12/17

Google Project Zero

https://projectzero.google/
Google Project Zero

Google Project Zero

http://projectzero.google
Google Project Zero

A new campaign by the ForumTroll APT group | Securelist

https://securelist.com/operation-forumtroll-new-targeted-campaign/118492/
A new campaign by the ForumTroll APT group | Securelist

The APT35 Dump Episode 4: Leaking The Backstage Pass To An Iranian Intelligence Operation - DomainTools Investigations | DTI

https://dti.domaintools.com/the-apt35-dump-episode-4-leaking-the-backstage-pass-to-an-iranian-intelligence-operation/
The APT35 Dump Episode 4: Leaking The Backstage Pass To An Iranian Intelligence Operation - DomainTools Investigations | DTI

New GhostPoster Attack Leverages PNG Icon to Infect 50,000 Firefox Users

https://cybersecuritynews.com/new-ghostposter-attack-leverages-png-icon/
New GhostPoster Attack Leverages PNG Icon to Infect 50,000 Firefox Users

Linux Kernel Rust Code Sees Its First CVE Vulnerability - Phoronix

https://www.phoronix.com/news/First-Linux-Rust-CVE
Linux Kernel Rust Code Sees Its First CVE Vulnerability - Phoronix

GuardDuty Extended Threat Detection uncovers cryptomining campaign on Amazon EC2 and Amazon ECS | AWS Security Blog

https://aws.amazon.com/blogs/security/cryptomining-campaign-targeting-amazon-ec2-and-amazon-ecs/
GuardDuty Extended Threat Detection uncovers cryptomining campaign on Amazon EC2 and Amazon ECS | AWS Security Blog

Critical React2Shell flaw exploited in ransomware attacks

https://www.bleepingcomputer.com/news/security/critical-react2shell-flaw-exploited-in-ransomware-attacks/
Critical React2Shell flaw exploited in ransomware attacks

GachiLoader: Defeating Node.js Malware with API Tracing GachiLoader: Defeating Node.js Malware

https://research.checkpoint.com/2025/gachiloader-node-js-malware-with-api-tracing/
GachiLoader: Defeating Node.js Malware with API Tracing GachiLoader: Defeating Node.js Malware

Amazon: Ongoing cryptomining campaign uses hacked AWS accounts

https://www.bleepingcomputer.com/news/security/amazon-ongoing-cryptomining-campaign-uses-hacked-aws-accounts/
Amazon: Ongoing cryptomining campaign uses hacked AWS accounts

Amazon disrupts Russian GRU hackers attacking edge network devices

https://www.bleepingcomputer.com/news/security/amazon-disrupts-russian-gru-hackers-attacking-edge-network-devices/
Amazon disrupts Russian GRU hackers attacking edge network devices

Sonicwall warns of new SMA1000 zero-day exploited in attacks

https://www.bleepingcomputer.com/news/security/sonicwall-warns-of-new-sma1000-zero-day-exploited-in-attacks/
Sonicwall warns of new SMA1000 zero-day exploited in attacks

Yep, Passkeys Still Have Problems

https://fy.blackhats.net.au/blog/2025-12-17-yep-passkeys-still-have-problems/
Yep, Passkeys Still Have Problems

Uncovering CVE-2025-64669 in Windows Admin Center

https://cymulate.com/blog/cve-2025-64669-windows-admin-center/
Uncovering CVE-2025-64669 in Windows Admin Center

WhatsApp device linking abused in account hijacking attacks

https://www.bleepingcomputer.com/news/security/whatsapp-device-linking-abused-in-account-hijacking-attacks/
WhatsApp device linking abused in account hijacking attacks

GhostPoster Malware Found in 17 Firefox Add-ons with 50,000+ Downloads

https://thehackernews.com/2025/12/ghostposter-malware-found-in-17-firefox.html
GhostPoster Malware Found in 17 Firefox Add-ons with 50,000+ Downloads

Cisco warns of unpatched AsyncOS zero-day exploited in attacks

https://www.bleepingcomputer.com/news/security/cisco-warns-of-unpatched-asyncos-zero-day-exploited-in-attacks/
Cisco warns of unpatched AsyncOS zero-day exploited in attacks