21 Sep, 2026

Chinese hackers exploiting VMware zero-day since October 2024

Broadcom has patched a high-severity privilege escalation vulnerability in its VMware Aria Operations and VMware Tools software, which has been exploited in zero-day attacks since October 2024. While the American technology giant didn’t tag this security bug (CVE-2025-41244) as exploited in the wild, it thanked NVISO threat researcher Maxime Thiebaut for reporting the bug in May. However, […]

2 mins read

Microsoft fixes Windows DRM video playback issues for some users

Microsoft says it has “partially” resolved a known issue that caused problems when trying to play DRM-protected video in Blu-ray/DVD/Digital TV applications. This bug affects Windows 11 24H2 systems, and it triggers freezes, black screens, and other issues after installing the August preview update or later. “Some Digital TV and BluRay/DVD applications might experience problems […]

1 min read

CISA warns of critical Linux Sudo flaw exploited in attacks

Hackers are actively exploiting a critical vulnerability (CVE-2025-32463) in the sudo package that enables the execution of commands with root-level privileges on Linux operating systems. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added this vulnerability to its Known Exploited Vulnerabilities (KEV) catalog, describing it as “an inclusion of functionality from untrusted control sphere.” CISA has given federal […]

2 mins read

Windows 11 KB5065789 update released with 41 changes and fixes

​​Microsoft has released the KB5065789 preview cumulative update for Windows 11 24H2, which includes 41 improvements, including new AI actions in File Explorer and bug fixes for Windows Update and Windows Sandbox. This update is part of Microsoft’s “optional non-security preview updates” schedule, which releases updates at the end of each month to allow Windows […]

3 mins read

Broadcom fixes high-severity VMware NSX bugs reported by NSA

Broadcom has released security updates to patch two high-severity VMware NSX vulnerabilities reported by the U.S. National Security Agency (NSA). VMware NSX is a networking virtualization solution within VMware Cloud Foundation that enables administrators to deploy traditional and modern applications in private/hybrid clouds. The first security flaw reported by the NSA, tracked as CVE-2025-41251, is due […]

2 mins read

UK convicts “Bitcoin Queen” in world’s largest cryptocurrency seizure

The Metropolitan Police has secured a conviction in what is believed to be the world’s largest cryptocurrency seizure, valued at more than £5.5 billion ($7.3 billion). Zhimin Qian, 47, also known as Yadi Zhang, pleaded guilty today at Southwark Crown Court to acquiring and possessing criminal property under the Proceeds of Crime Act. Police said […]

2 mins read

Japan’s largest brewer suspends operations due to cyberattack

Asahi Group Holdings, Ltd (Asahi), the brewer of Japan’s top-selling beer, has disclosed a cyberattack that disrupted several of its operations. According to the company, the incident has affected its ordering and shipping activity, which have been completely suspended. Call center operations and customer service desk are currently unavailable to the public due to the cyberattack. Asahi […]

2 mins read

Ransomware gang sought BBC reporter’s help in hacking media giant

Threat actors claiming to represent the Medusa ransomware gang tempted a BBC correspondent to become an insider threat by offering a significant amount of money. Cybersecurity correspondent Joe Tidy revealed in a story on the BBC that the hackers wanted to use his laptop to breach the British public-service broadcaster’s network and then ask for a ransom. […]

3 mins read

UK govt backs JLR with £1.5 billion loan guarantee after cyberattack

The UK Government is providing Jaguar Land Rover (JLR) with a £1.5 billion loan guarantee to restore its supply chain after a catastrophic cyberattack forced the automaker to halt production. The loan guarantee is provided through the UK Export Finance’s Export Development Guarantee (EDG) program, which reduces the risk for lenders by covering the majority of […]

3 mins read

Brave launches ‘Ask Brave’ feature to fuse AI with traditional search

Brave Software, the creator of the privacy-focused web browser and search engine, has introduced a new subsystem called Ask Brave that unifies search and AI chat into a single interface. Ask Brave is free to use, accessible from any browser at search.brave.com/ask, and designed with privacy at its core. In essence, this new system combines […]

2 mins read