [issued](https://www.cyber.gov.au/about-us/view-all-content/alerts-and-advisories/badcandy) a bulletin about ongoing cyber attacks targeting unpatched Cisco IOS XE devices in…


  • New Kurdish Hacktivists Hezi Rash Behind 350 DDoS Attacks in 2 Months

    Total 0 Shares [0](https://www.facebook.com/sharer.php?u=https://hackread.com/kurdish-hacktivists-hezi-rash-ddos-attacks/) [0](https://twitter.com/share?&text=New%20Kurdish%20Hacktivists%20Hezi%20Rash%20Behind%20350%20DDoS%20Attacks%20in%202%20Months&via=HackRead&url=https://hackread.com/kurdish-hacktivists-hezi-rash-ddos-attacks/) [0](https://pinterest.com/pin/create/bookmarklet/?url=https://hackread.com/kurdish-hacktivists-hezi-rash-ddos-attacks/&media=https://hackread.com/wp-content/uploads/2025/11/kurdish-hacktivists-hezi-rash-ddos-attacks-2-1024×597.jpg) A new group calling itself Hezi Rash (Black Force in Kurdish) has emerged as…


  • BadCandy Webshell threatens unpatched Cisco IOS XE devices, warns Australian government

    Australia warns of attacks on unpatched Cisco IOS XE devices exploiting CVE-2023-20198, allowing BadCandy webshell install.—————————————————————————————————————————The Australian Signals Directorate (ASD)…


  • China-linked UNC6384 exploits Windows zero-day to spy on European diplomats

    A China-linked APT group UNC6384 exploits a Windows zero-day in an active cyber espionage targeting European diplomats.———————————————————————————————————————–Arctic Wolf Labs researchers…


  • Agent Session Smuggling: How Malicious AI Hijacks Victim Agents

    Security researchers have uncovered a sophisticated attack technique that exploits the trust relationships built into AI agent communication systems.The attack,…


  • Friday Squid Blogging: Giant Squid at the Smithsonian

    I can’t believe that I haven’t yet posted [this picture](https://naturalhistory.si.edu/explore/giant-squid) of a giant squid at the Smithsonian.As usual, you can…


  • Vulnerability & Patch Roundup – October 2025

    * [Security Advisory](https://blog.sucuri.net/category/security-advisory)* [Website Security](https://blog.sucuri.net/category/website-security)* [WordPress Security](https://blog.sucuri.net/category/wordpress-security)Vulnerability -& Patch Roundup — October 2025===============================================![](https://blog.sucuri.net/wp-content/uploads/2024/07/avatar_user_112_1721420180-60×60.png) [Sucuri Malware Research Team](https://blog.sucuri.net/author/malware-research)* October 31, 2025…


  • Employees are receiving renewed furlough notices as shutdown enters second month, this time without

    Employees are receiving renewed furlough notices as shutdown enters second month, this time without back pay guarantees=======================================================================================================================![Rep. Don Beyer, D-Va.,…


  • HPE security advisory (AV25-713)

    **Serial number:** AV25-713 **Date:**October 31, 2025On October 30, 2025, HPE published a security advisory to address vulnerabilities in the following…


  • Progress security advisory (AV25-712)

    **Serial number:** AV25-712 **Date:**October 31, 2025On October 29, 2025, Progress published a security advisory to address a vulnerability [](#defn-vulnerability)VulnerabilityA flaw…