Apache ActiveMQ Flaw Exploited to Deploy DripDropper Malware on Cloud Linux Systems

Threat actors are exploiting a nearly two-year-old security flaw in Apache ActiveMQ to gain persistent access to cloud Linux systems and deploy malware called DripDropper.
But in an unusual twist, the unknown attackers have been observed patching the exploited vulnerability after securing initial access to prevent further exploitation by other adversaries and evade detection, Red Canary said in

The Hacker News – ​Read More

PipeMagic Backdoor Resurfaces as Part of Play Ransomware Attack Chain

Attackers are wielding the sophisticated modular malware while exploiting CVE-2025-29824, a previously zero-day flaw in Windows Common Log File System (CLFS) that allows attackers to gain system-level privileges on compromised systems.

darkreading – ​Read More

Highly Sensitive Medical Cannabis Patient Data Exposed by Unsecured Database

Nearly a million records, which appear to be linked to a medical-cannabis-card company in Ohio, included Social Security numbers, government IDs, health conditions, and more.

Security Latest – ​Read More

Australian ISP iiNet Reports Data Breach, Customer Accounts Stolen

Australian ISP iiNet confirms data breach as hackers stole 280,000 email accounts, phone numbers and user data using…

Hackread – Latest Cybersecurity, Hacking News, Tech, AI & Crypto – ​Read More

The best Apple TV VPNs of 2025: Expert tested and reviewed

You can securely stream your favorite Apple TV shows and movies without drastic speed loss. ZDNET has tested and ranked the best VPN solutions you can use.

Latest news – ​Read More

iPhone users may finally be able to send encrypted texts to Android friends with iOS 26

The ability to encrypt texts between iPhones and Android devices may be coming soon.

Latest news – ​Read More

I tested Sony’s new premium gaming headphones, and can’t go back to boring audio

Sony’s new InZone H9 II gaming headphones have fantastic spatial audio and ANC, with some quality-of-life features gamers will appreciate.

Latest news – ​Read More

New GodRAT Trojan Targets Trading Firms Using Steganography and Gh0st RAT Code

Financial institutions like trading and brokerage firms are the target of a new campaign that delivers a previously unreported remote access trojan called GodRAT.
The malicious activity involves the “distribution of malicious .SCR (screen saver) files disguised as financial documents via Skype messenger,” Kaspersky researcher Saurabh Sharma said in a technical analysis published today.
The

The Hacker News – ​Read More

5 ways automation can speed up your daily workflow – and implementation is easy

If you’re looking to ease your daily workflow with automation, it might take some time to make it work, but the end results will be worth the effort.

Latest news – ​Read More

Citizen Lab Reports Hidden VPN Networks Sharing Ownership and Security Flaws

Citizen Lab’s new report, Hidden Links, uncovers a network of VPN providers like Turbo VPN and VPN Monster…

Hackread – Latest Cybersecurity, Hacking News, Tech, AI & Crypto – ​Read More