GitHub - mubix/Find-WSUS: Helps defenders find their WSUS configurations in the wake of CVE-2025-59287
https://github.com/mubix/Find-WSUS
How we linked ForumTroll APT to Dante spyware by Memento Labs | Securelist
https://securelist.com/forumtroll-apt-hacking-team-dante-spyware/117851/
Google Chrome to warn users before opening insecure HTTP sites
https://www.bleepingcomputer.com/news/google/google-chrome-to-warn-users-before-opening-insecure-http-sites/
The ZeroAccess Developer and His Windows Kernel-Mode Debugger
https://r136a1.dev/2025/10/28/zeroaccess-developer-and-his-kernelmode-debugger/
New Atroposia malware comes with a local vulnerability scanner
https://www.bleepingcomputer.com/news/security/new-atroposia-malware-comes-with-a-local-vulnerability-scanner/
Chrome Zero-Day Exploited to Deliver Italian Memento Labs' LeetAgent Spyware
https://thehackernews.com/2025/10/chrome-zero-day-exploited-to-deliver.html
Ransomware profits drop as victims stop paying hackers
https://www.bleepingcomputer.com/news/security/ransomware-profits-drop-as-victims-stop-paying-hackers/
GitHub - kfallahi/UnderlayCopy: PowerShell toolkit that extracts locked Windows files (SAM, SYSTEM, NTDS, ...) using MFT parsing and raw disk reads
https://github.com/kfallahi/UnderlayCopy
TEE.Fail attack breaks confidential computing on Intel, AMD, NVIDIA CPUs
https://www.bleepingcomputer.com/news/security/teefail-attack-breaks-confidential-computing-on-intel-amd-nvidia-cpus/
Hackers Target Swedish Power Grid Operator - SecurityWeek
https://www.securityweek.com/hackers-target-swedish-power-grid-operator/
New Android Trojan 'Herodotus' Outsmarts Anti-Fraud Systems by Typing Like a Human
https://thehackernews.com/2025/10/new-android-trojan-herodotus-outsmarts.html
Grokipedia
http://Grokipedia.com
New Herodotus Android malware fakes human typing to avoid detection
https://www.bleepingcomputer.com/news/security/new-herodotus-android-malware-fakes-human-typing-to-avoid-detection/
BlueNoroff's latest campaigns: GhostCall and GhostHire | Securelist
https://securelist.com/bluenoroff-apt-campaigns-ghostcall-and-ghosthire/117842/
Google disputes false claims of massive Gmail data breach
https://www.bleepingcomputer.com/news/security/google-disputes-false-claims-of-massive-gmail-data-breach/
In Tesco vs. VMware, Computacenter warns, Dell, Broadcom • The Register
http://dlvr.it/TNwSBH
GitHub - BushidoUK/Breach-Report-Collection: A collection of companies that disclose adversary TTPs after they have been breached
https://github.com/BushidoUK/Breach-Report-Collection
SideWinder Adopts New ClickOnce-Based Attack Chain Targeting South Asian Diplomats
https://thehackernews.com/2025/10/sidewinder-adopts-new-clickonce-based.html
Active Water Saci Campaign Spreading Via WhatsApp Features Multi-Vector Persistence and Sophisticated C&C | Trend Micro (US)
https://www.trendmicro.com/en_us/research/25/j/active-water-saci-campaign-whatsapp-update.html
Researchers Expose GhostCall and GhostHire: BlueNoroff's New Malware Chains
https://thehackernews.com/2025/10/researchers-expose-ghostcall-and.html