loader image
Stryker Android Hacking App Offers Free Access to 2050

The Stryker Android hacking app, a penetration testing tool for mobile security professionals, has made its premium features available for free until the year 2050, according to a post on the r/netsec subreddit. Designed for ethical hackers and cybersecurity researchers, the app enables users to conduct advanced security assessments on Android devices, offering a suite […]

Military Bases Face Rising Cyberattack Threats

Critical infrastructure supporting U.S. defense operations increasingly finds itself in the crosshairs of cybercriminals. As military bases face rising cyberattacks, vulnerabilities in power grids, communication systems and logistics networks pose growing risks to national security. These digital threats do not target combat zones alone—they infiltrate the everyday systems that enable troop readiness and mission execution. […]

Hackers Exploit Microsoft Tools to Breach Energy Firms

A newly identified cyber campaign, dubbed OneClik, targets the energy, oil and gas sectors using a blend of legitimate tools and custom malware. Hackers exploit Microsoft tools, specifically the ClickOnce deployment framework, to deliver malicious payloads with minimal detection. Researchers say the attackers rely on deceptive links to lure victims into launching the compromised applications. […]

Tech Titans Dominate as Public Sector Spend Surges

Public sector spending on technology continues to climb, driven by major suppliers and a surge in demand for IT services. A new report from Tussell highlights how 150 leading suppliers, dubbed “tech titans,” dominate the procurement landscape. These firms secured a significant portion of government contracts, underscoring their influence in shaping public sector digital strategies. […]

SentinelOne Flaw Lets Hackers Deploy Babuk Ransomware

A newly identified technique is allowing threat actors to bypass SentinelOne’s endpoint detection and response (EDR) system, enabling the deployment of Babuk ransomware without triggering alerts, according to Aon’s Stroz Friedberg Incident Response team. Dubbed “Bring Your Own Installer,” the method exploits a flaw in SentinelOne’s agent upgrade process, terminating protection processes and leaving systems […]

Apache Parquet Java Flaw Opens Door to RCE Attacks

A critical vulnerability has been identified in Apache Parquet Java, an open-source columnar storage format, potentially exposing systems to remote code execution (RCE) attacks. The flaw, tracked as CVE-2025-46762, affects versions 1.15.1 and earlier, according to a disclosure. Attackers could exploit the vulnerability to execute arbitrary code on targeted systems, putting enterprise data and services […]

UK Legal Aid Agency Probes Breach, Data at Risk

The UK’s Legal Aid Agency is investigating a cybersecurity incident that may have exposed sensitive financial information, the agency warned law firms. The breach, which has not yet been publicly detailed, could impact the financial data handled by the agency, which operates under the Ministry of Justice and manages billions of pounds in legal funding. […]

Microsoft Bookings Flaw Let Hackers Hijack Meetings

A security flaw in Microsoft Bookings exposed users to significant risks by allowing attackers to alter meeting invitations and calendar details through HTML injection, researchers at ERNW reported. The vulnerability, rooted in inadequate input validation within the Bookings API, impacted fields such as `serviceNotes`, `additionalNotes`, and `body.content`. Exploitation was particularly effective via the “Reschedule” feature, […]

SonicWall Risks Rise as Flaws Exploited Again

SonicWall is facing renewed scrutiny after a resurgence of security flaws in its products landed the company on the U.S. Cybersecurity and Infrastructure Security Agency’s (CISA) catalog of known exploited vulnerabilities. The network security vendor has appeared on the list regularly, raising concerns among cybersecurity professionals and its customer base about the ongoing exploitation of […]

Apple macOS Sandbox Flaw Gets Public Exploit Release

A proof-of-concept exploit targeting a recently patched macOS flaw has been made public, raising concerns among cybersecurity experts. The vulnerability, tracked as CVE-2025-31258, affects the RemoteViewServices framework, which handles content rendering and preview features in macOS. The flaw allows malicious applications to partially escape Apple’s sandbox protections, potentially exposing sensitive system resources and user data. […]

Google Boosts Android 16 With New Security Tools

Google is introducing a range of new security enhancements in its upcoming Android 16 operating system update, aiming to bolster protection for mobile users. The upgrade, announced this week, includes a suite of advanced features designed to detect and prevent scams, secure personal data, and enhance user privacy. While specific tools were not detailed in […]

Europol Dismantles $3 Million Cyber Fraud Syndicate

Law enforcement agencies from five European nations, with coordination from Europol and Eurojust, have dismantled a cross-border cybercrime operation responsible for defrauding over 100 victims through fraudulent investment schemes, according to Infosecurity Magazine. The transnational syndicate is accused of orchestrating sophisticated scams that generated illicit profits exceeding 3 million euros. Authorities say the group lured […]