Alerts List
AL2025_26 WinRAR Vulnerability CVE-2025-31334: MotW Security Bypass (April 7th, 2025)
Description  A newly disclosed vulnerability in WinRAR, tracked as CVE-2025-31334, allows attackers to bypass Windows’ Mark of the Web (MotW) se . . . Read more

Date Publish: Apr 7th 25
AL2025_25 Critical RCE Vulnerability Discovered in Apache Parquet (CVE-2025-30065) (April 4th, 2025)
Description  A critical remote code execution (RCE) vulnerability (CVE-2025-30065) has been discovered in Apache Parquet, a widely used columnar stora . . . Read more

Date Publish: Apr 4th 25
AL2025_24 Cisco CSLU Backdoor Admin Account Exploited in Attacks (April 3rd, 2025)
Description  Cisco has issued a critical security warning regarding a built-in backdoor administrative account found in the Cisco Smart Licensing Util . . . Read more

Date Publish: Apr 3rd 25
AL2025_23 The Impact of SSL Misconfigurations on Your Attack Surface (April 3rd, 2025)
Description SSL (Secure Sockets Layer) is essential for encrypting data transmitted between clients and servers, ensuring confidentiality and authenti . . . Read more

Date Publish: Apr 3rd 25
AL2025_22 How Microsoft 365 Backups Store Risks for Future Attacks (25th March 2025)
Description  As organizations increasingly migrate their operations to the cloud, ensuring robust security measures in cloud environments has become c . . . Read more

Date Publish: Mar 25th 25
AL2025_21 Arcane Infostealer Infects YouTube and Discord Users via Game Cheats (21st March 2025)
Description  A newly discovered information-stealing malware, Arcane, is actively targeting YouTube and Discord users through malicious game cheats an . . . Read more

Date Publish: Mar 21st 25
AL2025_20 New Windows Zero-Day Exploited by 11 State Hacking Groups Since 2017 (21st March 2025)
Description  A newly discovered Windows vulnerability (ZDI-CAN-25373) has been actively exploited by at least 11 state-sponsored hacking groups from N . . . Read more

Date Publish: Mar 21st 25
AL2025_19 Malicious Adobe, DocuSign OAuth apps target Microsoft 365 accounts (21st March 2025)
Description Cybercriminals are exploiting malicious Microsoft OAuth applications disguised as Adobe and DocuSign apps to compromise Microsoft 365 acco . . . Read more

Date Publish: Mar 21st 25
AL2025_18 YouTube Warns of AI-Generated CEO Video Used in Phishing Attacks (18th March 2025)
Description YouTube has issued a warning regarding a phishing campaign leveraging AI-generated deepfake videos of CEO Neal Mohan. Scammers use these v . . . Read more

Date Publish: Mar 18th 25
AL2025_17 Emerging Polyglot Malware Targets Aviation and Satellite Communication Sectors (18th March 2025)
Description A new and previously undocumented polyglot malware is being deployed against aviation, satellite communication, and critical transportatio . . . Read more

Date Publish: Mar 18th 25
AL2025_16 TgToxic Banking Trojan Variant Evolves with Anti-Analysis Upgrades (6th March 2025)
Description TgToxic (also known as ToxicPanda) is a sophisticated Android banking trojan that continues to evolve with advanced anti-analysis capabili . . . Read more

Date Publish: Mar 6th 25
AL2025_15 Auto-Color Linux Backdoor Targets North American Governments and Universities (27th February 2025)
Description  A newly discovered Linux backdoor named Auto-Color has been identified in cyberattacks targeting government institutions and universities . . . Read more

Date Publish: Feb 27th 25