Japanese Authorities Release Free Decryption Tool for Phobos and 8Base Ransomware

262/68 Monday, July 21, 2025 Japan’s cybersecurity authorities, in collaboration with Europol and the FBI, have released a free decryption tool for victims of the Phobos and 8Base ransomware strains, allowing affected users to recover their encrypted files without paying ransom. The tool is available for download on the Japanese Police Agency’s website and the […]

ThaiCERT

July 21, 2025

China Uses “Massistant” Tool to Extract Data from Seized Mobile Devices

261/68 Monday, July 21, 2025 Cybersecurity researchers have uncovered details about “Massistant,” a mobile forensic analysis tool used by Chinese law enforcement to extract data from confiscated smartphones. Developed by SDIC Intelligence Xiamen Information Co., Ltd.-formerly known as Meiya Pico-the tool reflects the company’s specialization in electronic data forensics and network security technologies. According to […]

ThaiCERT

July 21, 2025

Louis Vuitton Confirms Data Breach in Multiple Countries Stemming from a Single Incident, Likely Linked to ShinyHunters

260/68 Friday, July 18, 2025 Luxury fashion brand Louis Vuitton has officially confirmed that the data breach affecting customer information in the United Kingdom, South Korea, and Turkey originated from the same incident. The company suspects a connection to the notorious ransomware group ShinyHunters, which has a track record of attacking major organizations worldwide. According […]

ThaiCERT

July 18, 2025

“BADBOX 2.0” Malware Found Pre-Installed in Android-Based IoT Devices, Spreads Globally

259/68 Friday, July 18, 2025 Cybersecurity researchers have uncovered a new strain of malware, “BADBOX 2.0,” which has been found pre-installed in over one million Android-based IoT devices across 222 countries. This dangerous malware turns smart devices into proxy nodes in a global botnet, enabling cybercriminals to conduct large-scale fraud and malicious cyber activities. Due […]

ThaiCERT

July 18, 2025

Belk Confirms Cyberattack by DragonForce Group, Over 150GB of Internal Data Stolen

258/68 Thursday, July 17, 2025 Belk, a major U.S. department store chain, has confirmed it was the target of a cyberattack between May 7–11, 2025. According to the company’s statement, unauthorized actors gained access to internal systems and exfiltrated sensitive company documents. The ransomware group “DragonForce” has claimed responsibility for the attack, stating it stole […]

ThaiCERT

July 17, 2025

Hyper-Volumetric DDoS Attacks Reach 7.3 Tbps, Targeting Critical Sectors Worldwide

257/68 Thursday, July 17, 2025 Cloudflare has released its Q2 2025 threat report, revealing that it mitigated over 7.3 million Distributed Denial-of-Service (DDoS) attacks during the quarter. Although this marks a drop from 20.5 million attacks in Q1, the severity of attacks has sharply increased. Notably, “hyper-volumetric DDoS” attacks-those involving massive data volumes-rose to 6,500 […]

ThaiCERT

July 17, 2025

CISA Warns of Critical Vulnerability in Train Brake Systems-Remote Disruption Possible Using $500 Radio

256/68 Wednesday, July 16, 2025 The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning about a critical vulnerability, CVE-2025-1727, affecting End-of-Train (EoT) and Head-of-Train (HoT) systems—wireless communication platforms used to control train braking operations. The flaw, categorized under Weak Authentication (CWE-1390), could allow a malicious actor to remotely send spoofed brake commands […]

ThaiCERT

July 16, 2025

Critical eSIM Vulnerability in Kigen’s eUICC Cards Puts Billions of IoT Devices at Risk

255/68 Wednesday, July 16, 2025 Cybersecurity researchers from Security Explorations have disclosed a major vulnerability in eSIM technology used in Kigen’s eUICC cards, potentially exposing billions of IoT devices worldwide to malicious attacks. The flaw stems from the use of test profiles defined by the GSMA TS.48 standard, specifically version 6.0 and earlier, which allows […]

ThaiCERT

July 16, 2025

Wing FTP Server Vulnerability Exploited Within Hours of Technical Disclosure

254/68 Tuesday, July 15, 2025 Cybersecurity experts are warning of a critical vulnerability tracked as CVE-2025-47812, which has been actively exploited in the wild. The flaw affects Wing FTP Server software and carries a maximum CVSS severity score of 10.0 This vulnerability allows unauthenticated remote code execution (RCE) with root or SYSTEM privileges. Alarmingly, exploitation […]

ThaiCERT

July 15, 2025

Beware of North Korean IT Job Seeker Infiltration Targeting Global Companies

253/68 Tuesday, July 15, 2025 The global cybersecurity community is facing a rising threat from a covert operation involving fake IT workers linked to the North Korean government. These operatives are infiltrating international companies by applying for remote engineering and software development roles. Using seemingly legitimate résumés, they claim experience at top global firms or […]

ThaiCERT

July 15, 2025
1 19 20 21 53