2025-06-12
Troy Hunt
Weekly Update 456
ReversingLabs
How to Speed Up TPRM Approvals with Spectra Assure
The Citizen Lab
Graphite Caught: First Forensic Confirmation of Paragon’s iOS Mercenary Spyware Finds Journalists Targeted
Sansec Threat Research
Adobe patches critical Magento admin takeover via menu injection
2025-06-11
Fastly
DDoS in May
Talos Intelligence
catdoc zero-day, NVIDIA, High-Logic FontCreator and Parallel vulnerabilities
Krebs on Security
Patch Tuesday, June 2025 Edition
Project Black
FileFlows SQL Injection by Decompiling .NET Code
Dark Reading
ConnectWise to Rotate Code-Signing Certificates
Dark Reading
Agentic AI Takes Over Gartner's SRM Summit
Amazon Security
AWS completes Police-Assured Secure Facilities (PASF) audit in Europe (London) AWS Region
Black Lantern Security
Doomla! Zero Days
Synacktiv
NTLM reflection is dead, long live NTLM reflection! – An in-depth analysis of CVE-2025-33073
Redteam-Pentesting.de
A Look in the Mirror - The Reflective Kerberos Relay Attack
Searchlight Cyber
Why is Attack Surface Management Now Worth the Cost?
2025-06-10
Talos Intelligence
Microsoft Patch Tuesday for June 2025 — Snort rules and prominent vulnerabilities
Eclypsium
Leading Cloud Computing Company Relies on Eclypsium to Protect AI Data Center Infrastructure
Datadog HQ
Explore your data with Sheets, DDSQL Editor, and Notebooks for advanced analysis in Datadog
Datadog HQ
Detect anomalies beyond spikes and new values with Content Anomaly Detection in Cloud SIEM
Datadog HQ
Reduce cloud storage costs and improve operational efficiency with Datadog Storage Monitoring
Dark Reading
PoC Code Escalates Roundcube Vuln Threat
Amazon Security
Building identity-first security: A guide to the Identity and Access Management track at AWS re:Inforce 2025
Ars Technica Security
Found in the wild: 2 Secure Boot exploits. Microsoft is patching only 1 of them.
Synacktiv
Exploiting Heroes of Might and Magic V
Compass Security Blog
LinkedIn for OSINT: tips and tricks
Sicuranext Blog
Influencing LLM Output using logprobs and Token Distribution
Sicuranext Blog
Influencing LLM Output using logprobs and Token Distribution
Rapid7
Patch Tuesday - June 2025
Zero Day Initiative
The June 2025 Security Update Review
TrustedSec
Common Mobile Device Threat Vectors
2025-06-09
Schneier on Security
New Way to Track Covertly Android Users
Troy Hunt
Weekly Update 455
Malwarebytes
How and where to report an online scam
Malwarebytes
Been scammed online? Here’s what to do
Malwarebytes
A week in security (June 1 – June 7)
Dark Reading
'Librarian Ghouls' Cyberattackers Strike at Night
Dark Reading
Next-Gen Developers Are a Cybersecurity Powder Keg
Amazon Security
Building secure foundations: A guide to network and infrastructure security at AWS re:Inforce 2025
Embrace The Red
Hosting COM Servers with an MCP Server
Palo Alto Networks
Securing AI Agent Innovation with Prisma AIRS MCP Server
2025-06-08
Ars Technica Security
Cybercriminals turn to “residential proxy” services to hide malicious traffic
2025-06-06
Schneier on Security
Friday Squid Blogging: Squid Run in Southern New England
Schneier on Security
Hearing on the Federal Government and AI
Schneier on Security
Report on the Malicious Uses of AI
Malwarebytes
How to update Chrome on every operating system
Malwarebytes
OpenAI forced to preserve ChatGPT chats
Datadog HQ
Create rich, up-to-date visualizations of your AWS infrastructure with Cloudcraft in Datadog
Hunt and Hackett
Cyber Risks in Agriculture: A Guide for Business Leaders
Dark Reading
F5 Acquires Agentic AI Security Startup Fletch
Dark Reading
Prep for Layoffs Before They Compromise Security
Amazon Security
How to use on-demand rotation for AWS KMS imported keys
Ars Technica Security
Millions of low-cost Android devices turn home networks into crime platforms
Searchlight Cyber
BidenCash Marketplace Seized by U.S. Law Enforcement
Rapid7
Metasploit Wrap-up 06/06/25
2025-06-05
Microsoft Security
Connect with us at the Gartner Security & Risk Management Summit
Microsoft Security
Meet the Deputy CISOs who help shape Microsoft’s approach to cybersecurity: Part 3
Talos Intelligence
Everyone's on the cyber target list
Krebs on Security
Proxy Services Feast on Ukraine’s IP Address Exodus
Eclypsium
SMM Callout Vulnerabilities in UEFI
Dark Reading
Backdoored Malware Reels in Newbie Cybercriminals
Dark Reading
Finding Balance in US AI Regulation
Offensive Security
CVE-2025-24893 – Unauthenticated Remote Code Execution in XWiki via SolrSearch Macro