04/09

PipeMagic Trojan Exploits Windows Zero-Day Vulnerability to Deploy Ransomware

https://thehackernews.com/2025/04/pipemagic-trojan-exploits-windows-clfs.html
PipeMagic Trojan Exploits Windows Zero-Day Vulnerability to Deploy Ransomware

Police detains Smokeloader malware customers, seizes servers

https://www.bleepingcomputer.com/news/security/police-detains-smokeloader-malware-customers-seizes-servers/
Police detains Smokeloader malware customers, seizes servers

CISA Warns of CentreStack's Hard-Coded MachineKey Vulnerability Enabling RCE Attacks

https://thehackernews.com/2025/04/cisa-warns-of-centrestacks-hard-coded.html
CISA Warns of CentreStack's Hard-Coded MachineKey Vulnerability Enabling RCE Attacks

Critical FortiSwitch flaw lets hackers change admin passwords remotely

https://www.bleepingcomputer.com/news/security/critical-fortiswitch-flaw-lets-hackers-change-admin-passwords-remotely/
Critical FortiSwitch flaw lets hackers change admin passwords remotely

Microsoft investigates global Exchange Admin Center outage

https://www.bleepingcomputer.com/news/microsoft/microsoft-investigates-global-exchange-admin-center-outage/
Microsoft investigates global Exchange Admin Center outage

Hunt | Home

http://Hunt.io
Hunt | Home

New TCESB Malware Found in Active Attacks Exploiting ESET Security Scanner

https://thehackernews.com/2025/04/new-tcesb-malware-found-in-active.html
New TCESB Malware Found in Active Attacks Exploiting ESET Security Scanner

Microsoft Patches 126 Flaws Including Actively Exploited Windows CLFS Vulnerability

https://thehackernews.com/2025/04/microsoft-patches-126-flaws-including.html
Microsoft Patches 126 Flaws Including Actively Exploited Windows CLFS Vulnerability

Microsoft: April 2025 updates break Windows Hello on some PCs

https://www.bleepingcomputer.com/news/microsoft/microsoft-april-2025-updates-break-windows-hello-on-some-pcs/
Microsoft: April 2025 updates break Windows Hello on some PCs

sherloq: open-source digital image forensic toolset

https://meterpreter.org/sherloq-open-source-digital-image-forensic-toolset/
sherloq: open-source digital image forensic toolset

Adobe Patches 11 Critical ColdFusion Flaws Amid 30 Total Vulnerabilities Discovered

https://thehackernews.com/2025/04/adobe-patches-11-critical-coldfusion.html
Adobe Patches 11 Critical ColdFusion Flaws Amid 30 Total Vulnerabilities Discovered

Phishing kits now vet victims in real-time before stealing credentials

https://www.bleepingcomputer.com/news/security/phishing-kits-now-vet-victims-in-real-time-before-stealing-credentials/
Phishing kits now vet victims in real-time before stealing credentials

CentreStack RCE exploited as zero-day to breach file sharing servers

https://www.bleepingcomputer.com/news/security/centrestack-rce-exploited-as-zero-day-to-breach-file-sharing-servers/
CentreStack RCE exploited as zero-day to breach file sharing servers

Senator puts hold on Trump's nominee for CISA director, citing telco security 'cover up' | TechCrunch

https://techcrunch.com/2025/04/09/senator-puts-hold-on-trumps-nominee-for-cisa-director-citing-telco-security-cover-up/
Senator puts hold on Trump's nominee for CISA director, citing telco security 'cover up' | TechCrunch

Oracle says "obsolete servers" hacked, denies cloud breach

https://www.bleepingcomputer.com/news/security/oracle-says-obsolete-servers-hacked-denies-cloud-breach/
Oracle says "obsolete servers" hacked, denies cloud breach

Lovable AI Found Most Vulnerable to VibeScamming — Enabling Anyone to Build Live Scam Pages

https://thehackernews.com/2025/04/lovable-ai-found-most-vulnerable-to.html
Lovable AI Found Most Vulnerable to VibeScamming — Enabling Anyone to Build Live Scam Pages

Microsoft: Windows CLFS zero-day exploited by ransomware gang

https://www.bleepingcomputer.com/news/security/microsoft-windows-clfs-zero-day-exploited-by-ransomware-gang/
Microsoft: Windows CLFS zero-day exploited by ransomware gang