QNAP fixes seven NAS zero-day flaws exploited at Pwn2Own
New LandFall spyware exploited Samsung zero-day via WhatsApp messages
Samsung Zero-Click Flaw Exploited to Deploy LANDFALL Android Spyware via WhatsApp
The activity involved the exploitation of CVE-2025-21042 (CVSS score: 8.8), an out-of-bounds write flaw in the “libimagecodec.quram.so” component that could allow remote attackers to execute arbitrary
In Other News: Controversial Ransomware Report, Gootloader Returns, More AN0M Arrests
Other noteworthy stories that might have slipped under the radar: rogue ransomware negotiators charged, F5 hack prompts OT security guidance, Germany targets Huawei tech.
The post In Other News: Controversial Ransomware Report, Gootloader Returns, More AN0M Arrests appeared first on SecurityWeek.
From Log4j to IIS, China’s Hackers Turn Legacy Bugs into Global Espionage Tools
The organization, according to a report from Broadcom’s Symantec and Carbon Black teams, is “active in attempting to influence U.S. government
Cisco: Actively exploited firewall flaws now abused for DoS attacks
Landfall Android Spyware Targeted Samsung Phones via Zero-Day
Threat actors exploited CVE-2025-21042 to deliver malware via specially crafted images to users in the Middle East.
The post Landfall Android Spyware Targeted Samsung Phones via Zero-Day appeared first on SecurityWeek.
ID verification laws are fueling the next wave of breaches
Radical Empowerment From Your Leadership: Understood by Few, Essential for All
When leaders redefine power as trust instead of control, teams unlock their potential — and organizations find their edge.
The post Radical Empowerment From Your Leadership: Understood by Few, Essential for All appeared first on SecurityWeek.
