Archive for January, 2026

6 months after facing a cyberattack, JLR releases an update.

…read more

Source:: Security magazin

By Ionut Arghire

With 24 new vulnerabilities known to be exploited by ransomware groups, the list now includes 1,484 software and hardware flaws.

The post CISA KEV Catalog Expanded 20% in 2025, Topping 1,480 Entries appeared first on SecurityWeek.

…read more

Source:: securityweek

By Ionut Arghire

The 2-million-device-strong botnet allows monetization through DDoS attacks, app installs, and the selling of proxy bandwidth.

The post Kimwolf Android Botnet Grows Through Residential Proxy Networks appeared first on SecurityWeek.

…read more

Source:: securityweek

By Eduard Kovacs

WhatsApp device fingerprinting can be useful in the delivery of sophisticated spyware, but impact is very limited without a zero-day.

The post Researcher Spotlights WhatsApp Metadata Leak as Meta Begins Rolling Out Fixes appeared first on SecurityWeek.

…read more

Source:: securityweek

By Associated Press

The deal involved aerospace and defense specialist Emcore Corp. selling its computer chips and wafer fabrication operation.

The post President Trump Orders Divestment in $2.9 Million Chips Deal to Protect US Security Interests appeared first on SecurityWeek.

…read more

Source:: securityweek

By Eduard Kovacs

Ryan Goldberg and Kevin Martin have admitted being affiliates of the BlackCat/Alphv ransomware group.

The post Two US Cybersecurity Pros Plead Guilty Over Ransomware Attacks appeared first on SecurityWeek.

…read more

Source:: securityweek

By Ionut Arghire

In December, the botnet’s operators focused on weaponizing the flaw to compromise vulnerable Next.js servers.

The post RondoDox Botnet Exploiting React2Shell Vulnerability appeared first on SecurityWeek.

…read more

Source:: securityweek

By Eduard Kovacs

The Qilin ransomware group hacked the healthcare organization and stole data from its systems in May 2025.

The post Covenant Health Data Breach Impacts 478,000 Individuals appeared first on SecurityWeek.

…read more

Source:: securityweek

By Ionut Arghire

GreyNoise has observed thousands of requests targeting a dozen vulnerabilities in Adobe ColdFusion during the Christmas 2025 holiday.

The post Adobe ColdFusion Servers Targeted in Coordinated Campaign appeared first on SecurityWeek.

…read more

Source:: securityweek

3 best practices for secure and efficient Agentic AI adoption and use.

…read more

Source:: Security magazin