Latest Cybersecurity News and Articles


Over 1,000 WordPress Sites Infected with JavaScript Backdoors Enabling Persistent Attacker Access

06 March 2025
Over 1,000 websites powered by WordPress have been infected with a third-party JavaScript code that injects four separate backdoors. "Creating four backdoors facilitates the attackers having multiple points of re-entry should one be detected and removed," c/side researcher Himanshu Anand said in a Wednesday analysis. The malicious JavaScript code has been found to be served via cdn.csyndication[

Exploited VMware ESXi Flaws Put Many at Risk of Ransomware, Other Attacks

06 March 2025
Scans show that tens of thousands of VMware ESXi instances are affected by CVE-2025-22224 and other vulnerabilities disclosed recently as zero-days. The post Exploited VMware ESXi Flaws Put Many at Risk of Ransomware, Other Attacks appeared first on SecurityWeek.

IT trends: 60% of IT professionals are experiencing burnout

06 March 2025
A report on the state of IT work shares notable trends and challenges IT teams are facing. 

U.S. Charges 12 Chinese Nationals in State-Backed Hacking Operations

06 March 2025
The U.S. Department of Justice (DoJ) has announced charges against 12 Chinese nationals for their alleged participation in a wide-ranging scheme designed to steal data and suppress free speech and dissent globally. The individuals include two officers of the People's Republic of China's (PRC) Ministry of Public Security (MPS), eight employees of an ostensibly private PRC company, Anxun

US Indicts China’s iSoon ‘Hackers-for-Hire’ Operatives 

05 March 2025
i-Soon employees charged with conducting extensive hacking campaigns on behalf of Beijing’s security services. The post US Indicts China’s iSoon ‘Hackers-for-Hire’ Operatives  appeared first on SecurityWeek.

CTOs fall victim to breaches more often than other c-suite roles

05 March 2025
Nearly 100% of c-level executives have had information exposed in a data breach, with an average of 43 data breaches or compilations per executive.

SpecterOps Scores $75M Series B to Scale BloodHound Enterprise Platform 

05 March 2025
SpecterOps has raised an unusually large $75 million Series B funding round to accelerate the growth of its BloodHound Enterprise platform.  The post SpecterOps Scores $75M Series B to Scale BloodHound Enterprise Platform  appeared first on SecurityWeek.

Vishing attacks increased by 442% in the second half of 2024

05 March 2025
Vishing attacks rose by 442% from the first half of 2024 to the second. 

China Hackers Behind US Treasury Breach Caught Targeting IT Supply Chain

05 March 2025
Silk Typhoon APT caught using IT supply chain entry points to conduct reconnaissance, siphon data, and move laterally on victim networks. The post China Hackers Behind US Treasury Breach Caught Targeting IT Supply Chain appeared first on SecurityWeek.

China-Linked Silk Typhoon Expands Cyber Attacks to IT Supply Chains for Initial Access

05 March 2025
The China-lined threat actor behind the zero-day exploitation of security flaws in Microsoft Exchange servers in January 2021 has shifted its tactics to target the information technology (IT) supply chain as a means to obtain initial access to corporate networks. That's according to new findings from the Microsoft Threat Intelligence team, which said the Silk Typhoon (formerly Hafnium) hacking

Bay Cove Human Services suffers data breach

05 March 2025
Bay Cove Human Services has provided notice of a data breach that may have affected personal and/or protected health information.

Defending against USB drive attacks with Wazuh

05 March 2025
USB drive attacks constitute a significant cybersecurity risk, taking advantage of the everyday use of USB devices to deliver malware and circumvent traditional network security measures. These attacks lead to data breaches, financial losses, and operational disruptions, with lasting impacts on an organization's reputation. An example is the Stuxnet worm discovered in 2010, a malware designed to

Iranian Hackers Target UAE Firms With Polyglot Files

05 March 2025
An Iranian threat actor was seen targeting UAE organizations with polyglot files to deliver a new backdoor named Sosano. The post Iranian Hackers Target UAE Firms With Polyglot Files appeared first on SecurityWeek.

Dark Caracal Uses Poco RAT to Target Spanish-Speaking Enterprises in Latin America

05 March 2025
The threat actor known as Dark Caracal has been attributed to a campaign that deployed a remote access trojan called Poco RAT in attacks targeting Spanish-speaking targets in Latin America in 2024. The findings come from Russian cybersecurity company Positive Technologies, which described the malware as loaded with a "full suite of espionage features." "It could upload files, capture screenshots

Google Rolls Out AI Scam Detection for Android to Combat Conversational Fraud

05 March 2025
Google has announced the rollout of artificial intelligence (AI)-powered scam detection features to secure Android device users and their personal information. "These features specifically target conversational scams, which can often appear initially harmless before evolving into harmful situations," Google said. "And more phone calling scammers are using spoofing techniques to hide their real

North Korean Fake IT Workers Pose as Blockchain Developers on GitHub

05 March 2025
North Korean fake IT workers are creating personas on GitHub to land blockchain developer jobs at US and Japanese firms. The post North Korean Fake IT Workers Pose as Blockchain Developers on GitHub appeared first on SecurityWeek.

Two Venezuelans Arrested in US for ATM Jackpotting

05 March 2025
Several Venezuelans have been arrested and charged in the US in recent months for their role in ATM jackpotting schemes. The post Two Venezuelans Arrested in US for ATM Jackpotting appeared first on SecurityWeek.

Ransomware Group Claims Attack on Tata Technologies

05 March 2025
Notorious ransomware group Hunters International threatens to leak 1.4 TB of data allegedly stolen from Tata Technologies. The post Ransomware Group Claims Attack on Tata Technologies appeared first on SecurityWeek.

Chrome 134, Firefox 136 Patch High-Severity Vulnerabilities

05 March 2025
Chrome 134 and Firefox 136 are rolling out across desktop and mobile with patches for multiple high-severity vulnerabilities. The post Chrome 134, Firefox 136 Patch High-Severity Vulnerabilities appeared first on SecurityWeek.

Chinese APT Lotus Panda Targets Governments With New Sagerunex Backdoor Variants

05 March 2025
The threat actor known as Lotus Panda has been observed targeting government, manufacturing, telecommunications, and media sectors in the Philippines, Vietnam, Hong Kong, and Taiwan with updated versions of a known backdoor called Sagerunex. "Lotus Blossom has been using the Sagerunex backdoor since at least 2016 and is increasingly employing long-term persistence command shells and developing