05/07

SysAid Patches 4 Critical Flaws Enabling Pre-Auth RCE in On-Premise Version

https://thehackernews.com/2025/05/sysaid-patches-4-critical-flaws.html
SysAid Patches 4 Critical Flaws Enabling Pre-Auth RCE in On-Premise Version

Play Ransomware Exploited Windows CVE-2025-29824 as Zero-Day to Breach U.S. Organization

https://thehackernews.com/2025/05/play-ransomware-exploited-windows-cve.html
Play Ransomware Exploited Windows CVE-2025-29824 as Zero-Day to Breach U.S. Organization

CISA warns of hackers targeting critical oil infrastructure

https://www.bleepingcomputer.com/news/security/cisa-warns-of-hackers-targeting-critical-oil-infrastructure/
CISA warns of hackers targeting critical oil infrastructure

OttoKit WordPress Plugin with 100K+ Installs Hit by Exploits Targeting Multiple Flaws

https://thehackernews.com/2025/05/ottokit-wordpress-plugin-with-100k.html
OttoKit WordPress Plugin with 100K+ Installs Hit by Exploits Targeting Multiple Flaws

PowerSchool hacker now extorting individual school districts

https://www.bleepingcomputer.com/news/security/powerschool-hacker-now-extorting-individual-school-districts/
PowerSchool hacker now extorting individual school districts

CoGUI phishing platform sent 580 million emails to steal credentials

https://www.bleepingcomputer.com/news/security/cogui-phishing-platform-sent-580-million-emails-to-steal-credentials/
CoGUI phishing platform sent 580 million emails to steal credentials

Spyware Maker NSO Ordered to Pay $167 Million Over WhatsApp Hack - SecurityWeek

https://www.securityweek.com/spyware-maker-nso-ordered-to-pay-167-million-over-whatsapp-hack/
Spyware Maker NSO Ordered to Pay $167 Million Over WhatsApp Hack - SecurityWeek

Apache Parquet exploit tool detect servers vulnerable to critical flaw

https://www.bleepingcomputer.com/news/security/apache-parquet-exploit-tool-detect-servers-vulnerable-to-critical-flaw/
Apache Parquet exploit tool detect servers vulnerable to critical flaw

Researchers Uncover Malware in Fake Discord PyPI Package Downloaded 11,500+ Times

https://thehackernews.com/2025/05/researchers-uncover-malware-in-fake.html
Researchers Uncover Malware in Fake Discord PyPI Package Downloaded 11,500+ Times

Enterprise Phishing - 2kb to pwn! .UDL and .reg payloads for Initial Access and Credential Harvesting

https://blog.killswitchx7.com/enterprise-phishing-udl-reg-for-initial-access-and-credential-harvesting
Enterprise Phishing - 2kb to pwn! .UDL and .reg payloads for Initial Access and Credential Harvesting

Microsoft: April updates cause Windows Server auth issues

https://www.bleepingcomputer.com/news/microsoft/microsoft-april-updates-cause-windows-server-auth-issues/
Microsoft: April updates cause Windows Server auth issues

Medical device maker Masimo warns of cyberattack, manufacturing delays

https://www.bleepingcomputer.com/news/security/medical-device-maker-masimo-warns-of-cyberattack-manufacturing-delays/
Medical device maker Masimo warns of cyberattack, manufacturing delays

Police takes down six DDoS-for-hire services, arrests admins

https://www.bleepingcomputer.com/news/security/police-takes-down-six-ddos-for-hire-services-arrests-admins/
Police takes down six DDoS-for-hire services, arrests admins

Second Wave of Attacks Hitting SAP NetWeaver After Zero-Day Compromise - SecurityWeek

https://www.securityweek.com/second-wave-of-attacks-hitting-sap-netweaver-after-zero-day-compromise/
Second Wave of Attacks Hitting SAP NetWeaver After Zero-Day Compromise - SecurityWeek