Cybersecurity News

Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.

Individual in a hoodie working on a laptop with an Ethereum logo and a North Korean flag.

North Korean APT UNC5342 weaponizes EtherHiding to deliver malware via smart contracts

CyberSecureFox

Google’s Threat Intelligence Group (GTIG) has linked North Korean threat actor UNC5342 to a new wave of attacks that, since ...

FBI Seizes BreachForums Domain as Salesforce‑Linked Extortion Persists: What Organizations Need to Know

CyberSecureFox

The FBI has formally seized the Breachforums[.]hn domain, one of the most active cybercrime forums used in 2025 for leaking ...

Man in a suit troubled by a computer error while working on a laptop.

Windows 11 updates disrupt HTTP/2 on localhost (127.0.0.1): what broke and how to mitigate

CyberSecureFox

Windows 11 users report that recent updates—October cumulative KB5066835 and the September preview KB5065789—cause localhost instability by breaking HTTP/2 connections ...

Seattle skyline featuring Space Needle with autumn foliage in foreground.

F5 discloses state‑sponsored intrusion impacting BIG‑IP development environment; 44 vulnerabilities fixed

CyberSecureFox

F5 has disclosed a cybersecurity incident attributed to a state‑sponsored threat actor that maintained persistent access to segments of its ...

Cityscape featuring a bridge, river, and modern skyscraper under cloudy skies.

Rust-Based ChaosBot Leverages Discord C2, LNK Phishing, and WMI to Evade Enterprise Defenses

CyberSecureFox

Threat researchers at eSentire have identified a new backdoor dubbed ChaosBot, written in Rust and using Discord as command-and-control (C2). ...

Three men react anxiously to a computer screen displaying “RMPocalypse.”

AMD fixes “RMPocalypse” (CVE-2025-0033): race condition threatens SEV‑SNP memory isolation

CyberSecureFox

AMD has released patches for “RMPocalypse” (CVE-2025-0033), a vulnerability that can undermine the confidentiality and integrity guarantees of Secure Encrypted ...

Deer stands on lush hillside with San Francisco skyline in the background at sunrise.

Operation ZeroDisco: Active Exploitation of Cisco IOS/IOS XE CVE-2025-20352 via SNMP

CyberSecureFox

Threat researchers at Trend Micro have documented Operation ZeroDisco, a targeted campaign abusing the recently patched but widely exploited CVE-2025-20352 ...

Computer screens depicting cybersecurity and cyber threat themes side by side.

GreyNoise: Coordinated RDP Attacks in the U.S. Driven by 100,000-IP Botnet

CyberSecureFox

GreyNoise is tracking a new surge of Remote Desktop Protocol (RDP) activity targeting U.S. networks, driven by a botnet exceeding ...

Two men in a tense moment; one anxiously using a laptop, the other observing.

Beamglea Campaign Exploits npm and unpkg to Evade Email and Web Filters

CyberSecureFox

Threat actors behind the Beamglea campaign are co‑opting trusted JavaScript infrastructure—specifically the npm registry and the unpkg content delivery network—to ...

A building with smoke billowing and "DATA BREACH" displayed prominently outside.

SonicWall confirms unauthorized access to MySonicWall cloud configuration backups

CyberSecureFox

SonicWall has confirmed that attackers gained unauthorized access to cloud-stored firewall configuration backups associated with the MySonicWall portal, affecting all ...