Home
Services
Credentials
News
Contact
News
NEWS
The latest news in cybersecurity!
JUN
28
FBI Warns of Scattered Spider's Expanding Attacks on Airlines Using Social Engineering
By:
info@thehackernews.com (The Hacker News)
on
JUN
28
The U.S. Federal Bureau of Investigation (FBI) has revealed that it has observed the notorious cybercrime group Scattered Spider broadening its targeting footprint to strike the airline sector. To that end, the agency said it's actively working with aviation and industry partners to combat the activity and help victims. "These actors rely on social engineering techniques, often impersonating
Read more >>
JUN
28
GIFTEDCROOK Malware Evolves: From Browser Stealer to Intelligence-Gathering Tool
By:
info@thehackernews.com (The Hacker News)
on
JUN
28
The threat actor behind the GIFTEDCROOK malware has made significant updates to turn the malicious program from a basic browser data stealer to a potent intelligence-gathering tool. "Recent campaigns in June 2025 demonstrate GIFTEDCROOK's enhanced ability to exfiltrate a broad range of sensitive documents from the devices of targeted individuals, including potentially proprietary files and
Read more >>
JUN
28
Facebook’s New AI Tool Asks to Upload Your Photos for Story Ideas, Sparking Privacy Concerns
By:
info@thehackernews.com (The Hacker News)
on
JUN
28
Facebook, the social network platform owned by Meta, is asking for users to upload pictures from their phones to suggest collages, recaps, and other ideas using artificial intelligence (AI), including those that have not been directly uploaded to the service. According to TechCrunch, which first reported the feature, users are being served a new pop-up message asking for permission to "allow
Read more >>
JUN
27
Over 1,000 SOHO Devices Hacked in China-linked LapDogs Cyber Espionage Campaign
By:
info@thehackernews.com (The Hacker News)
on
JUN
27
Threat hunters have discovered a network of more than 1,000 compromised small office and home office (SOHO) devices that have been used to facilitate a prolonged cyber espionage infrastructure campaign for China-nexus hacking groups. The Operational Relay Box (ORB) network has been codenamed LapDogs by SecurityScorecard's STRIKE team. "The LapDogs network has a high concentration of victims
Read more >>
JUN
27
PUBLOAD and Pubshell Malware Used in Mustang Panda's Tibet-Specific Attack
By:
info@thehackernews.com (The Hacker News)
on
JUN
27
A China-linked threat actor known as Mustang Panda has been attributed to a new cyber espionage campaign directed against the Tibetan community. The spear-phishing attacks leveraged topics related to Tibet, such as the 9th World Parliamentarians' Convention on Tibet (WPCT), China's education policy in the Tibet Autonomous Region (TAR), and a recently published book by the 14th Dalai Lama,
Read more >>
JUN
27
Business Case for Agentic AI SOC Analysts
By:
info@thehackernews.com (The Hacker News)
on
JUN
27
Security operations centers (SOCs) are under pressure from both sides: threats are growing more complex and frequent, while security budgets are no longer keeping pace. Today’s security leaders are expected to reduce risk and deliver results without relying on larger teams or increased spending. At the same time, SOC inefficiencies are draining resources. Studies show that up to half of all
Read more >>
JUN
27
Chinese Group Silver Fox Uses Fake Websites to Deliver Sainbox RAT and Hidden Rootkit
By:
info@thehackernews.com (The Hacker News)
on
JUN
27
A new campaign has been observed leveraging fake websites advertising popular software such as WPS Office, Sogou, and DeepSeek to deliver Sainbox RAT and the open-source Hidden rootkit. The activity has been attributed with medium confidence to a Chinese hacking group called Silver Fox (aka Void Arachne), citing similarities in tradecraft with previous campaigns attributed to the threat actor.
Read more >>
JUN
27
MOVEit Transfer Faces Increased Threats as Scanning Surges and CVE Flaws Are Targeted
By:
info@thehackernews.com (The Hacker News)
on
JUN
27
Threat intelligence firm GreyNoise is warning of a "notable surge" in scanning activity targeting Progress MOVEit Transfer systems starting May 27, 2025—suggesting that attackers may be preparing for another mass exploitation campaign or probing for unpatched systems.MOVEit Transfer is a popular managed file transfer solution used by businesses and government agencies to share sensitive data
Read more >>
JUN
27
OneClik Malware Targets Energy Sector Using Microsoft ClickOnce and Golang Backdoors
By:
info@thehackernews.com (The Hacker News)
on
JUN
27
Cybersecurity researchers have detailed a new campaign dubbed OneClik that leverages Microsoft's ClickOnce software deployment technology and bespoke Golang backdoors to compromise organizations within the energy, oil, and gas sectors. "The campaign exhibits characteristics aligned with Chinese-affiliated threat actors, though attribution remains cautious," Trellix researchers Nico Paulo
Read more >>
JUN
26
Critical Open VSX Registry Flaw Exposes Millions of Developers to Supply Chain Attacks
By:
info@thehackernews.com (The Hacker News)
on
JUN
26
Cybersecurity researchers have disclosed a critical vulnerability in the Open VSX Registry ("open-vsx[.]org") that, if successfully exploited, could have enabled attackers to take control of the entire Visual Studio Code extensions marketplace, posing a severe supply chain risk. "This vulnerability provides attackers full control over the entire extensions marketplace, and in turn, full control
Read more >>
More posts
Contact Us
014
91 842 907
info@pensecure.co.uk
Graffix House,
Newtown Rd,
Henley-on-Thames,
Oxfordshire,
RG9 1LY
Business Hours
Mon - Fri
9:00 am
-
5:00 pm
Sat - Sun
Closed
Copyright © PenSecure
Share by: