Ingram Micro Hit by SafePay Ransomware, Internal Systems Remain Down

246/68 Monday, July 7, 2025 Ingram Micro, one of the world’s largest B2B technology distributors, has been experiencing prolonged system outages since last Thursday. According to a report by BleepingComputer, the incident has now been confirmed as a ransomware attack carried out by the SafePay group, which managed to breach the company’s internal systems. Several […]

ThaiCERT

July 7, 2025

Ransomware Gang ‘Hunters International’ Shuts Down, Rebrands as ‘World Leaks’

245/68 Monday, July 7, 2025 The ransomware group Hunters International officially announced its shutdown on July 4, 2025, after nearly two years of cybercriminal activity. The group confirmed 55 successful attacks, with another 199 unconfirmed incidents. Known for operating under the Ransomware-as-a-Service (RaaS) model, Hunters International employed double extortion tactics-encrypting victims’ files while also stealing […]

ThaiCERT

July 7, 2025

Google Releases Patch for CVE-2025-6554 Zero-Day Vulnerability in Chrome

244/68 Friday, July 4, 2025 Google has issued a security update to patch a zero-day vulnerability, CVE-2025-6554, that has been actively exploited in the wild. The flaw lies in Chrome’s V8 JavaScript and WebAssembly engine and is classified as a type confusion vulnerability. It allows attackers to perform unauthorized read and write operations in memory […]

ThaiCERT

July 4, 2025

Critical Vulnerability in Forminator Plugin Puts Over 400,000 WordPress Sites at Risk

243/68 Friday, July 4, 2025 Cybersecurity experts from Defiant have disclosed a critical vulnerability in the popular WordPress plugin Forminator, which is used to create forms such as contact forms, payment forms, and surveys. The plugin has over 600,000 active installations worldwide. The vulnerability, identified as CVE-2025-6463, has been assigned a CVSS severity score of […]

ThaiCERT

July 4, 2025

International Criminal Court (ICC) Targeted in Cyberattack, Investigation and Impact Assessment Underway

242/68 Thursday, July 3, 2025 On June 30, 2025, the International Criminal Court (ICC) issued an official statement confirming that it had been the target of a sophisticated and targeted cyberattack. The incident was promptly detected and contained through the Court’s internal security and alert mechanisms. The ICC is currently conducting a comprehensive impact assessment […]

ThaiCERT

July 3, 2025

Experts Warn of New Phishing Threats Using LLMs as Scammers Exploit AI to Deceive Users

241/68 Thursday, July 3, 2025 Cybersecurity experts from Netcraft have issued a warning about a new and emerging threat: cybercriminals are adapting techniques similar to SEO poisoning-manipulating search engine results-to deceive users into visiting phishing websites. This time, however, they’re targeting large language models (LLMs) like GPT by crafting content designed to appear trustworthy not […]

ThaiCERT

July 3, 2025

U.S. CISA Adds Citrix NetScaler Vulnerability to Known Exploited Vulnerabilities Catalog

240/68 Wednesday, July 2, 2025 The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a newly identified vulnerability in Citrix NetScaler to its Known Exploited Vulnerabilities (KEV) Catalog. The vulnerability, tracked as CVE-2025-6543, has a CVSS score of 9.2 and is classified as a memory overflow flaw. If exploited, it could lead to unintended […]

ThaiCERT

July 2, 2025

Hackers Breach Norwegian Dam, Open Water Valves for 4 Hours Due to Weak Password

239/68 Wednesday, July 2, 2025 A concerning incident occurred in April when unidentified hackers gained access to the control systems of the Lake Risevatnet dam, located near the town of Svelgen in southwestern Norway. The attackers managed to fully open the dam’s water discharge valves for a continuous period of four hours. The dam’s owner, […]

ThaiCERT

July 2, 2025

Cloudflare Launches End-to-End Encrypted Video Call Platform “Orange Meets” with Open Source Code

238/68 Tuesday, July 1, 2025 Cloudflare has launched an End-to-End Encryption (E2EE) feature for its video calling platform Orange Meets and released the source code as open source to promote transparency and allow developers, researchers, and security professionals to freely study or build upon the platform. Orange Meets was originally developed as a demo project […]

ThaiCERT

July 1, 2025

Bluetooth Chip Vulnerability Could Let Hackers Eavesdrop on Microphones and Mobile Phones

237/68 Tuesday, July 1, 2025 Cybersecurity researchers have disclosed critical vulnerabilities in Airoha Bluetooth chipsets used in over 29 popular audio devices from 10 leading manufacturers, including Beyerdynamic, Bose, Sony, Marshall, Jabra, and JBL. These vulnerabilities could allow attackers to eavesdrop on conversations or even steal sensitive user data. The affected devices include wireless speakers, […]

ThaiCERT

July 1, 2025
1 8 9 10 41