December 2025
2,743 clustered stories from December 2025, newest first.
December 2025 — page 6
100 of 2,743
- Festive Season Scams Targeting African Consumers
- ANY.RUN Reports Key Cybersecurity Milestones and Discoveries of 2025
- NHS GP Software Supplier DXS Targeted in Cyber Attack
- Third-Party Access as a Key Vulnerability in Supply Chain Security
- 54 Indicted in Major ATM Jackpotting Conspiracy in Nebraska
- Roundcube Vulnerabilities Enable Malicious Script Execution
- Fedora 43: Multiple Critical Buffer Overflow Vulnerabilities in mingw-libpng
- Fedora 43 and 42 Address PHP 8.4.16 Vulnerabilities
- Critical RCE Vulnerability in WatchGuard Firebox Firewalls Actively Exploited
- Phishing Alert: Fake Amazon Recall Texts Circulate
- Threat Intelligence Market Growth Driven by Advanced Persistent Threats
- Chinese Hackers Breach Foreign Office, Stealing Confidential Data
- UK Foreign Office Hacked; Chinese Group Suspected
- Amazon Identifies North Korean IT Worker via Keystroke Tracking
- Phishing Campaign Targets HubSpot Users
- CVE-2025-38126 and CVE-2025-38125 Address PTP Configuration Issues
- University of Sydney Cyberattack Exposes Data of 13,000 Individuals
- Critical Zero-Day Vulnerability in WatchGuard Firewalls Exploited
- Clop Ransomware Targets Gladinet CentreStack Servers for Data Theft
- Google Releases Second December Update for Android 16 QPR2 on Pixel Devices
- LKQ Confirms Data Breach Linked to Oracle EBS Exploit
- Cyber Attack on NHS England Provider and West London Council Confirmed
- INE Security Expands Training in Middle East and Asia
- SUSE Multi-Linux Manager Security Update Addresses CVE-2025 Vulnerabilities
- Nigeria Police Arrest Suspect in Microsoft 365 Phishing Scheme
- OpenAI Releases GPT-5.2-Codex and gpt-oss-safeguard Models
- Avenira Limited Listed on Darknet After Ransomware Attack
- SUSE Releases Security Fix for Grafana Vulnerabilities in Multi-Linux Manager
- Outdated Car Web Browsers Expose Users to Cybersecurity Risks
- Whistleblowers Alert on Security Risks in UK Digital ID System
- Delty (YC X25) Expands Hiring for AI Engineering Roles
- OpenAI Expands ChatGPT with New Retail Apps Including Target
- Inductive Automation Ignition Cybersecurity Incident
- Mass Hacking of 120,000 IP Cameras in South Korea Exposes Private Footage
- CISA Adds ASUS CVE-2025-59374 to KEV List Due to Active Exploitation
- NuGet Malware Impersonates Nethereum to Steal Crypto Assets
- GachiLoader Uses Obfuscated Node.js Malware to Deploy Infostealer Payloads
- Linux Foundation Launches ORCA to Mitigate Cyber Attack Impacts
- Naftali Bennett's Telegram Account Hacked, Phone Remains Secure
- New Lazarus and Kimsuky Infrastructure Exposed with Active Tools
- Data Breaches Expose Sensitive Customer Information from Multiple Companies
- RansomHouse RaaS Upgrades Double Extortion Tactics
- University of Sydney Data Breach Exposes Personal Information of Thousands
- Missing Vulnerable Person Found in Worcester
- PyStoreRAT Malware Targets Developers via GitHub Accounts
- Turkish Defense Ministry Denies Air Defense Vulnerability Claims
- Schneider Electric EcoStruxure Cybersecurity Issues
- GhostPoster Malware Infects 17 Firefox Add-ons with Over 50,000 Downloads
- AT&T Settles $177 Million Data Breach Lawsuit for Customer Compensation
- New Zealand Cyber Losses Surge to $12.4 Million in Q3 2025
- Docker Hardened Images Free Access Amid Security Concerns
- Seafarer Arrested After Malware Found on MSC Ferry
- HPE Addresses Critical CVE-2025-37164 Flaw in IT Management Software
- Ransomware Threats: Manufacturers and New Malware Pack Details
- Cellik Android Malware Offers Trojans via Google Play Apps
- Somalia e-visa security flaw exposes personal data of thousands
- WAFs Ineffective Against React2Shell Exploit, Security Experts Warn
- Surge in OAuth Device Code Phishing Targeting Microsoft 365 Accounts
- AI-Generated Code Found to Have Increased Defects
- Minersville School District Investigates Ransomware Attack Impacting Schools
- Taiwan NPOs Launch Free 'Green Domain' Certification to Combat Phishing
- Phishing Attack Compromises Mental Health Clients' Data
- Chinese Hackers Exploit Cisco Email Security Vulnerability
- Rise of AI-Driven Attacks and NFC Threats in Cybersecurity
- Lovable Achieves Rapid Growth with $330M Funding and User Surge
- Connecticut DCP Warns of Email Scam Impersonating Officials
- Default WAF Rules Inadequate Against Major CVE Exploits
- NHS Tech Supplier DXS International Investigates Cyberattack
- Cybersecurity Threats in Retail and E-commerce Sector in 2025
- Cisco Unified Contact Center Express Vulnerabilities Allow Remote Code Execution
- Chinese Hackers Exploit Cisco's AsyncOS Zero-Day Vulnerability
- CISA Alerts on Exploited Backdoor in Asus Live Update Tool
- Microsoft 365 Users Targeted by Device Code Phishing Attacks
- FBI Dismantles $70M Crypto Laundering Operation E-Note
- University of Sydney Cybersecurity Breach Notification
- Lies-in-the-Loop Attack Exploits AI Safety Mechanisms
- 52% of Public Vulnerabilities Bypass Leading WAFs, Reports Miggo Security
- HPE OneView Software Vulnerability Enables Remote Code Execution
- Nagios XI 2026R1.1 Released to Address Privilege Escalation Vulnerability
- Phantom Stealer 3.5 Malware Targets Sensitive User Data
- GitHub Postpones Price Increase for Self-Hosted Actions Runners
- Cybercriminals Launch Fake Shopping Domains This Holiday Season
- Chinese Hackers Use Fake Teams Downloads to Shift Blame to Russia
- Critical Vulnerability in Node.js Library Allows RCE on Windows Systems
- Apache Commons Text Vulnerability Allows Remote Code Execution
- Cisco AsyncOS Zero-Day Exploited by Chinese APT Group
- Critical Vulnerability in SonicWall SMA1000 Exploited by Hackers
- California Implements New Data Breach Notification Law Effective 2026
- WhatsApp Accounts Compromised via Social Engineering and Malware
- Microsoft 365 Services Disruption Affects Users in Japan and China
- China-Linked Hackers Exploit CVE-2025-20393 Zero-Day Vulnerability
- Critical SQL Injection and DoS Vulnerabilities in Python Frameworks
- Kimwolf Botnet Compromises 1.8 Million Android Devices Globally
- openSUSE Releases Moderate Security Update for Python39
- Parked Web Domains Emerge as Major Malware Source
- Vizio May Be Required to Provide SmartCast Source Code Under GPL
- Exploitation of Vulnerabilities in Teens Highlighted by #iwasfifteen and Epstein Coverage
- Coordinated Brute-Force Attacks Target Cisco and Palo Alto VPN Gateways
- Hamilton Woman Sentenced for Exploiting Migrant Workers
- Android 16 QPR3 Beta 1 Released for Google Pixel Devices