SysAid Patches 4 Critical Flaws Enabling Pre-Auth RCE in On-Premise Version
https://thehackernews.com/2025/05/sysaid-patches-4-critical-flaws.html
Play Ransomware Exploited Windows CVE-2025-29824 as Zero-Day to Breach U.S. Organization
https://thehackernews.com/2025/05/play-ransomware-exploited-windows-cve.html
CISA warns of hackers targeting critical oil infrastructure
https://www.bleepingcomputer.com/news/security/cisa-warns-of-hackers-targeting-critical-oil-infrastructure/
OttoKit WordPress Plugin with 100K+ Installs Hit by Exploits Targeting Multiple Flaws
https://thehackernews.com/2025/05/ottokit-wordpress-plugin-with-100k.html
PowerSchool hacker now extorting individual school districts
https://www.bleepingcomputer.com/news/security/powerschool-hacker-now-extorting-individual-school-districts/
The Certificate Strikes Back: ADCS's Path to Azure | SO-CON 2025 - YouTube
https://youtu.be/qYqWDxjlpa4
CoGUI phishing platform sent 580 million emails to steal credentials
https://www.bleepingcomputer.com/news/security/cogui-phishing-platform-sent-580-million-emails-to-steal-credentials/
Spyware Maker NSO Ordered to Pay $167 Million Over WhatsApp Hack - SecurityWeek
https://www.securityweek.com/spyware-maker-nso-ordered-to-pay-167-million-over-whatsapp-hack/
Apache Parquet exploit tool detect servers vulnerable to critical flaw
https://www.bleepingcomputer.com/news/security/apache-parquet-exploit-tool-detect-servers-vulnerable-to-critical-flaw/
Researchers Uncover Malware in Fake Discord PyPI Package Downloaded 11,500+ Times
https://thehackernews.com/2025/05/researchers-uncover-malware-in-fake.html
Enterprise Phishing - 2kb to pwn! .UDL and .reg payloads for Initial Access and Credential Harvesting
https://blog.killswitchx7.com/enterprise-phishing-udl-reg-for-initial-access-and-credential-harvesting
Microsoft: April updates cause Windows Server auth issues
https://www.bleepingcomputer.com/news/microsoft/microsoft-april-updates-cause-windows-server-auth-issues/
Medical device maker Masimo warns of cyberattack, manufacturing delays
https://www.bleepingcomputer.com/news/security/medical-device-maker-masimo-warns-of-cyberattack-manufacturing-delays/
Police takes down six DDoS-for-hire services, arrests admins
https://www.bleepingcomputer.com/news/security/police-takes-down-six-ddos-for-hire-services-arrests-admins/
Second Wave of Attacks Hitting SAP NetWeaver After Zero-Day Compromise - SecurityWeek
https://www.securityweek.com/second-wave-of-attacks-hitting-sap-netweaver-after-zero-day-compromise/