- Malicious Go, npm Packages Deliver Cross-Platform Malware, Trigger Remote Data Wipesby info@thehackernews.com (The Hacker News) on 07/08/2025 at 13:19
Cybersecurity researchers have discovered a set of 11 malicious Go packages that are designed to download additional payloads from remote servers and execute them on both Windows and Linux systems. "At runtime the code silently spawns a shell, pulls a second-stage payload from an interchangeable set of .icu and .tech command-and-control (C2) endpoints, and executes it in memory," Socket security
- The AI-Powered Security Shift: What 2025 Is Teaching Us About Cloud Defenseby info@thehackernews.com (The Hacker News) on 07/08/2025 at 10:45
Now that we are well into 2025, cloud attacks are evolving faster than ever and artificial intelligence (AI) is both a weapon and a shield. As AI rapidly changes how enterprises innovate, security teams are now tasked with a triple burden: Secure AI embedded in every part of the business. Use AI to defend faster and smarter. Fight AI-powered threats that execute in minutes—or seconds. Security
- Microsoft Discloses Exchange Server Flaw Enabling Silent Cloud Access in Hybrid Setupsby info@thehackernews.com (The Hacker News) on 07/08/2025 at 10:42
Microsoft has released an advisory for a high-severity security flaw affecting on-premise versions of Exchange Server that could allow an attacker to gain elevated privileges under certain conditions. The vulnerability, tracked as CVE-2025-53786, carries a CVSS score of 8.0. Dirk-jan Mollema with Outsider Security has been acknowledged for reporting the bug. "In an Exchange hybrid deployment, an
- 6,500 Axis Servers Expose Remoting Protocol, 4,000 in U.S. Vulnerable to Exploitsby info@thehackernews.com (The Hacker News) on 07/08/2025 at 10:40
Cybersecurity researchers have disclosed multiple security flaws in video surveillance products from Axis Communications that, if successfully exploited, could expose them to takeover attacks. "The attack results in pre-authentication remote code execution on Axis Device Manager, a server used to configure and manage fleets of cameras, and the Axis Camera Station, client software used to view
- SonicWall Confirms Patched Vulnerability Behind Recent VPN Attacks, Not a Zero-Dayby info@thehackernews.com (The Hacker News) on 07/08/2025 at 10:32
SonicWall has revealed that the recent spike in activity targeting its Gen 7 and newer firewalls with SSL VPN enabled is related to an older, now-patched bug and password reuse. "We now have high confidence that the recent SSL VPN activity is not connected to a zero-day vulnerability," the company said. "Instead, there is a significant correlation with threat activity related to CVE-2024-40766."