Google Issues Emergency Patch for Chrome Zero-Day Actively Exploited in Attacks

479/68 Thursday, November 20, 2025 Google has released an emergency security update to patch a Zero-Day vulnerability in Chrome that has been actively exploited. The flaw, tracked as CVE-2025-13223, is rated High Severity and stems from a Type Confusion bug in the V8 JavaScript engine. The issue was discovered by Clement Lecigne of Google’s Threat […]

ThaiCERT

November 20, 2025

Microsoft Mitigates the Largest Cloud DDoS Attack Ever Recorded – Peaking at 15.7 Tbps

478/68 Thursday, November 20, 2025 Microsoft has revealed that Azure DDoS Protection successfully detected and mitigated a massive Distributed Denial-of-Service (DDoS) attack on October 24, 2025. The attack reached a peak volume of 15.72 Tbps and 3.64 billion packets per second (pps), making it the largest cloud-based DDoS attack ever recorded. The target was a […]

ThaiCERT

November 20, 2025

Security Alert! “RondoDox” Botnet Targets XWiki Servers via Critical CVE-2025-24893 Vulnerability

477/68 Thursday, November 20, 2025 Cybersecurity experts are closely monitoring the rapid spread of RondoDox, a large-scale botnet now exploiting a critical vulnerability in the XWiki platform. The flaw, tracked as CVE-2025-24893, is a Remote Code Execution (RCE) vulnerability that allows attackers to execute arbitrary malicious code on vulnerable systems. The U.S. Cybersecurity and Infrastructure […]

ThaiCERT

November 20, 2025

Ransomware Group Everest Claims Breach of Under Armour, Stealing Data of Millions of Customers

476/68 Wednesday, November 19, 2025 The Everest ransomware group claims to have breached the systems of Under Armour, Inc., a major U.S. sportswear company, stealing over 343 GB of internal corporate data, including personal information belonging to millions of customers across multiple countries. The attackers published sample data on their Dark Web site to prove […]

ThaiCERT

November 19, 2025

DoorDash Discloses Data Breach After Employee Falls Victim to Social Engineering Attack

475/68 Wednesday, November 19, 2025 DoorDash, the major U.S. food-delivery platform, has disclosed a data breach affecting customers, delivery drivers (Dashers), and merchants after one of its employees fell victim to a social engineering attack, allowing unauthorized actors to access personal information. The incident was discovered on October 25, 2025, and DoorDash has begun notifying […]

ThaiCERT

November 19, 2025

Cloudflare Outage Causes Global Internet Disruption

474/68 Wednesday, November 19, 2025 On November 18, 2025, internet users around the world were unable to access numerous websites and applications due to a major outage at Cloudflare-one of the world’s largest internet infrastructure providers, handling roughly 20% of global internet traffic. Dane Knecht, Cloudflare’s Chief Technology Officer (CTO), explained that the incident stemmed […]

ThaiCERT

November 19, 2025

Google Tightens Controls on Android Apps With Excessive Background Activity,May Reduce Play Store Visibility Starting in 2026

473/68 Tuesday, November 18, 2025 Google is preparing to enforce stricter Play Store policies targeting Android apps that run excessively in the background and drain battery life, using a new metric called “Excessive Partial Wake Locks,” developed in collaboration with Samsung. Apps that exhibit such behavior may face reduced visibility in Play Store recommendations or […]

ThaiCERT

November 18, 2025

AIPAC Discloses Data Breach Affecting Hundreds of Individuals

472/68 Tuesday, November 18, 2025 The American Israel Public Affairs Committee (AIPAC) has disclosed a data breach resulting from unauthorized access to systems belonging to an external third-party company. The organization reported the incident to the Attorney General’s Office on November 14, 2025. According to the disclosure, the breach affected 810 individuals, with unauthorized access […]

ThaiCERT

November 18, 2025

Iranian Hackers Launch “SpearSpecter” Espionage Operation Targeting Security and Government Agencies

471/68 Tuesday, November 18, 2025 The Israel National Digital Agency (INDA) has published a report revealing a new cyber-espionage campaign called “SpearSpecter,” operated by APT42, a threat group backed by the Iranian government and linked to the Islamic Revolutionary Guard Corps (IRGC). The operation was first detected in early September 2025 and is still ongoing. […]

ThaiCERT

November 18, 2025

Microsoft Investigating KB5068781 Issues After Windows 10 ESU Update Fails to Install

470/68 Monday, November 17, 2025 Microsoft has confirmed that it is urgently investigating technical issues affecting the Extended Security Update (ESU) patch KB5068781 for Windows 10, released on November 11. Many enterprise users have reported that the update fails to install, returning error code 0x800f0922. According to Microsoft, the issue occurs only on devices activated […]

ThaiCERT

November 17, 2025
1 6 7 8 62