DoorDash Discloses Data Breach After Employee Falls Victim to Social Engineering Attack

475/68 Wednesday, November 19, 2025 DoorDash, the major U.S. food-delivery platform, has disclosed a data breach affecting customers, delivery drivers (Dashers), and merchants after one of its employees fell victim to a social engineering attack, allowing unauthorized actors to access personal information. The incident was discovered on October 25, 2025, and DoorDash has begun notifying […]

ThaiCERT

November 19, 2025

Cloudflare Outage Causes Global Internet Disruption

474/68 Wednesday, November 19, 2025 On November 18, 2025, internet users around the world were unable to access numerous websites and applications due to a major outage at Cloudflare-one of the world’s largest internet infrastructure providers, handling roughly 20% of global internet traffic. Dane Knecht, Cloudflare’s Chief Technology Officer (CTO), explained that the incident stemmed […]

ThaiCERT

November 19, 2025

Google Tightens Controls on Android Apps With Excessive Background Activity,May Reduce Play Store Visibility Starting in 2026

473/68 Tuesday, November 18, 2025 Google is preparing to enforce stricter Play Store policies targeting Android apps that run excessively in the background and drain battery life, using a new metric called “Excessive Partial Wake Locks,” developed in collaboration with Samsung. Apps that exhibit such behavior may face reduced visibility in Play Store recommendations or […]

ThaiCERT

November 18, 2025

AIPAC Discloses Data Breach Affecting Hundreds of Individuals

472/68 Tuesday, November 18, 2025 The American Israel Public Affairs Committee (AIPAC) has disclosed a data breach resulting from unauthorized access to systems belonging to an external third-party company. The organization reported the incident to the Attorney General’s Office on November 14, 2025. According to the disclosure, the breach affected 810 individuals, with unauthorized access […]

ThaiCERT

November 18, 2025

Iranian Hackers Launch “SpearSpecter” Espionage Operation Targeting Security and Government Agencies

471/68 Tuesday, November 18, 2025 The Israel National Digital Agency (INDA) has published a report revealing a new cyber-espionage campaign called “SpearSpecter,” operated by APT42, a threat group backed by the Iranian government and linked to the Islamic Revolutionary Guard Corps (IRGC). The operation was first detected in early September 2025 and is still ongoing. […]

ThaiCERT

November 18, 2025

Microsoft Investigating KB5068781 Issues After Windows 10 ESU Update Fails to Install

470/68 Monday, November 17, 2025 Microsoft has confirmed that it is urgently investigating technical issues affecting the Extended Security Update (ESU) patch KB5068781 for Windows 10, released on November 11. Many enterprise users have reported that the update fails to install, returning error code 0x800f0922. According to Microsoft, the issue occurs only on devices activated […]

ThaiCERT

November 17, 2025

ASUS Patches Critical Vulnerability CVE-2025-59367 in DSL Routers

469/68 Monday, November 17, 2025 ASUS has released an update to fix a critical vulnerability identified as CVE-2025-59367 (CVSS 9.3), an authentication bypass flaw that allows remote attackers to access unpatched routers without authentication. The vulnerability affects the following DSL router models: DSL-AC51, DSL-N16, and DSL-AC750. ASUS has issued firmware version 1.1.2.3_1010 to address the […]

ThaiCERT

November 17, 2025

Logitech Confirms Data Breach Orchestrated by Clop Hackers Through Third-Party Software Vulnerability

468/68 Monday, November 17, 2025 Logitech, the well-known computer peripherals manufacturer, has filed a disclosure with the U.S. Securities and Exchange Commission (SEC) confirming that a data breach did occur. The company stated that while attackers were able to access and steal certain data, the incident did not affect manufacturing operations, business continuity, or product […]

ThaiCERT

November 17, 2025

DanaBot Resurfaces After Six-Month Hiatus Despite Major Takedown Operation

467/68 Friday, November 14, 2025 Researchers have detected new DanaBot activity, marking the return of the malware after it was dismantled during the large-scale international Operation Endgame in May. The newly observed variant features a rebuilt command-and-control (C2) infrastructure using Tor-based (.onion) domains and backconnect nodes to remotely control infected devices. Investigators also identified several […]

ThaiCERT

November 14, 2025

Chrome 142 and Firefox 145 Release Security Updates to Patch Multiple High-Severity Vulnerabilities

466/68 Friday, November 14, 2025 Google and Mozilla have released their latest security updates for the Chrome and Firefox browsers, addressing several high-severity vulnerabilities. In the Chrome 142 update, Google patched CVE-2025-13042, an inappropriate implementation issue in the V8 JavaScript engine. Although specific technical details have not yet been disclosed, the flaw could potentially lead […]

ThaiCERT

November 14, 2025
1 7 8 9 65