My Courses
-

Following the decline of the prominent RansomHub Ransomware as a Service (RaaS), there has been a significant increase in the Qilin Ransomware.
The ransomware landscape underwent a significant transformation in the second quarter of 2025 as Qilin Ransomware emerged as the leading threat following the unexpected collapse of RansomHub, which had been the most prolific Ransomware-as-a-Service (RaaS) operation. This transition reshaped the cybercriminal ecosystem, with Qilin quickly capitalising on the void left by RansomHub’s abrupt cessation of…
-

SafePay ransomware has compromised over 260 victims in various nations.
A new ransomware threat has emerged as one of the most aggressive cybercriminal operations of 2025, with SafePay Ransomware claiming responsibility for over 265 successful attacks across multiple continents. The group, which first appeared in September 2024 with limited activity targeting just over 20 victims, has dramatically escalated its operations since early 2025, establishing itself…
-

Lazarus Hackers Exploit 234 Packages on npm and PyPI to Compromise Developers
A sophisticated cyber espionage campaign has infiltrated two of the world’s largest open source package repositories, with North Korea’s notorious Lazarus Group successfully deploying 234 malicious packages across npm and PyPI ecosystems. Between January and July 2025, this state-sponsored operation exposed over 36,000 potential victims to advanced malware designed for long-term surveillance and credential theft.…
-

Akira Ransomware is actively exploiting a zero-day vulnerability in SonicWall Firewall devices.
A suspected zero-day vulnerability in SonicWall firewall devices is currently being exploited by the Akira ransomware group. This flaw enables attackers to gain initial access to corporate networks via SonicWall’s SSL VPN feature, facilitating subsequent ransomware deployment. Security researchers noted a significant uptick in ransomware attacks leveraging SonicWall devices in late July 2025. Evidence strongly…
-

A new undetectable malware strain is targeting Linux servers to establish lasting SSH access.
A sophisticated Linux backdoor known as Plague has emerged as a significant threat to enterprise security, successfully evading detection by all major antivirus engines while establishing persistent SSH access through the manipulation of core authentication mechanisms. Discovered by cybersecurity researchers at Nextron Systems, this malware signifies a paradigm shift in Linux-targeted attacks, exploiting Pluggable Authentication…
-

Summary of Cybersecurity Updates – Vulnerabilities in Chrome and Gemini, malware targeting Linux, and a new Man-in-the-Prompt attack.
Welcome to this week’s edition of Cybersecurity News Recap. This issue presents the latest updates and critical developments across the threat landscape. Readers can stay ahead of risks with key insights on newly discovered Chrome and Gemini vulnerabilities, the surge of sophisticated Linux malware, and an in-depth look at the emerging “man-in-the-prompt” attack tactic targeting…
-

Echo Secures $15 Million in Seed Capital to Create Vulnerability-Free Container Images
Echo has successfully raised $15 million in seed funding to develop thousands of container images that are free from any Common Vulnerabilities and Exposures (CVE). This innovative approach aims to enhance enterprise-grade software infrastructure by providing secure and reliable container solutions. With the increasing demand for robust security measures in software development, Echo’s funding will…
-

Cyber attackers are exploiting counterfeit OAuth applications in conjunction with the Tycoon Kit to compromise Microsoft 365 accounts.
Cybersecurity researchers have identified a new cluster of activity where threat actors impersonate enterprises through fake Microsoft OAuth applications to facilitate credential harvesting as part of account takeover attacks. The fraudulent Microsoft 365 applications impersonate various companies, including RingCentral, SharePoint, Adobe, and DocuSign, according to a report by Proofpoint. This ongoing campaign, first detected in…


