Iran Shuts Down Nationwide Internet Access to Counter Cyberattacks from Israel and Protect Critical Infrastructure

226/68 Monday, June 23, 2025 The Iranian government has officially confirmed that it has restricted nationwide internet access in response to escalating cyber tensions with Israel. Officials stated that the move was aimed at protecting critical infrastructure from cyberattacks and preventing adversaries from remotely controlling drones via internet networks. According to reports by Iranian news […]

ThaiCERT

June 23, 2025

Cloudflare Mitigates Record-Breaking 7.3 Tbps DDoS Attack

225/68 Monday, June 23, 2025 In May 2025, Cloudflare—one of the world’s leading web infrastructure and cybersecurity companies—announced that it successfully mitigated the largest Distributed Denial of Service (DDoS) attack ever recorded, which peaked at a staggering 7.3 terabits per second (Tbps). The attack targeted a hosting provider and exceeded the previous record by 12%, […]

ThaiCERT

June 23, 2025

Veeam Patches Critical RCE Vulnerability in Backup & Replication

224/68 Friday, June 20, 2025 Veeam has released a security update to address a critical vulnerability in its Backup & Replication product. The flaw, tracked as CVE-2025-23121 and rated CVSS 9.9, allows authenticated domain users to execute arbitrary code remotely on the Backup Server, potentially leading to full system compromise. This vulnerability affects versions 12.3.1.1139 […]

ThaiCERT

June 20, 2025

Russian Hackers Bypass Gmail 2FA Using App-Specific Passwords in Sophisticated Phishing Campaign

223/68 Friday, June 20, 2025 A Russian state-linked hacking group has been detected using a highly targeted phishing technique that bypasses Gmail’s two-factor authentication (2FA) by exploiting a lesser-known Google feature called App-Specific Passwords (ASPs). According to Google’s Threat Intelligence Group, the campaign ran from April to early June, with attackers impersonating officials from the […]

ThaiCERT

June 20, 2025

RCE Exploits Detected Targeting Zyxel Devices via CVE-2023-28771

222/68 Thursday, June 19, 2025 GreyNoise has reported widespread exploitation attempts targeting CVE-2023-28771, a critical Remote Code Execution (RCE) vulnerability (CVSS score: 9.8) affecting Zyxel devices’ IKE decoder via UDP port 500. On June 16, 2025, GreyNoise detected attack attempts from 244 unique IP addresses over a short timeframe, with primary targets located in the […]

ThaiCERT

June 19, 2025

New Variant of ClickFix Malware “LightPerlGirl” Hides in Compromised Travel Websites

221/68 Thursday, June 19, 2025 Cybersecurity researchers at Todyl have uncovered a new variant of the ClickFix malware, dubbed “LightPerlGirl”, on June 13, 2025. This variant was found embedded in a compromised WordPress-based travel website, used as part of a “waterholing” attack—a tactic where attackers lure victims through otherwise trusted websites. The site mimicked a […]

ThaiCERT

June 19, 2025

Anubis Ransomware Encrypts and Wipes Data, Making Recovery Impossible Even After Ransom Payment

220/68 Wednesday, June 18, 2025 Trend Micro has released a report on a newly discovered ransomware strain named “Anubis”, which poses a serious threat due to its unique dual-functionality: it not only encrypts files but also features a “wipe mode” that permanently erases file contents. This destructive behavior makes data recovery impossible, even if the […]

ThaiCERT

June 18, 2025

WestJet, Canada’s Second Largest Airline, Hit by Cyberattack

218/68 Tuesday, June 17, 2025 WestJet, the second-largest airline in Canada, has confirmed a cyberattack that disrupted access to its internal systems and applications. The incident caused service interruptions for some users, although the company emphasized that flight safety has not been affected. In response, WestJet has activated its incident response team to investigate and […]

ThaiCERT

June 17, 2025

Researchers Reveal Use of Uncommon Tools by Fog Ransomware in Recent Financial Sector Attack

217/68 Tuesday, June 17, 2025 Researchers from Symantec have disclosed a targeted ransomware attack carried out in May 2025 by the Fog Ransomware group against a financial company in Asia. The attackers employed a combination of penetration testing tools and monitoring software rarely seen in typical ransomware operations, including Syteca, GC2, Adaptix, and Stowaway. Notably, […]

ThaiCERT

June 17, 2025
1 10 11 12 41