03/06

https://orange-cyberdefense.github.io/ocd-mindmaps/img/mindmap_ad_dark_classic_2025.03.excalidraw.svg

https://orange-cyberdefense.github.io/ocd-mindmaps/img/mindmap_ad_dark_classic_2025.03.excalidraw.svg

Ethereum private key stealer on PyPI downloaded over 1,000 times

https://www.bleepingcomputer.com/news/security/ethereum-private-key-stealer-on-pypi-downloaded-over-1-000-times/
Ethereum private key stealer on PyPI downloaded over 1,000 times

Malicious Chrome extensions can spoof password managers in new attack

https://www.bleepingcomputer.com/news/security/malicious-chrome-extensions-can-spoof-password-managers-in-new-attack/
Malicious Chrome extensions can spoof password managers in new attack

Zen and the Art of Microcode Hacking - Google Bug Hunters

https://bughunters.google.com/blog/5424842357473280/zen-and-the-art-of-microcode-hacking
Zen and the Art of Microcode Hacking - Google Bug Hunters

Medusa Ransomware Hits 40+ Victims in 2025, Demands $100K–$15M Ransom

https://thehackernews.com/2025/03/medusa-ransomware-hits-40-victims-in.html
Medusa Ransomware Hits 40+ Victims in 2025, Demands $100K–$15M Ransom

Sitecore: Unsafe Deserialisation Again! (CVE-2025-27218) › Searchlight Cyber

https://slcyber.io/blog/sitecore-unsafe-deserialization-again-cve-2025-27218/
Sitecore: Unsafe Deserialisation Again! (CVE-2025-27218) › Searchlight Cyber

Over 37,000 VMware ESXi servers vulnerable to ongoing attacks

https://www.bleepingcomputer.com/news/security/over-37-000-vmware-esxi-servers-vulnerable-to-ongoing-attacks/
Over 37,000 VMware ESXi servers vulnerable to ongoing attacks

Sleeping Beauty: Taming CrowdStrike Falcon With One Simple Trick - SEC Consult

https://sec-consult.com/blog/detail/sleeping-beauty-taming-crowdstrike-falcon-with-one-simple-trick/
Sleeping Beauty: Taming CrowdStrike Falcon With One Simple Trick - SEC Consult

U.S. Charges 12 Chinese Nationals in State-Backed Hacking Operations

https://thehackernews.com/2025/03/us-charges-12-chinese-nationals-in.html
U.S. Charges 12 Chinese Nationals in State-Backed Hacking Operations

US seizes domain of Garantex crypto exchange used by ransomware gangs

https://www.bleepingcomputer.com/news/security/us-seizes-domain-of-garantex-crypto-exchange-used-by-ransomware-gangs/
US seizes domain of Garantex crypto exchange used by ransomware gangs

Elastic Releases Urgent Fix for Critical Kibana Vulnerability Enabling Remote Code Execution

https://thehackernews.com/2025/03/elastic-releases-urgent-fix-for.html
Elastic Releases Urgent Fix for Critical Kibana Vulnerability Enabling Remote Code Execution

Stealers and backdoors are spreading under the guise of a DeepSeek client | Securelist

https://securelist.com/backdoors-and-stealers-prey-on-deepseek-and-grok/115801/
Stealers and backdoors are spreading under the guise of a DeepSeek client | Securelist

Iranian Hackers Target UAE Firms With Polyglot Files - SecurityWeek

https://www.securityweek.com/iranian-hackers-target-uae-firms-with-polyglot-files/
Iranian Hackers Target UAE Firms With Polyglot Files - SecurityWeek

Silk Typhoon targeting IT supply chain | Microsoft Security Blog

https://www.microsoft.com/en-us/security/blog/2025/03/05/silk-typhoon-targeting-it-supply-chain/
Silk Typhoon targeting IT supply chain | Microsoft Security Blog

Over 1,000 WordPress Sites Infected with JavaScript Backdoors Enabling Persistent Attacker Access

https://thehackernews.com/2025/03/over-1000-wordpress-sites-infected-with.html
Over 1,000 WordPress Sites Infected with JavaScript Backdoors Enabling Persistent Attacker Access

Chinese Lotus Blossom APT targets multiple sectors with Sagerunex backdoor

https://securityaffairs.com/174976/apt/lotus-blossom-apt-sagerunex-backdoor.html
Chinese Lotus Blossom APT targets multiple sectors with Sagerunex backdoor

🔴 Executive Offense - LLM Hacking PT 2!

https://executiveoffense.beehiiv.com/p/executive-offense-llm-hacking-pt-2
🔴 Executive Offense - LLM Hacking PT 2!

Mistral OCR | Mistral AI

https://mistral.ai/news/mistral-ocr
Mistral OCR | Mistral AI

UK quietly scrubs encryption advice from government websites | TechCrunch

https://techcrunch.com/2025/03/06/uk-quietly-scrubs-encryption-advice-from-government-websites/
UK quietly scrubs encryption advice from government websites | TechCrunch

ransomware_map/OCD_WorldWatch_Ransomware-ecosystem-map.pdf at main · cert-orangecyberdefense/ransomware_map · GitHub

https://github.com/cert-orangecyberdefense/ransomware_map/blob/main/OCD_WorldWatch_Ransomware-ecosystem-map.pdf
ransomware_map/OCD_WorldWatch_Ransomware-ecosystem-map.pdf at main · cert-orangecyberdefense/ransomware_map · GitHub

Cybercrime 'crew' stole $635,000 in Taylor Swift concert tickets

https://www.bleepingcomputer.com/news/security/cybercrime-crew-stole-635-000-in-taylor-swift-concert-tickets/
Cybercrime 'crew' stole $635,000 in Taylor Swift concert tickets