BreachLock Named Representative Provider for Penetration Testing as a Service (PTaaS) in New Gartner® Report

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

BreachLock, the global leader in Penetration Testing as a Service (PTaaS), has been recognized as a Representative Provider in the 2025 Innovation Insight: Penetration Testing as a Service report by Gartner.  The report highlights how PTaaS helps organizations increase testing …

How SOCs Detect More Threats without Alert Overload

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

When your alert queue seems endless, it might feel like threat intelligence is more of a curse than a blessing. But taking the right approach to it will help increase detection rates without stretching resources thin. Top-performing SOC analysts don’t …

Chinese APT Group IT Service Provider Leveraging Microsoft Console Debugger to Exfiltrate Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In early 2025, a novel campaign attributed to the Chinese APT group known as Jewelbug began targeting an IT service provider in Russia. The attackers infiltrated build systems and code repositories, laying the groundwork for a potential software supply chain …

Microsoft October 2025 Security Update Causes Active Directory Sync Issues on Windows Server 2025

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft’s latest security updates have triggered synchronization failures in Active Directory environments running on Windows Server 2025. The issue, confirmed on October 14, 2025, affects directory synchronization for large security groups, potentially halting critical identity management processes across enterprise networks. …

New SAP NetWeaver Vulnerabilities Allow Attackers to Bypass Authorization and Execute OS Commands

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

SAP released its October 2025 Security Patch Day fixes, addressing 13 new vulnerabilities and updating four prior notes, with several critical flaws in NetWeaver enabling attackers to sidestep authorization and run arbitrary operating system commands on affected systems. Among the …

5 Must-Follow Rules of Every Elite SOC: CISO’s Checklist

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

There’s a moment, right after a new alert hits, when the room holds its breath. Everyone waits for context; is it real, is it noise, is it already too late?  In those seconds, the difference between an average SOC and …

Hackers Registered 13,000+ Unique Domains and Leverages Cloudflare to Launch Clickfix Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In mid-2025, Lab539 researchers observed an unexpected surge in a novel browser-based malware campaign dubbed “ClickFix.” Emerging quietly in July, the threat quickly expanded its reach by registering over 13,000 unique domains designed to lure users into executing malicious commands …

F5 Breached – Hackers Stole BIG-IP Source Code and Undisclosed Vulnerabilities Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

F5, a leading provider of application security and delivery solutions, disclosed a major security incident. The company revealed that a sophisticated nation-state threat actor had gained long-term access to internal systems, exfiltrating sensitive files including BIG-IP source code and details …

GhostBat RAT Android Malware With Fake RTO Apps Steals Targeting Indian Users to Steal Banking Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The GhostBat RAT campaign has emerged as a sophisticated threat targeting Indian Android users through counterfeit Regional Transport Office (RTO) applications. First observed in mid-2025, these malicious APKs masquerade as the official “mParivahan” app, exploiting user trust in government services. …

Cisco SNMP 0-Day Vulnerability Actively Exploited To Deploy Linux Rootkits

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated attack campaign dubbed “Operation Zero Disco,” where threat actors are actively exploiting a critical Cisco Simple Network Management Protocol (SNMP) vulnerability to install Linux rootkits on vulnerable network devices. Trend Micro observed an operation exploiting CVE-2025-20352, which allows …