Microsoft Defender for Endpoint Bug Triggers Numerous False BIOS Alerts
https://cybersecuritynews.com/microsoft-defender-endpoint-bug/
Gmail business users can now send encrypted emails to anyone
https://www.bleepingcomputer.com/news/google/gmail-business-users-can-now-send-encrypted-emails-to-anyone/
ShinyHunters launches Salesforce data leak site to extort 39 victims
https://www.bleepingcomputer.com/news/security/shinyhunters-starts-leaking-data-stolen-in-salesforce-attacks/
New "Cavalry Werewolf" Attack Hits Russian Agencies with FoalShell and StallionRAT
https://thehackernews.com/2025/10/new-cavalry-werewolf-attack-hits.html
North Korea's Fake Recruiters Feed Stolen Data to IT Workers - SecurityWeek
https://www.securityweek.com/north-koreas-fake-recruiters-feed-stolen-data-to-it-workers/
Researchers Warn of Self-Spreading WhatsApp Malware Named SORVEPOTEL
https://thehackernews.com/2025/10/researchers-warn-of-self-spreading.html
Oracle links Clop extortion attacks to July 2025 vulnerabilities
https://www.bleepingcomputer.com/news/security/oracle-links-clop-extortion-attacks-to-july-security-flaws/
Senior Cyber Threat Intelligence Engineer at USAA
https://www.usaajobs.com/job/san-antonio/senior-cyber-threat-intelligence-engineer/1207/80118718224
Cisco ASA login bruteforcing user + password list · GitHub
https://gist.github.com/simokohonen/a40fe6f74a183311fd7b6e3b72331639
CommetJacking attack tricks Comet browser into stealing emails
https://www.bleepingcomputer.com/news/security/commetjacking-attack-tricks-comet-browser-into-stealing-emails/
Confucius Espionage: From Stealer to Backdoor | FortiGuard Labs
https://www.fortinet.com/blog/threat-research/confucius-espionage-from-stealer-to-backdoor
Scan results for the latest round of Cisco ASA vulns linked below, updates every few days. Only about ~15% of orgs patched, most are years… | Kevin Beaumont
https://www.linkedin.com/posts/kevin-beaumont-security_scan-results-for-the-latest-round-of-cisco-activity-7379839409111744513-tqqw
It's Never Simple Until It Is (Dell UnityVSA Pre-Auth Command Injection CVE-2025-36604)
https://labs.watchtowr.com/its-never-simple-until-it-is-dell-unityvsa-pre-auth-command-injection-cve-2025-36604/
Signal adds new cryptographic defense against quantum attacks
https://www.bleepingcomputer.com/news/security/signal-adds-new-cryptographic-defense-against-quantum-attacks/
Renault and Dacia UK warn of data breach impacting customers
https://www.bleepingcomputer.com/news/security/renault-and-dacia-uk-warn-of-data-breach-impacting-customers/