Brokewell Malware on Android Disguised as Fake TradingView Ads

317/68 Tuesday, September 2, 2025 Cybersecurity researchers from Bitdefender have discovered a fake advertising campaign using Meta’s platform to promote a free TradingView Premium app for Android, which in reality is the Brokewell malware designed to steal data and remotely control devices. The campaign, which began on July 22, involved over 75 ad variations tailored […]

ThaiCERT

September 2, 2025

WhatsApp Releases Update to Patch Zero-Click Vulnerability on iOS and macOS

316/68 Monday, September 1, 2025 WhatsApp has issued a security patch addressing CVE-2025-55177 (CVSS 5.4), which has been actively exploited in the wild in conjunction with Apple’s zero-day vulnerability CVE-2025-43300. The flaw stems from insufficient authorization in the Linked Device Synchronization process, which could allow attackers to force unauthorized URL content to be processed on […]

ThaiCERT

September 1, 2025

Fake Facebook Ads Spread Brokewell Malware Targeting Android Users

315/68 Monday, September 1, 2025 Researchers from Bitdefender Labs have issued a warning about a malicious advertising (malvertising) campaign on Facebook that tricks Android users into downloading the Brokewell spyware, disguised as ads from TradingView, a popular market analysis platform. Instead of indiscriminately targeting random users, the campaign carefully selected victims through Facebook’s ad system. […]

ThaiCERT

September 1, 2025

UNC6395 Targets Salesloft in Drift OAuth Token Theft Campaign

314/68 Friday, August 29, 2025 Researchers from Google Threat Intelligence Group (GTIG) and Mandiant have uncovered a large-scale campaign targeting the sales automation platform Salesloft to steal OAuth and refresh tokens linked to the Drift AI Chat Agent. The threat actor group UNC6395 leveraged this vector to extract data from the Salesforce systems of multiple […]

ThaiCERT

August 29, 2025

Salt Typhoon: A Global Hacking Campaign Linked to Chinese Technology Companies

313/68 Friday, August 29, 2025 Cybersecurity agencies from the United States and the United Kingdom, along with partners from over 12 other countries, have revealed the connection of a global hacking operation known as Salt Typhoon to three Chinese technology companies: Sichuan Juxinhe Network Technology Co. Ltd., Beijing Huanyu Tianqiong Information Technology Co., and Sichuan […]

ThaiCERT

August 29, 2025

Citrix Releases Patches for Three Vulnerabilities in NetScaler

312/68 Thursday, August 28, 2025 Citrix has released security patches to address three vulnerabilities affecting NetScaler ADC and NetScaler Gateway: CVE-2025-7775, CVE-2025-7776, and CVE-2025-8424. Notably, CVE-2025-7775 has already been confirmed as actively exploited on unpatched devices. Vulnerability Details: Recommended Action The Cloud Software Group strongly advises all users to update to the secure versions as […]

ThaiCERT

August 28, 2025

“PromptLock”: First-Ever Ransomware Leveraging AI for File Encryption Discovered

311/68 Thursday, August 28, 2025 Cybersecurity researchers at ESET have uncovered a new type of malware named PromptLock, identified as the first ransomware to leverage artificial intelligence (AI) as part of its attack process. This malware operates using prompt injection techniques, embedding pre-defined commands to manipulate AI models into performing malicious tasks-such as scanning local […]

ThaiCERT

August 28, 2025

Docker Releases Patch for CVE-2025-9074 Vulnerability in Docker Desktop

310/68 Wednesday, August 27, 2025 Docker has released a security update to address a critical vulnerability, CVE-2025-9074, with a CVSS score of 9.3, affecting Docker Desktop on both Windows and macOS. The flaw allows attackers to perform a Container Escape-gaining unauthorized access from within a container to the host system. The vulnerability has been fixed […]

ThaiCERT

August 27, 2025

Warning: Fake Voicemail Emails Spreading UpCrypter Malware on Windows Systems

309/68 Wednesday, August 27, 2025 FortiGuard Labs, the threat intelligence division of Fortinet, has issued a global cybersecurity alert regarding a rapidly spreading phishing campaign. The attack leverages deceptive emails titled “Missed Phone Call” or “Voicemail Message”, as well as fake purchase orders, to trick Windows users into downloading malicious files that silently install the […]

ThaiCERT

August 27, 2025

DaVita Confirms Ransomware Attack Exposed Data of Nearly 2.7 Million Patients

308/68 Tuesday, August 26, 2025 DaVita Inc., a U.S.-based dialysis service provider, has confirmed that a ransomware attack led to the leak of personal and health information affecting nearly 2.7 million individuals. The breach was publicly disclosed on April 18, 2025, after DaVita detected encryption activity on its network systems on April 12. To maintain […]

ThaiCERT

August 27, 2025
1 15 16 17 57