Hackers Exploit Zimbra Vulnerability as 0-Day with Weaponized iCalendar Files

Hackers Exploit Zimbra Vulnerability as 0-Day with Weaponized iCalendar Files

A zero-day vulnerability in the Zimbra Collaboration Suite (ZCS), identified as CVE-2025-27915, has been exploited in targeted attacks using weaponized iCalendar files. This stored cross-site scripting (XSS) flaw allows attackers to steal sensitive data from victims' email accounts.
Oct 6, 2025 CVE: CVE-2025-27915
UK Schools Face Rising Cyber Attack Threats Amid Funding Pressures

UK Schools Face Rising Cyber Attack Threats Amid Funding Pressures

A recent government survey reveals that six out of ten UK secondary schools have experienced a cyber-attack or breach in the past year, with further education colleges and universities facing even higher rates. Analysts attribute the vulnerability of state schools to funding pressures and a lack of specialist cybersecurity expertise.
Oct 6, 2025
Cybercriminals Attempt Bribery of BBC Cyber Correspondent

Cybercriminals Attempt Bribery of BBC Cyber Correspondent

Joe Tidy, a BBC cybersecurity journalist, was approached by the Medusa ransomware gang, who offered him a cut of ransom payments in exchange for insider access to the BBC's systems. This incident highlights the growing trend of bribery-based attacks targeting employees within organizations.
Oct 6, 2025 Actor: Medusa ransomware gang Sector: Media Region: Global