Warning to VSCode Users: Malicious Extensions Containing “GlassWorm” Malware Steal GitHub Accounts and Crypto Wallets

455/68 Monday, November 10, 2025 Security researchers have revealed that the GlassWorm malware campaign has resurfaced on the OpenVSX platform after being detected last month. This time, the malware is embedded in three Visual Studio Code (VSCode) extensions: These extensions have accumulated over 10,000 downloads. GlassWorm uses transactions on the Solana blockchain to retrieve payloads […]

ThaiCERT

November 10, 2025

Cisco Fixes UCCX Vulnerability Allowing Remote Attackers to Execute Root-Level Commands Without Authentication

454/68 Monday, November 10, 2025 Cisco has released a security update addressing a critical vulnerability in Unified Contact Center Express (UCCX), tracked as CVE-2025-20354, with a CVSS score of 9.8. The flaw stems from improper authentication within the Java Remote Method Invocation (RMI) process, allowing remote attackers to upload malicious files and execute commands on […]

ThaiCERT

November 10, 2025

“Landfall” Spyware Targets Samsung Users via Zero-Day Vulnerability

453/68 Monday, November 10, 2025 A new report from Palo Alto Networks’ Unit 42 reveals the discovery of a new spyware strain called “Landfall,” designed specifically to target Samsung Galaxy devices. The malware is capable of fully compromising infected devices for surveillance, including recording phone calls, tracking device location, silently taking photos, and stealing contacts […]

ThaiCERT

November 10, 2025

Google Warns: New Malware Uses AI to Modify Itself at Runtime to Evade Detection

452/68 Friday, November 7, 2025 Researchers at Google Threat Intelligence Group (GTIG) have warned of an emerging trend in malware that leverages artificial intelligence (AI) at runtime to change its behavior in real time and harvest data from target systems. These capabilities are being used to evade security detections and continuously adapt malware behavior — […]

ThaiCERT

November 7, 2025

CISA Adds Gladinet CentreStack and CWP Control Web Panel Vulnerabilities to Known Exploited Vulnerabilities (KEV) Catalog

451/68 Friday, November 7, 2025 The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added vulnerabilities affecting Gladinet CentreStack / Triofox and CWP Control Web Panel to its Known Exploited Vulnerabilities (KEV) catalog. CentreStack and Triofox are enterprise solutions for Enterprise File Sharing and hybrid cloud storage, enabling secure access to file servers and SMB/NFS […]

ThaiCERT

November 7, 2025

Gootloader Malware Resurfaces, Using Fake Document Websites and New Evasion Techniques to Bypass Detection

450/68 Friday, November 7, 2025 After seven months of inactivity, the Gootloader malware operation has returned, continuing to use SEO poisoning to manipulate search engine results and promote fake websites that lure users into downloading documents. These sites typically impersonate platforms offering free legal templates or contract forms. When victims search for such documents and […]

ThaiCERT

November 7, 2025

Vulnerabilities in Microsoft Teams Allow Attackers to Impersonate Colleagues and Modify Messages Without Detection

449/68 Thursday, November 6, 2025 Cybersecurity researchers have disclosed four vulnerabilities in Microsoft Teams that could allow attackers to impersonate coworkers, edit messages without being detected, and trick victims into believing that messages come from executives or trusted individuals. The issues were reported to Microsoft in March 2024, with partial fixes released in August 2024 […]

ThaiCERT

November 6, 2025

Google Releases Security Update to Patch Android Vulnerabilities That Could Allow Remote Code Execution

448/68 Thursday, November 6, 2025 Google has released the November 2025 Android security update, addressing two significant vulnerabilities in the System component. One of the flaws is classified as critical, as it could enable Remote Code Execution (RCE) without requiring additional privileges or user interaction. These fixes are included in the Android security patch level […]

ThaiCERT

November 6, 2025

Google adds Autofill support for storing passport and driver’s license information – convenient, but does it increase the risk of data exposure?

447/68 Thursday, November 6, 2025 Google has expanded the capabilities of Chrome’s Autofill feature to store and automatically enter more sensitive personal information, including driver’s license details, passport information, and even vehicle identification numbers (VINs). The goal is to make online form-filling faster and more convenient. Google states that the upgrade includes stronger privacy protections […]

ThaiCERT

November 6, 2025

Hackers Use Remote Monitoring and Management (RMM) Tools to Breach Transportation Companies and Control Cargo Shipments

446/68 Wednesday, November 5, 2025 Cybersecurity researchers are warning that cybercriminals are abusing Remote Monitoring and Management (RMM) tools such as ScreenConnect, SimpleHelp, PDQ Connect, and LogMeIn Resolve to infiltrate transportation carriers and freight brokerage companies. Attackers install remote-control software through malicious links or phishing emails, take over employee accounts, and gain access to shipment […]

ThaiCERT

November 5, 2025
1 9 10 11 65