Router maker Zyxel tells customers to replace vulnerable hardware exploited by hackers

Taiwanese hardware maker Zyxel says it has no plans to release a patch for two actively exploited vulnerabilities affecting potentially thousands of customers. Threat intelligence startup GreyNoise warned late last month that a critical-rated zero-day vulnerability impacting Zyxel routers was Read More …

Analyzing ELF/Sshdinjector.A!tr with a Human and Artificial Analyst

ELF/Sshdinjector.A!tr is a collection of malware that can be injected into the SSH daemon. Samples of this malware collection surfaced around mid-November 2024. While Fortinet researchers have a good amount of threat intelligence on them (e.g., they are attributed to Read More …

Spyware maker Paragon confirms US government is a customer

Israeli spyware maker Paragon Solutions confirmed to TechCrunch that it sells its products to the U.S. government and other unspecified allied countries. Paragon’s executive chairman John Fleming said in a statement to TechCrunch on Tuesday that “Paragon licenses its technology Read More …

Deloitte to provide Rhode Island $5 million toward data breach aftermath expense

Deloitte will provide Rhode Island with $5 million to go toward paying expenses related to the RIBridges data breach that took place in December of 2024. Separately, Deloitte will also cover the cost of the data breach call center, credit Read More …

CVE-2025-0411: Ukrainian Organizations Targeted in Zero-Day Campaign and Homoglyph Attacks

In September, 2024 the Zero Day Initiative (ZDI) Threat Hunting team identified the exploitation of a 7-Zip zero-day vulnerability used in a SmokeLoader malware campaign targeting Ukrainian entities. The vulnerability, CVE-2025-0411, was disclosed to 7-Zip creator Igor Pavlov, leading to Read More …

Funksec Ransomware Teams Up with Another Ransomware Group to Double Down on Targets

FunkSec is a relatively new but highly active ransomware group that, as of this writing, has targeted several dozen victims across industries like government, banking, communications, and education. In a recent blog post, the group announced a partnership with another Read More …

Gov. Abbott looks to combat cyber attacks with Texas Cyber Command

Gov. Greg Abbott announced plans to create a Texas Cyber Command to be headquartered in San Antonio during his annual State of the State address Sunday evening. The Texas Cyber Command would create a strategy for the state to address Read More …

Malicious packages deepseeek and deepseekai published in Python Package Index

As part of their research and monitoring efforts, the Supply Chain Security team of the Threat Intelligence department of the Positive Technologies Expert Security Center (PT ESC) detected and prevented a malicious campaign in the Python Package Index (PyPI) package Read More …

USAID security leaders removed after refusing Elon Musk’s DOGE employees access to secure systems

The U.S. Agency for International Development’s director of security and his deputy were placed on administrative leave Saturday after they tried to prevent employees from the Department of Government Efficiency from accessing secure USAID systems, five sources familiar with the Read More …