News & Updates

Google Includes Critical Android Kernel Patch in February Security Update

Google fixed a high-severity kernel vulnerability reportedly under active exploitation in its latest batch of security updates for Android.

Kernel flaw patch in latest Android security update

An actively exploited kernel-level bug has been identified in Android devices. Left unpatched, the flaw, a USB video-class driver code Linux kernel vulnerability, would pave the way for several types of attacks.

In-depth details of the bug, tracked as CVE-2024-53104 with a CVSS score of 7.8, are yet to

News & Updates

Russian Cybercrime Groups Exploiting 7-Zip Flaw to Bypass Windows MotW Protections

A recently patched security vulnerability in the 7-Zip archiver tool was exploited in the wild to deliver the SmokeLoader malware.
The flaw, CVE-2025-0411 (CVSS score: 7.0), allows remote attackers to circumvent mark-of-the-web (MotW) protections and execute arbitrary code in the context of the current user. It was addressed by 7-Zip in November 2024 with version 24.09.
“The vulnerability was
News & Updates

North Korean Hackers Deploy FERRET Malware via Fake Job Interviews on macOS

The North Korean threat actors behind the Contagious Interview campaign have been observed delivering a collection of Apple macOS malware strains dubbed FERRET as part of a supposed job interview process.
“Targets are typically asked to communicate with an interviewer through a link that throws an error message and a request to install or update some required piece of software such as VCam or
Threats

CVE-2025-21293 Detection: PoC Exploit Released for a Privilege Escalation Vulnerability in Active Directory Domain Services

Shortly after the critical zero-click OLE vulnerability in Microsoft Outlook (CVE-2025-21298), yet another dangerous security threat has come to light. A recently patched privilege escalation vulnerability affecting Active Directory Domain Services (CVE-2025-21293) has taken a dangerous turn. With a proof-of-concept (PoC) exploit now circulating publicly online, the risk of exploitation has significantly increased. This vulnerability opens […]

The post CVE-2025-21293 Detection: PoC Exploit Released for a Privilege Escalation Vulnerability in Active Directory Domain Services appeared first on SOC Prime.

News & Updates

10 Cyberthreats iPhone Users Can’t Afford to Ignore in 2025

Apple’s proverbial walled garden has long been lauded for its robust security, thanks to a tightly controlled ecosystem, a strict app review process, and timely software patches. Yet, as we move further into 2025, advanced cyber threats targeting Apple users – especially iPhone users – persist.

While iOS is less prone to mass malware outbreaks than other platforms, it’s not invulnerable.

In fact, the evolving sophistication of state-sponsored exploits and zero-click attacks underscores the imp

Exit mobile version