Critical Firefox, Tor Browser sandbox escape flaw fixed (CVE-2025-2857)

Google’s fixing of CVE-2025-2783, a Chrome zero-day vulnerability exploited by state-sponsored attackers, has spurred Firefox developers to check whether the browser might have a similar flaw – and they found it. There’s currently no … Continue reading Critical Firefox, Tor Browser sandbox escape flaw fixed (CVE-2025-2857)

Google fixes exploited Chrome sandbox bypass zero-day (CVE-2025-2783)

Google is in the process of rolling out Chrome v134.0.6998.178 to Windows users to fix CVE-2025-2783, a zero-day vulnerability that allowed attackers to to bypass Chrome sandbox protections. The vulnerability was flagged by Kaspersky researchers, who d… Continue reading Google fixes exploited Chrome sandbox bypass zero-day (CVE-2025-2783)

Google Patches Chrome Sandbox Escape Zero-Day Caught by Kaspersky

The vulnerability, tracked as CVE-2025-2783, was chained with a second exploit for remote code execution in attacks targeting organizations in Russia.
The post Google Patches Chrome Sandbox Escape Zero-Day Caught by Kaspersky appeared first on Security… Continue reading Google Patches Chrome Sandbox Escape Zero-Day Caught by Kaspersky

Angry Likho APT Resurfaces with Lumma Stealer Attacks Against Russia

Angry Likho APT resurfaces, targeting Russian and Belarusian organizations with Lumma Stealer malware via phishing attacks, stealing credentials, banking data, and more. Continue reading Angry Likho APT Resurfaces with Lumma Stealer Attacks Against Russia

Crypto-stealing iOS, Android malware found on App Store, Google Play

A number of iOS and Android apps on Apple’s and Google’s official app stores contain a software development kit (SDK) that allows them to exfiltrate cryptowallets’ seed recovery phrases, Kaspersky researchers have found. “The in… Continue reading Crypto-stealing iOS, Android malware found on App Store, Google Play

Russia bans cybersecurity company Recorded Future

The designation won cheers from the CEO of the firm, believed to be the first information security company to garner the label.

The post Russia bans cybersecurity company Recorded Future appeared first on CyberScoop.

Continue reading Russia bans cybersecurity company Recorded Future

African cybercrime crackdown nets more than 1,000 suspects

The international law enforcement operation is the latest to tackle cybercrime on the continent.

The post African cybercrime crackdown nets more than 1,000 suspects appeared first on CyberScoop.

Continue reading African cybercrime crackdown nets more than 1,000 suspects