Confirmed – FreeType zero-day (reported by Meta) was exploited in Paragon spyware attacks.

Confirmed – FreeType zero-day (reported by Meta) was exploited in Paragon spyware attacks.

SecurityWeek reported this week that WhatsApp, owned by Meta, confirmed its researchers had requested the CVE identifier CVE-2025-27363 after linking the flaw to an exploit used by Paragon, an Israeli surveillance solutions provider. The vulnerability, CVE-2025-27363, is an out-of-bounds write in the FreeType open-source library, which could allow for arbitrary code execution. This flaw was initially highlighted in a Meta advisory in mid-March 2025, warning that it may have been exploited in the wild.
WordPress theme, Motors, populer in automotive industry, is actively exploited  via improper validation during password updates.

WordPress theme, Motors, populer in automotive industry, is actively exploited via improper validation during password updates.

A critical-severity vulnerability (CVE-2025-4322) was discovered in the popular Motors theme for WordPress, affecting all versions up to and including 5.6.67. This flaw allowed unauthenticated attackers to escalate privileges by resetting passwords for any user, including administrators, resulting in full site takeover.
Sophisticated Android MaaS malware, AntiDot, has compromised over 3,775 devices.

Sophisticated Android MaaS malware, AntiDot, has compromised over 3,775 devices.

Cybersecurity researchers have recently exposed the inner workings of a sophisticated Android malware called AntiDot, which has compromised over 3,775 devices across 273 distinct campaigns. AntiDot is operated by the financially motivated threat actor group LARVA-398 and is actively sold as Malware-as-a-Service (MaaS) on underground forums, enabling a wide range of mobile attack campaigns.
Those hackers that siphoned millions of Iranian crypto just burned the house down. $90 million in crypto vaporized alongside taunts against Iran’s Revolutionary Guard!

Those hackers that siphoned millions of Iranian crypto just burned the house down. $90 million in crypto vaporized alongside taunts against Iran’s Revolutionary Guard!

Remember those wily hackers that siphoned $90 million from Nobitex, Iran’s largest cryptocurrency exchange yesterday? Today, they taunted Iran's Revolutionary Guard Corps and then burned the entire pile of crypto. More than $90 million vaporized! The stunning $90 million destruction marks a brazen escalation in the covert cyber war that has simmered between Israel and Iran for more than a decade.
Research team says they discovered unreported credential leak containing 16 billion login records.

Research team says they discovered unreported credential leak containing 16 billion login records.

The Cybernews research team recently uncovered what may be the largest unreported credential leak in history, involving a staggering 16 billion login records exposed across 30 separate datasets. These datasets were most likely generated by various infostealer malware—malicious software designed to harvest sensitive information such as usernames, passwords, and authentication tokens from infected devices.
BlueNoroff group launches sophisticated social engineering/malware campaign that leverages deepfake video tech in Zoom calls.

BlueNoroff group launches sophisticated social engineering/malware campaign that leverages deepfake video tech in Zoom calls.

The North Korean-linked BlueNoroff group, also known as Sapphire Sleet or TA444, has launched a sophisticated social engineering campaign targeting employees in the cryptocurrency sector, specifically those using macOS devices. This latest attack leverages deepfake technology and fake Zoom meetings to deliver backdoor malware.