09/25

Cisco warns of ASA firewall zero-days exploited in attacks

https://www.bleepingcomputer.com/news/security/cisco-warns-of-asa-firewall-zero-days-exploited-in-attacks/
Cisco warns of ASA firewall zero-days exploited in attacks

DeceptiveDevelopment: From primitive crypto theft to sophisticated AI-based deception

https://www.welivesecurity.com/en/eset-research/deceptivedevelopment-from-primitive-crypto-theft-to-sophisticated-ai-based-deception/
DeceptiveDevelopment: From primitive crypto theft to sophisticated AI-based deception

Microsoft will offer free Windows 10 extended security updates in Europe

https://www.bleepingcomputer.com/news/microsoft/microsoft-will-offer-free-windows-10-security-updates-in-europe/
Microsoft will offer free Windows 10 extended security updates in Europe

Malicious Rust packages on Crates.io steal crypto wallet keys

https://www.bleepingcomputer.com/news/security/malicious-rust-packages-on-cratesio-steal-crypto-wallet-keys/
Malicious Rust packages on Crates.io steal crypto wallet keys

Kali Linux 2025.3 Release (Vagrant & Nexmon) | Kali Linux Blog

https://www.kali.org/blog/kali-linux-2025-3-release/
Kali Linux 2025.3 Release (Vagrant & Nexmon) | Kali Linux Blog

Chinese Hackers Lurked Nearly 400 Days in Networks With Stealthy BrickStorm Malware - SecurityWeek

https://www.securityweek.com/chinese-spies-lurked-in-networks-for-393-days-hunted-for-zero-day-intel/
Chinese Hackers Lurked Nearly 400 Days in Networks With Stealthy BrickStorm Malware - SecurityWeek

Teen suspected of Vegas casino cyberattacks released to parents

https://www.bleepingcomputer.com/news/security/teen-suspected-of-vegas-casino-cyberattacks-released-to-parents/
Teen suspected of Vegas casino cyberattacks released to parents

OPSEC: Read the Code Before It Burns Your Op | BlackSnufkin

https://blacksnufkin.github.io/posts/opsec-offensive-code-review/
OPSEC: Read the Code Before It Burns Your Op | BlackSnufkin

Tech Overtakes Gaming as Top DDoS Attack Target, New Gcore Radar Report Finds

https://thehackernews.com/2025/09/tech-overtakes-gaming-as-top-ddos.html
Tech Overtakes Gaming as Top DDoS Attack Target, New Gcore Radar Report Finds

COLDRIVER Adds BAITSWITCH and SIMPLEFIX | ThreatLabz

https://www.zscaler.com/blogs/security-research/coldriver-updates-arsenal-baitswitch-and-simplefix
COLDRIVER Adds BAITSWITCH and SIMPLEFIX | ThreatLabz

FLARE-On 12

http://flare-on12.ctfd.io
FLARE-On 12

Cisco warns of IOS zero-day vulnerability exploited in attacks

https://www.bleepingcomputer.com/news/security/cisco-warns-of-ios-zero-day-vulnerability-exploited-in-attacks/
Cisco warns of IOS zero-day vulnerability exploited in attacks

Amazon pays $2.5 billion to settle Prime memberships lawsuit

https://www.bleepingcomputer.com/news/technology/amazon-pays-25-billion-to-settle-prime-memberships-lawsuit/
Amazon pays $2.5 billion to settle Prime memberships lawsuit

Nighthawk 0.4 – Janus - Nighthawk C2

https://www.nighthawkc2.io/janus/
Nighthawk 0.4 – Janus - Nighthawk C2

Co-op says it lost $107 million after Scattered Spider attack

https://www.bleepingcomputer.com/news/security/co-op-says-it-lost-107-million-after-scattered-spider-attack/
Co-op says it lost $107 million after Scattered Spider attack

Cisco Warns of Actively Exploited SNMP Vulnerability Allowing RCE or DoS in IOS Software

https://thehackernews.com/2025/09/cisco-warns-of-actively-exploited-snmp.html
Cisco Warns of Actively Exploited SNMP Vulnerability Allowing RCE or DoS in IOS Software

Unofficial Postmark MCP npm silently stole users' emails

https://www.bleepingcomputer.com/news/security/unofficial-postmark-mcp-npm-silently-stole-users-emails/
Unofficial Postmark MCP npm silently stole users' emails

Malicious Rust Crates Steal Solana and Ethereum Keys — 8,424 Downloads Confirmed

https://thehackernews.com/2025/09/malicious-rust-crates-steal-solana-and.html
Malicious Rust Crates Steal Solana and Ethereum Keys — 8,424 Downloads Confirmed

North Korean Hackers Use New AkdoorTea Backdoor to Target Global Crypto Developers

https://thehackernews.com/2025/09/north-korean-hackers-use-new-akdoortea.html
North Korean Hackers Use New AkdoorTea Backdoor to Target Global Crypto Developers