Franco

CRITICAL SUDO FLAWS ALLOW LOCAL PRIVILEGE ESCALATION TO ROOT ON LINUX, AFFECTING MAJOR DISTROS

Cybersecurity researchers have identified two significant security vulnerabilities in the Sudo command-line utility, commonly used in Linux and Unix-like systems. These flaws could allow local attackers to escalate their privileges and gain root access on affected machines. Sudo is a powerful tool that lets low-privileged users execute commands as another user—typically the superuser—enabling administrative actions […]

CRITICAL SUDO FLAWS ALLOW LOCAL PRIVILEGE ESCALATION TO ROOT ON LINUX, AFFECTING MAJOR DISTROS Read More »

“BRUSHING” IS THE NEWEST CYBER SCAM MAKING THE ROUNDS-AND IT ALL BEGINS WITH A SURPRISE PACKAGE IN YOUR MAILBOX.

The United States Postal Service (USPS) is alerting the public to a new phishing-related scam called “brushing” — and it’s arriving directly in people’s mailboxes. The scam begins when a person receives an unexpected package, often appearing to come from a well-known retailer or online marketplace. These packages may lack a return address and typically

“BRUSHING” IS THE NEWEST CYBER SCAM MAKING THE ROUNDS-AND IT ALL BEGINS WITH A SURPRISE PACKAGE IN YOUR MAILBOX. Read More »

FBI WARNS AIRLINES OF RISING CYBER THREAT FROM SCATTERED SPIDER’S SOCIAL ENGINEERING ATTACKS

The U.S. Federal Bureau of Investigation (FBI) has reported that the cybercrime group Scattered Spider is expanding its operations to target the airline industry. In response, the agency is working closely with aviation stakeholders and industry partners to counter the threat and support affected organizations. “These attackers use social engineering tactics, often posing as employees

FBI WARNS AIRLINES OF RISING CYBER THREAT FROM SCATTERED SPIDER’S SOCIAL ENGINEERING ATTACKS Read More »

SUSPECTED RANSOMWARE ATTACK CAUSES MAJOR DISRUPTION AT HAWAIIAN AIRLINES

Hawaiian Airlines Confirms Cybersecurity Incident, Flight Operations Unaffected Hawaiian Airlines announced on Thursday that it is responding to a cybersecurity incident that disrupted portions of its IT infrastructure. Despite the event, the airline emphasized that its flight operations remain unaffected. In a notice posted on its website at 10:45 a.m. PST, the Honolulu-based carrier informed

SUSPECTED RANSOMWARE ATTACK CAUSES MAJOR DISRUPTION AT HAWAIIAN AIRLINES Read More »

RECORD-BREAKING BREACH EXPOSES 16 BILLION PASSWORDS, COMPROMISING ACCESS TO FACEBOOK, GOOGLE, APPLE, AND MORE

Multiple caches of login credentials have surfaced online, revealing one of the largest data breaches ever recorded—an astonishing 16 billion exposed usernames and passwords. The troves appear to originate from various infostealing malware strains, quietly harvesting credentials from unsuspecting users. This incident highlights a critical issue: collecting sensitive data, even without malicious intent, can be

RECORD-BREAKING BREACH EXPOSES 16 BILLION PASSWORDS, COMPROMISING ACCESS TO FACEBOOK, GOOGLE, APPLE, AND MORE Read More »

THE EVOLUTION OF PENETRATION TESTING: KALI GPT AND AI INTEGRATION

Kali GPT introduces a transformative shift in cybersecurity by embedding an AI-powered assistant directly into Kali Linux, streamlining penetration testing for both professionals and learners. Built on the GPT‑4 architecture, it can generate payloads, clarify complex tools like Metasploit and Nmap, and suggest relevant exploits—all accessible within the terminal. For seasoned practitioners, it accelerates assessments;

THE EVOLUTION OF PENETRATION TESTING: KALI GPT AND AI INTEGRATION Read More »

KETTERING HEALTH BREACH: INTERLOCK CLAIMS RESPONSIBILITY FOR MAJOR RANSOMWARE ATTACK

The ransomware group known as Interlock publicly claimed responsibility on Wednesday for the ongoing cyberattack targeting Kettering Health, asserting that it exfiltrated nearly 1 terabyte of sensitive data from the healthcare organization. Kettering Health, which operates over 120 medical facilities—including nine major hospitals across Ohio—has been grappling with widespread system outages since first disclosing the

KETTERING HEALTH BREACH: INTERLOCK CLAIMS RESPONSIBILITY FOR MAJOR RANSOMWARE ATTACK Read More »

CONNECTWISE CONFIRMS CYBERATTACK TIED TO SUSPECTED NATION-STATE ACTOR

ConnectWise, the company behind the remote access and support platform ScreenConnect, has confirmed it was targeted in a cyberattack believed to have been carried out by a sophisticated nation-state threat actor. In a brief advisory report published on May 28, 2025, the company stated, “ConnectWise recently identified suspicious activity within our systems that we believe

CONNECTWISE CONFIRMS CYBERATTACK TIED TO SUSPECTED NATION-STATE ACTOR Read More »

SELF-PROPAGATING MALWARE TARGETS DOCKER CONTAINERS FOR DERO CRYPTO MINING

A new malware campaign is targeting misconfigured Docker API instances, converting them into a cryptocurrency mining botnet. The primary goal of the attacks is to mine Dero cryptocurrency, and the campaign is particularly notable for its worm-like ability to spread the infection to other vulnerable Docker instances. According to Kaspersky, an unidentified threat actor gains

SELF-PROPAGATING MALWARE TARGETS DOCKER CONTAINERS FOR DERO CRYPTO MINING Read More »

MALICIOUS PYPI PACKAGES ABUSED INSTAGRAM AND TIKTOK APIS TO VERIFY USER ACCOUNTS

  Cybersecurity researchers have discovered a set of malicious Python packages uploaded to the Python Package Index (PyPI) that were designed to verify stolen email addresses against TikTok and Instagram APIs. These packages posed as tools to check whether specific email addresses were linked to existing accounts on the platforms. All three packages have since

MALICIOUS PYPI PACKAGES ABUSED INSTAGRAM AND TIKTOK APIS TO VERIFY USER ACCOUNTS Read More »