.NET SOAPwn Flaw Opens Door for File Writes and Remote Code Execution via Rogue WSDL

A critical vulnerability, known as "SOAPwn," has been identified in the .NET Framework, allowing attackers to achieve remote code execution by exploiting WSDL imports and HTTP client proxies.

700+ self-hosted Git instances battered in 0-day attacks

A 0-day bug in Gogs, a self-hosted Git service, is being actively exploited. The vulnerability (CVE-2025-8110) affects Gogs servers with open-registration enabled. Over 700 instances have been compromised, with 1,400 exposed to the internet.

New DroidLock malware locks Android devices and demands a ransom

DroidLock is a newly discovered Android malware that locks devices and demands a ransom. It specifically targets Spanish-speaking users and is distributed through malicious websites promoting fake applications.

ClickFix Social Engineering Sparks Rise of CastleLoader Attacks

A new malware campaign has been identified, utilizing ClickFix social engineering tactics to deploy the CastleLoader malware family. This campaign employs a Python-based delivery chain, replacing earlier AutoIt droppers with a compact Python loader.

WordPress Auto-Login Backdoor Disguised as JavaScript Data File

A WordPress backdoor has been discovered, disguised as a JavaScript data file, allowing attackers to automatically log into administrator accounts without credentials. This malware is hidden in a PHP file within the WordPress `wp-admin/js` directory.

Ivanti warns of critical Endpoint Manager code execution flaw

Ivanti has disclosed a critical vulnerability in its Endpoint Manager (EPM) solution, tracked as CVE-2025-10573. This flaw allows remote, unauthenticated attackers to execute arbitrary JavaScript code through cross-site scripting attacks.

Patch Tuesday: Microsoft EoP, NotePad++, Ivanti, Fortinet

December's Patch Tuesday reveals several critical vulnerabilities, including a zero-day in Microsoft's Windows Cloud Files Mini Filter Driver, a critical Notepad++ bug, and vulnerabilities in Fortinet and Ivanti products.

Critical Vulnerability in Universal Boot Loader (U-Boot) Affects Qualcomm Chips

A critical vulnerability has been identified in the Universal Boot Loader (U-Boot), affecting several Qualcomm chips. This vulnerability, CVE-2025-24857, allows improper access control for volatile memory containing boot code

Microsoft releases Windows 10 KB5071546 extended security update

Microsoft has released the Windows 10 KB5071546 extended security update, addressing 57 security vulnerabilities, including three zero-day flaws. This update is mandatory and will automatically install, prompting a restart.

Researchers spot 700 percent increase in hypervisor attacks

The cybersecurity landscape has witnessed a dramatic 700% increase in ransomware attacks targeting hypervisors, with their role in malicious encryption surging from 3% in the first half of the year to 25% in the second half.

Defend Against Threats with Cyber Fusion

Cyware is the leading provider of cyber fusion solutions that power threat intelligence sharing , end-to-end automation and 360-degree threat response.

Trending Tags