Botnet “Aisuru” Launches Record-Breaking 20 Tbps DDoS Attacks Using Global IoT Devices, Disrupting Internet Infrastructure

432/68 Thursday, October 30, 2025 A new report from cybersecurity company Netscout has revealed the discovery of “Aisuru”, a next-generation botnet evolved from the Mirai malware family. Aisuru was behind several massive Distributed Denial of Service (DDoS) attacks in October 2025, reaching an unprecedented 20 terabits per second (Tbps) and more than 4 trillion packets […]

ThaiCERT

October 30, 2025

Massive Smishing Campaign Uses Over 194,000 Domains to Target Victims Worldwide

431/68 Wednesday, October 29, 2025 Palo Alto Networks has issued a warning about a large-scale SMS phishing (smishing) campaign linked to Chinese-speaking threat actors. The operation, which began in April 2024 and continues to this day, has leveraged more than 194,000 fraudulent domains impersonating various organizations and services. These include toll payment systems, parcel delivery […]

ThaiCERT

October 29, 2025

New Android Malware “HyperRat” Sold as Spyware-as-a-Service (MaaS)

430/68 Wednesday, October 29, 2025 Researchers from iVerify have uncovered a new Android malware named HyperRat, a Remote Access Trojan (RAT) being promoted on cybercrime forums under a Malware-as-a-Service (MaaS) model. By simply subscribing and paying for access, attackers receive a custom-built APK along with credentials to a web control panel, enabling them to immediately […]

ThaiCERT

October 29, 2025

New data shows organisations worldwide are refusing to pay ransomware demands hacker profits hit an all-time low

429/68 Wednesday, October 29, 2025 A recent report from Coveware, a ransomware response specialist, reveals a key statistic: the ransom-payment rate among victimised organisations has fallen to a record low. In the third quarter of 2025 only 23% of attacked companies paid a ransom. This continues a six-year downward trend (compared with 28% in Q1 […]

ThaiCERT

October 29, 2025

Hackers Modify RedTiger Tool into Malware that Steals Discord Accounts and Payment Data

428/68 Tuesday, October 28, 2025 Security researchers have discovered that threat actors repurposed the open-source penetration-testing tool RedTiger, modifying it into an info-stealer malware. Attackers compile the tool into binaries and give them game- or Discord-related names to trick users into downloading them. When executed, the malware scans for Discord and web browser databases to […]

ThaiCERT

October 28, 2025

Safepay Ransomware Group Claims Hack on Xortec, German CCTV Provider

427/68 Tuesday, October 28, 2025 The Safepay ransomware group has claimed responsibility for a cyberattack that breached the systems of Xortec GmbH, a German provider of CCTV and security solutions. The group listed the company on its Data Leak Site, setting October 27, 2025, as the ransom payment deadline. Xortec, headquartered in Frankfurt with multiple […]

ThaiCERT

October 28, 2025

WordPress Users Warned: Massive Hacker Campaign Exploits Old GutenKit and Hunk Companion Plugins

426/68 Tuesday, October 28, 2025 A large-scale attack campaign is targeting WordPress websites running outdated versions of the GutenKit and Hunk Companion plugins. Security company Wordfence reported blocking as many as 8.7 million attack attempts within just two days (October 8–9). The attacks exploit critical vulnerabilities (CVSS 9.8) that allow attackers to install arbitrary plugins […]

ThaiCERT

October 28, 2025

Russian food safety regulator hit by DDoS attack, causing nationwide agricultural shipment delays

425/68 Monday, October 27, 2025 The Federal Service for Veterinary and Phytosanitary Surveillance, under Russia’s Ministry of Agriculture, suffered a major DDoS attack that temporarily disrupted its agricultural and chemical tracking systems, VetIS and Saturn. The incident severely impacted food transportation across the country, particularly the Mercury subsystem, which is used to issue electronic veterinary […]

ThaiCERT

October 27, 2025

“Smishing Triad” – Chinese PhaaS Group Linked to Over 194,000 Malicious Domains in Global Smishing Campaign

423/68 Monday, October 27, 2025 Researchers from Palo Alto Networks Unit 42 have uncovered evidence of a large-scale, ongoing smishing (SMS phishing) operation tied to a China-based threat actor group known as the “Smishing Triad.” The group has been linked to more than 194,000 malicious domains. Since January 1, 2024, the group has been distributing […]

ThaiCERT

October 27, 2025
1 2 3 4 55