Critical Vulnerability Discovered in the n8n Platform (CVE-2025-68613)

547/68 Thursday, December 25, 2025 Cybersecurity researchers have disclosed a critical vulnerability in the n8n workflow automation platform, tracked as CVE-2025-68613, with a CVSS score of 9.9 (Critical). Under certain conditions, this vulnerability could allow an attacker to execute arbitrary code on affected systems. n8n is a widely used workflow automation platform, with approximately 57,000 […]

ThaiCERT

December 25, 2025

New WebRAT Malware Campaign Disguises Itself as Fake Vulnerability Exploit Code on GitHub

546/68 Thursday, December 25, 2025 Recent reports have uncovered a new wave of WebRAT malware that has shifted its targets from gamers-previously infected via cheats for games such as Roblox or Counter-Strike-to software developers and security administrators. Attackers have created fake GitHub repositories claiming to host proof-of-concept (PoC) exploit code for newly disclosed vulnerabilities, such […]

ThaiCERT

December 25, 2025

New Android Malware “Wonderland” Uses Fake Apps to Steal OTPs and Remotely Take Over Devices

545/68 Tuesday, December 24, 2025 A new strain of Android malware known as “Wonderland” (also referred to as WretchedCat) has been observed spreading in Uzbekistan. The TrickyWonders group has shifted its tactics from directly tricking victims into installing malware to using dropper applications disguised as legitimate apps, such as fake Google Play apps or file […]

ThaiCERT

December 24, 2025

Interpol Operation Dismantles Six Ransomware Families, Hundreds of Suspects Arrested

544/68 Tuesday, December 24, 2025 The International Criminal Police Organization (Interpol) has announced the successful outcome of a large-scale international operation known as Operation Sentinel, conducted between 27 October and 27 November in cooperation with law enforcement agencies from 19 countries. The operation resulted in the arrest of 574 suspects, the seizure and freezing of […]

ThaiCERT

December 24, 2025

Developer Alert: Malicious npm and NuGet Packages Found Stealing WhatsApp Data and Google Ads Credentials

543/68 Wednesday, December 24, 2025 Cybersecurity researchers have disclosed a new supply chain attack targeting software developers, involving malicious packages distributed through popular package repositories. One of the threats identified is a package named “lotusbail” on the npm repository, which has been downloaded more than 56,000 times since May 2025. While the package functions as […]

ThaiCERT

December 24, 2025

Cybersecurity Researchers Detect Renewed Activity by APT Group “Infy” (aka “Prince of Persia”)

542/68 Tuesday, December 23, 2025 Cybersecurity researchers have observed renewed activity from a sophisticated advanced persistent threat (APT) group known as Infy, also referred to as “Prince of Persia.” The group has a long history of cyber-espionage operations, and its latest resurgence shows an expansion of targets across multiple regions worldwide. In this campaign, the […]

ThaiCERT

December 23, 2025

Waymo Temporarily Suspends Service After Power Outage in San Francisco

541/68 Tuesday, December 23, 2025 Waymo, Alphabet’s autonomous driving technology company, has announced a temporary suspension of its robotaxi service in San Francisco following a widespread power outage that left multiple self-driving vehicles stranded on city streets. A Waymo spokesperson said the company decided to halt operations as a safety precaution and is working closely […]

ThaiCERT

December 23, 2025

UK Government Hit by Cyberattack, Visa Data Exposed; Experts Warn of Long-Term National Security Impact

540/68 Tuesday, December 23, 2025 The UK government has acknowledged a data breach resulting from a cyberattack. Chris Bryant, Minister of State at the Department for Business, stated that officials moved quickly to close the security vulnerability as soon as it was detected and that an urgent investigation is underway. The compromised data is related […]

ThaiCERT

December 23, 2025

RansomHouse Malware Upgrades Its New “Mario” Tool With Multi-Layer Encryption, Making Recovery More Difficult

539/68 Monday, December 22, 2025 RansomHouse, a ransomware group operating under a Ransomware-as-a-Service (RaaS) model, has been observed upgrading its file-encryption tool from a single-stage process to a more complex multi-layer encryption scheme. The new approach uses two encryption keys-a 32-byte primary key and an 8-byte secondary key-significantly increasing encryption complexity, reducing the chances of […]

ThaiCERT

December 22, 2025

ATM Jackpotting Network Dismantled: U.S. Department of Justice Charges 54 Individuals

538/68 Monday, December 22, 2025 The U.S. Department of Justice (DoJ) has announced criminal charges against 54 individuals involved in a nationwide ATM jackpotting scheme that caused millions of dollars in losses. Investigators have linked the operation to the transnational criminal organization Tren de Aragua (TdA). The defendants face multiple charges, including fraud, money laundering, […]

ThaiCERT

December 22, 2025
1 2 3 66