Hackers Exploit Zimbra Vulnerability as 0-Day with Weaponized iCalendar Files

Hackers Exploit Zimbra Vulnerability as 0-Day with Weaponized iCalendar Files

A zero-day vulnerability in the Zimbra Collaboration Suite (ZCS), identified as CVE-2025-27915, has been exploited in targeted attacks using weaponized iCalendar files. This stored cross-site scripting (XSS) flaw allows attackers to steal sensitive data from victims' email accounts.
Oct 6, 2025 CVE: CVE-2025-27915
Yubico Study Reveals Alarming Trends in Phishing Vulnerability Among Users

Yubico Study Reveals Alarming Trends in Phishing Vulnerability Among Users

A recent Yubico survey highlights that nearly half of respondents interacted with phishing emails in the past year, with Gen Z being the most vulnerable demographic. Despite recognizing the insecurity of passwords, many users and organizations still lack adequate protective measures.
Oct 6, 2025
Discord Users Affected by Data Breach via Third-Party Provider

Discord Users Affected by Data Breach via Third-Party Provider

Discord has reported a data breach affecting a limited number of users after a third-party customer service provider was compromised. Exposed data includes real names, email addresses, and limited billing details, though full credit card numbers and passwords were not accessed.
Oct 6, 2025
From Vulnerability Fatigue To Autonomous Remediation

From Vulnerability Fatigue To Autonomous Remediation

The cybersecurity landscape is shifting from endless vulnerability management to proactive, automated remediation. This change aims to alleviate alert fatigue and enhance security resilience through innovative approaches in software development.
Oct 6, 2025
WestJet Data Breach Impacts 1.2 Million Customers

WestJet Data Breach Impacts 1.2 Million Customers

WestJet has disclosed a data breach affecting 1.2 million customers due to a cyber-attack in June 2025. Personal information, including names and contact details, was accessed, although sensitive data such as credit card numbers and passwords remain secure.
Oct 6, 2025
UK Schools Face Rising Cyber Attack Threats Amid Funding Pressures

UK Schools Face Rising Cyber Attack Threats Amid Funding Pressures

A recent government survey reveals that six out of ten UK secondary schools have experienced a cyber-attack or breach in the past year, with further education colleges and universities facing even higher rates. Analysts attribute the vulnerability of state schools to funding pressures and a lack of specialist cybersecurity expertise.
Oct 6, 2025
Cybercriminals Attempt Bribery of BBC Cyber Correspondent

Cybercriminals Attempt Bribery of BBC Cyber Correspondent

Joe Tidy, a BBC cybersecurity journalist, was approached by the Medusa ransomware gang, who offered him a cut of ransom payments in exchange for insider access to the BBC's systems. This incident highlights the growing trend of bribery-based attacks targeting employees within organizations.
Oct 6, 2025 Actor: Medusa ransomware gang Sector: Media Region: Global
Jaguar Land Rover Cyber-Attack Highlights Growing Threats to Businesses

Jaguar Land Rover Cyber-Attack Highlights Growing Threats to Businesses

Jaguar Land Rover was targeted in a cyber-attack that forced the company to shut down computers and factories, raising concerns about the preparedness of British businesses against such threats. The attack has had a devastating impact on JLR's supply chain, leading to layoffs and financial strain on smaller suppliers.
Oct 6, 2025