Information Security News Blog
On July 24, 2025, the cryptocurrency platform WOO X suffered a sophisticated targeted attack in which $14 million was siphoned from nine user accounts. All evidence points to the operation being orchestrated by the...
Vesta Vesta is a static analysis of vulnerabilities, Docker, and Kubernetes cluster configuration detect toolkit. It inspects Kubernetes and Docker configures cluster pods and containers with safe practices. It also analyses image or container...
Taiwanese prosecutors have filed charges against three individuals in a case involving the theft of TSMC trade secrets. Among the accused is a former TSMC employee, identified as Chen, who, after joining Japan’s Tokyo...
Microsoft has released the preliminary cumulative update KB5064081 for Windows 11 version 24H2, introducing thirty-six new features and changes, some of which are being rolled out gradually. This package is part of the optional...
Microsoft has resolved an issue in Windows 11 version 24H2 that generated false CertificateServicesClient (CertEnroll) error messages. The glitch appeared after the installation of the July preview update KB5062660 and persisted through all subsequent...
Microsoft has denied any connection between the August Windows 11 security update and the wave of complaints about storage drive failures. The investigation was prompted by reports from users claiming that, after installing patch...
Microsoft is preparing to release the next major update to Windows 11. Today, the Windows Insider team announced that Windows 11 version 25H2 has entered the Release Preview channel—the final stage before the system...
WhatsApp has patched a vulnerability in its iOS and macOS client applications that had been actively exploited in zero-day targeted attacks. The flaw enabled a “zero-click” scenario, requiring no interaction from the victim. According...
At DEF CON 2025, researchers from Akamai unveiled a study on a critical vulnerability in Windows Server 2025 known as BadSuccessor (CVE-2025-53779), which allows low-privileged users to instantly escalate their access to Domain Admin....
The Netherlands has officially disclosed a cyber-espionage campaign linked to China that has impacted critical sectors across the globe. According to the Ministry of Defense, the attacks were carried out by groups tracked under...
Villain Villain is a Windows & Linux backdoor generator and multi-session handler that allows users to connect with sibling servers (other machines running Villain) and share their backdoor sessions, handy for working as a...
Google is officially preparing to enter the blockchain market — not with an experimental service, but with its very own Layer 1 network. The new project, named Google Cloud Universal Ledger (GCUL), is positioned...