🚨 WARNING: State-sponsored hackers hijacked Cisco firewalls with two zero-days—planting a stealth bootkit called RayInitiator to deploy the LINE VIPER malware.

They disabled logs, hijacked VPN auth & even crashed devices to hide. #CyberSecurity #ZeroDayAttacks https://thehackernews.com/2025/09/cisco-asa-firewall-zero-day-exploits.html

Cisco ASA Firewall Zero-Day Exploits Deploy RayInitiator and LINE VIPER Malware

Cisco ASA zero-day attacks used RayInitiator bootkit and LINE VIPER malware to breach end-of-support firewalls.

The Hacker News

North Korea’s #LazarusGroup just pulled off a bold new hack.

They posed as coworkers on Telegram, set up fake Calendly sites—and cycled through three custom RATs to compromise a DeFi employee’s system.

The scariest part? One tool may have exploited a Chrome zero-day.
#northkorea #ZeroDayAttacks
https://thehackernews.com/2025/09/lazarus-group-expands-malware-arsenal.html

Lazarus Group Expands Malware Arsenal With PondRAT, ThemeForestRAT, and RemotePE

Lazarus Group used PondRAT, ThemeForestRAT, and RemotePE in a 2024 DeFi attack, likely via Chrome zero-day.

The Hacker News
Apple patches security flaw exploited in Chrome zero-day attacks

Apple has released security updates to address a high-severity vulnerability that has been exploited in zero-day attacks targeting Google Chrome users.

BleepingComputer

⚡ Zero-days exploited. State-backed schemes exposed. Ransomware shifts.

From insider arrests to AI-powered fraud, here’s what mattered in cyber this week—no fluff, just the signal. #CyberSecurity #ZeroDayAttacks https://thehackernews.com/2025/07/weekly-recap-sharepoint-breach-spyware.html

⚡ Weekly Recap — SharePoint Breach, Spyware, IoT Hijacks, DPRK Fraud, Crypto Drains and More

From insider arrests to AI-powered fraud, here’s what mattered in cyber this week—no fluff, just the signal.

The Hacker News
WhatsApp has patched a zero-click, zero-day vulnerability used to install Paragon's Graphite spyware following reports from security researchers at the University of Toronto's Citizen Lab. #ZeroDayAttacks #CyberSecurityupdate https://www.bleepingcomputer.com/news/security/whatsapp-patched-zero-day-flaw-used-in-paragon-spyware-attacks/
WhatsApp patched zero-click flaw exploited in Paragon spyware attacks

WhatsApp has patched a zero-click, zero-day vulnerability used to install Paragon's Graphite spyware following reports from security researchers at the University of Toronto's Citizen Lab.

BleepingComputer
Slovak cybersecurity company ESET says a newly patched zero-day vulnerability in the Windows Win32 Kernel Subsystem has been exploited in attacks since March 2023. #ZeroDayAttacks #CyberSecurity https://www.bleepingcomputer.com/news/microsoft/microsoft-patches-windows-kernel-zero-day-exploited-since-2023/
Microsoft patches Windows Kernel zero-day exploited since 2023

Slovak cybersecurity company ESET says a newly patched zero-day vulnerability in the Windows Win32 Kernel Subsystem has been exploited in attacks since March 2023.

BleepingComputer

👉 In April 2024, 260 #Zeroday #vulnerabilities including 112 #SQLi vulnerabilities were detected.
100% of these zero-day vulnerabilities were blocked by #AppTrana's core rules (96%), premium rules, and custom rules(4%).

📌 Get the full report and protect yourself against the latest #cyberthreats: https://bit.ly/4dLbn9l

#zerodayvulnerabilities #zerodayattacks #0day #zerodaythreats #commandinjection #CSRF #sqlinjection #xssattacks #indusfacewas #indusface

Zero-Day Vulnerability Report April 2024 | Indusface

Discover the latest zero-day vulnerabilities with Indusface's April 2024 report. Stay ahead with AppTrana's continuous threat detection. Download Now!

Indusface

🕵️‍♂️In December 2023, 222 #zeroday vulnerabilities, including 88 #XSS vulnerabilities, were detected.

100% of these zero-day vulnerabilities were blocked by AppTrana's core rules.

Read the report to explore the recently identified #vulnerabilities and stay ahead of potential threats: https://bit.ly/3SaF1fd

#zerodayvulnerability #zerodaythreat #vulnerabilities #0day #zerodayattacks #cybersecurity #apptrana #indusface

Zero-Day Vulnerability Report December 2023 | Indusface

Discover the latest zero-day vulnerabilities with our Dec 2023 report. Indusface security experts expose and mitigate threats to keep your business secure.

Indusface

👉 #AppTrana's core rules blocked 100% of the #zeroday vulnerabilities discovered in Nov 2023.

🕵️‍♂️Read the report to explore the recently identified 334 vulnerabilities and stay ahead of potential threats.

Find the report here: https://bit.ly/3NulXFU

#zerodayvulnerability #zerodaythreat #vulnerabilities #0day #zerodayattacks #cybersecurity #appsec #indusface

Zero-Day Vulnerability Report November 2023 | Indusface

Explore Indusface's November 2023 Zero-Day Vulnerability Report, unveiling expert-detected threats and continuous protection against elusive zero-day exploits.

Indusface