RCE Exploits Detected Targeting Zyxel Devices via CVE-2023-28771

222/68 Thursday, June 19, 2025 GreyNoise has reported widespread exploitation attempts targeting CVE-2023-28771, a critical Remote Code Execution (RCE) vulnerability (CVSS score: 9.8) affecting Zyxel devices’ IKE decoder via UDP port 500. On June 16, 2025, GreyNoise detected attack attempts from 244 unique IP addresses over a short timeframe, with primary targets located in the […]

ThaiCERT

June 19, 2025

New Variant of ClickFix Malware “LightPerlGirl” Hides in Compromised Travel Websites

221/68 Thursday, June 19, 2025 Cybersecurity researchers at Todyl have uncovered a new variant of the ClickFix malware, dubbed “LightPerlGirl”, on June 13, 2025. This variant was found embedded in a compromised WordPress-based travel website, used as part of a “waterholing” attack—a tactic where attackers lure victims through otherwise trusted websites. The site mimicked a […]

ThaiCERT

June 19, 2025

Anubis Ransomware Encrypts and Wipes Data, Making Recovery Impossible Even After Ransom Payment

220/68 Wednesday, June 18, 2025 Trend Micro has released a report on a newly discovered ransomware strain named “Anubis”, which poses a serious threat due to its unique dual-functionality: it not only encrypts files but also features a “wipe mode” that permanently erases file contents. This destructive behavior makes data recovery impossible, even if the […]

ThaiCERT

June 18, 2025

WestJet, Canada’s Second Largest Airline, Hit by Cyberattack

218/68 Tuesday, June 17, 2025 WestJet, the second-largest airline in Canada, has confirmed a cyberattack that disrupted access to its internal systems and applications. The incident caused service interruptions for some users, although the company emphasized that flight safety has not been affected. In response, WestJet has activated its incident response team to investigate and […]

ThaiCERT

June 17, 2025

Researchers Reveal Use of Uncommon Tools by Fog Ransomware in Recent Financial Sector Attack

217/68 Tuesday, June 17, 2025 Researchers from Symantec have disclosed a targeted ransomware attack carried out in May 2025 by the Fog Ransomware group against a financial company in Asia. The attackers employed a combination of penetration testing tools and monitoring software rarely seen in typical ransomware operations, including Syteca, GC2, Adaptix, and Stowaway. Notably, […]

ThaiCERT

June 17, 2025

Palo Alto Networks Patches Privilege Escalation Vulnerabilities and Chrome Security Updates

216/68 Monday, June 16, 2025 Palo Alto Networks has released multiple security patches across its products, including fixes for seven privilege escalation vulnerabilities and a set of Chrome security updates for the Prisma Access Browser. The most critical flaw, CVE-2025-4232 (CVSS score: 7.1), is an improper neutralization of wildcards in the log collection feature of […]

ThaiCERT

June 16, 2025

CISA Warns Hackers Are Exploiting SimpleHelp RMM Vulnerability in Ransomware Attacks

215/68 Monday, June 16, 2025 The U.S. Cybersecurity and Infrastructure Security Agency (CISA) issued a security alert on June 12, warning that ransomware groups are actively exploiting a critical vulnerability in SimpleHelp Remote Monitoring and Management (RMM) software to breach victims in supply chain-style attacks. The flaw, tracked as CVE-2024-57727, affects SimpleHelp versions 5.5.7 and […]

ThaiCERT

June 16, 2025

Google and Mozilla Release Security Updates to Patch High-Severity Memory Vulnerabilities in Chrome and Firefox

214/68 Friday, June 13, 2025 Google and Mozilla have released critical security updates for their Chrome and Firefox browsers, addressing four high-severity memory-related vulnerabilities that could lead to remote code execution (RCE), data leaks, or remote system takeover. The fixes are included in Chrome version 137 and Firefox version 139, both rolled out on Tuesday, […]

ThaiCERT

June 13, 2025

INTERPOL Dismantles Major Cybercrime Syndicate, Seizes Over 20,000 Suspicious IPs

213/68 Friday, June 13, 2025 INTERPOL, in collaboration with law enforcement agencies from 26 countries, has successfully dismantled a major cybercrime syndicate operating across the Asia-Pacific region under Operation Secure. The coordinated effort led to the arrest of 32 suspects in Vietnam, Sri Lanka, and Nauru, along with the seizure of 117 Command-and-Control (C2) servers […]

ThaiCERT

June 13, 2025
1 23 24 25 53