09/18

SystemBC malware turns infected VPS systems into proxy highway

https://www.bleepingcomputer.com/news/security/systembc-malware-turns-infected-vps-systems-into-proxy-highway/
SystemBC malware turns infected VPS systems into proxy highway

WatchGuard warns of critical vulnerability in Firebox firewalls

https://www.bleepingcomputer.com/news/security/watchguard-warns-of-critical-vulnerability-in-firebox-firewalls/
WatchGuard warns of critical vulnerability in Firebox firewalls

Cloudflare DDoSed itself with React useEffect hook blunder • The Register

https://www.theregister.com/2025/09/18/cloudflare_ddosed_itself/
Cloudflare DDoSed itself with React useEffect hook blunder • The Register

Tech Note - BeaverTail variant distributed via malicious repositories and ClickFix lure - GitLab Security Tech Notes

https://gitlab-com.gitlab.io/gl-security/security-tech-notes/threat-intelligence-tech-notes/north-korean-malware-sept-2025/
Tech Note - BeaverTail variant distributed via malicious repositories and ClickFix lure - GitLab Security Tech Notes

Google Patches Chrome Zero-Day CVE-2025-10585 as Active V8 Exploit Threatens Millions

https://thehackernews.com/2025/09/google-patches-chrome-zero-day-cve-2025.html
Google Patches Chrome Zero-Day CVE-2025-10585 as Active V8 Exploit Threatens Millions

Merge branch '6.4.x' into 6.5.x · spring-projects/spring-security@d0f93fa · GitHub

http://github.com/spring-projects/spring-security/commit/d0f93fa6d8338149943ae640c53db07de827867f
Merge branch '6.4.x' into 6.5.x · spring-projects/spring-security@d0f93fa · GitHub

CopyCop Deepens Its Playbook with New Websites and Targets

https://www.recordedfuture.com/research/copycop-deepens-its-playbook-with-new-websites-and-targets
CopyCop Deepens Its Playbook with New Websites and Targets

SilentSync RAT Delivered via Two Malicious PyPI Packages Targeting Python Developers

https://thehackernews.com/2025/09/silentsync-rat-delivered-via-two.html
SilentSync RAT Delivered via Two Malicious PyPI Packages Targeting Python Developers

Two teenage suspected Scattered Spider members charged in UK over TfL hack | The Record from Recorded Future News

https://therecord.media/scattered-spider-teenage-suspects-arrested-britain-nca
Two teenage suspected Scattered Spider members charged in UK over TfL hack | The Record from Recorded Future News

More Fun With WMI - SpecterOps

https://specterops.io/blog/2025/09/18/more-fun-with-wmi/
More Fun With WMI - SpecterOps

PyPI invalidates tokens stolen in GhostAction supply chain attack

https://www.bleepingcomputer.com/news/security/pypi-invalidates-tokens-stolen-in-ghostaction-supply-chain-attack/
PyPI invalidates tokens stolen in GhostAction supply chain attack

External attack surface management (EASM) - NCSC.GOV.UK

https://www.ncsc.gov.uk/guidance/external-attack-surface-management-buyers-guide
External attack surface management (EASM) - NCSC.GOV.UK

Chrome Releases: Stable Channel Update for Desktop

https://chromereleases.googleblog.com/2025/09/stable-channel-update-for-desktop_17.html
Chrome Releases: Stable Channel Update for Desktop

XSS-Leak: Leaking Cross-Origin Redirects | Salvatore Abello's Blog

https://blog.babelo.xyz/posts/cross-site-subdomain-leak
XSS-Leak: Leaking Cross-Origin Redirects | Salvatore Abello's Blog

CVE-2025-21043: When DNG Opcodes Become Attack Vectors | Matt Suiche

https://www.msuiche.com/posts/cve-2025-21043-when-dng-opcodes-become-attack-vectors/
CVE-2025-21043: When DNG Opcodes Become Attack Vectors | Matt Suiche

https://orange-cyberdefense.github.io/ocd-mindmaps/img/mindmap_ad_dark_classic_2025.03.excalidraw.svg

https://orange-cyberdefense.github.io/ocd-mindmaps/img/mindmap_ad_dark_classic_2025.03.excalidraw.svg

Have I Been Pwned: FreeOnes Data Breach

https://haveibeenpwned.com/Breach/FreeOnes
Have I Been Pwned: FreeOnes Data Breach

Notepad gets free AI features on Copilot+ PCs with Windows 11

https://www.bleepingcomputer.com/news/microsoft/notepad-gets-free-ai-features-on-copilot-plus-pcs-with-windows-11/
Notepad gets free AI features on Copilot+ PCs with Windows 11

GOLD SALEM’s Warlock operation joins busy ransomware landscape – Sophos News

https://news.sophos.com/en-us/2025/09/17/gold-salems-warlock-operation-joins-busy-ransomware-landscape/
GOLD SALEM’s Warlock operation joins busy ransomware landscape – Sophos News

UK arrests 'Scattered Spider' teens linked to Transport for London hack

https://www.bleepingcomputer.com/news/security/uk-arrests-scattered-spider-teens-linked-to-transport-for-london-hack/
UK arrests 'Scattered Spider' teens linked to Transport for London hack

ShinyHunters claims 1.5 billion Salesforce records stolen in Drift hacks

https://www.bleepingcomputer.com/news/security/shinyhunters-claims-15-billion-salesforce-records-stolen-in-drift-hacks/
ShinyHunters claims 1.5 billion Salesforce records stolen in Drift hacks

ShinyHunters Calling: Financially Motivated Data Extortion Group Targeting Enterprise Cloud Applications

https://blog.eclecticiq.com/shinyhunters-calling-financially-motivated-data-extortion-group-targeting-enterprise-cloud-applications
ShinyHunters Calling: Financially Motivated Data Extortion Group Targeting Enterprise Cloud Applications

SonicWall warns customers to reset credentials after breach

https://www.bleepingcomputer.com/news/security/sonicwall-warns-customers-to-reset-credentials-after-MySonicWall-breach/
SonicWall warns customers to reset credentials after breach

CountLoader Broadens Russian Ransomware Operations With Multi-Version Malware Loader

https://thehackernews.com/2025/09/countloader-broadens-russian-ransomware.html
CountLoader Broadens Russian Ransomware Operations With Multi-Version Malware Loader

Decade-Old Pixie Dust Wi-Fi Hack Still Impacts Many Devices - SecurityWeek

https://www.securityweek.com/decade-old-pixie-dust-wi-fi-hack-still-impacts-many-devices/
Decade-Old Pixie Dust Wi-Fi Hack Still Impacts Many Devices - SecurityWeek