Category: Hacker News

38,000+ FreeDrain Subdomains Found Exploiting SEO ...

Cybersecurity researchers have exposed what they say is an "industrial-scale, global cryptocurrency phishing operation" engineered...

SonicWall Patches 3 Flaws in SMA 100 Devices Allow...

SonicWall has released patches to address three security flaws affecting SMA 100 Secure Mobile Access (SMA) appliances that could ...

Qilin Ransomware Ranked Highest in April 2025 with...

Threat actors with ties to the Qilin ransomware family have leveraged malware known as SmokeLoader along with a previously undocum...

Security Tools Alone Don't Protect You — Control E...

61% of security leaders reported suffering a breach due to failed or misconfigured controls over the past 12 months. This is despi...

MirrorFace Targets Japan and Taiwan with ROAMINGMO...

The nation-state threat actor known as MirrorFace has been observed deploying malware dubbed ROAMINGMOUSE as part of a cyber espio...

Russian Hackers Using ClickFix Fake CAPTCHA to Dep...

The Russia-linked threat actor known as COLDRIVER has been observed distributing a new malware called LOSTKEYS as part of an espio...

Cisco Patches CVE-2025-20188 (10.0 CVSS) in IOS XE...

Cisco has released software fixes to address a maximum-severity security flaw in its IOS XE Wireless Controller that could enable ...

Europol Shuts Down Six DDoS-for-Hire Services Used...

Europol has announced the takedown of distributed denial of service (DDoS)-for-hire services that were used to launch thousands of...

OttoKit WordPress Plugin with 100K+ Installs Hit b...

A second security flaw impacting the OttoKit (formerly SureTriggers) WordPress plugin has come under active exploitation in the wi...

SysAid Patches 4 Critical Flaws Enabling Pre-Auth ...

Cybersecurity researchers have disclosed multiple security flaw in the on-premise version of SysAid IT support software that could...

Reevaluating SSEs: A Technical Gap Analysis of Las...

Security Service Edge (SSE) platforms have become the go-to architecture for securing hybrid work and SaaS access. They promise ce...

Play Ransomware Exploited Windows CVE-2025-29824 a...

Threat actors with links to the Play ransomware family exploited a recently patched security flaw in Microsoft Windows as a zero-d...