ASD Warns of Ongoing BADCANDY Attacks Exploiting Cisco IOS XE Vulnerability

Nov 01, 2025Ravie LakshmananArtificial Intelligence / Vulnerability The Australian Signals Directorate (ASD) has issued a bulletin about ongoing cyber attacks targeting unpatched Cisco IOS XE devices in the country with a previously undocumented implant known as BADCANDY. The activity, per the intelligence agency, involves the exploitation of CVE-2023-20198 (CVSS score: 10.0), a critical vulnerability that […]

Continue Reading

While AI spending is top of mind, online ads are driving a lot of Big Tech’s growth

META CEO Mark Zuckerberg (L) and Microsoft CEO Satya Nadella. Getty Images As tech giants increase their already breathtaking spending on artificial intelligence, their respective digital advertising businesses have also gained momentum. Quarterly earnings reports this week from Meta, Amazon, Alphabet and Microsoft all showed healthy revenue on the ads front. The rising online advertising […]

Continue Reading

OpenAI Unveils Aardvark: GPT-5 Agent That Finds and Fixes Code Flaws Automatically

Oct 31, 2025Ravie LakshmananArtificial Intelligence / Code Security OpenAI has announced the launch of an “agentic security researcher” that’s powered by its GPT-5 large language model (LLM) and is programmed to emulate a human expert capable of scanning, understanding, and patching code. Called Aardvark, the artificial intelligence (AI) company said the autonomous agent is designed […]

Continue Reading

China-Linked Hackers Exploit Windows Shortcut Flaw to Target European Diplomats

Oct 31, 2025Ravie LakshmananMalware / Threat Intelligence A China-affiliated threat actor known as UNC6384 has been linked to a fresh set of attacks exploiting an unpatched Windows shortcut vulnerability to target European diplomatic and government entities between September and October 2025. The activity targeted diplomatic organizations in Hungary, Belgium, Italy, and the Netherlands, as well […]

Continue Reading

China-Linked Tick Group Exploits Lanscope Zero-Day to Hijack Corporate Systems

Oct 31, 2025Ravie LakshmananEndpoint Security / Cyber Espionage The exploitation of a recently disclosed critical security flaw in Motex Lanscope Endpoint Manager has been attributed to a cyber espionage group known as Tick. The vulnerability, tracked as CVE-2025-61932 (CVSS score: 9.3), allows remote attackers to execute arbitrary commands with SYSTEM privileges on on-premise versions of […]

Continue Reading

The MSP Cybersecurity Readiness Guide: Turning Security into Growth

Oct 31, 2025The Hacker NewsBusiness Continuity / Risk Management MSPs are facing rising client expectations for strong cybersecurity and compliance outcomes, while threats grow more complex and regulatory demands evolve. Meanwhile, clients are increasingly seeking comprehensive protection without taking on the burden of managing security themselves. This shift represents a major growth opportunity. By delivering […]

Continue Reading

OpenAI Introduces Aardvark, an Agentic Security Researcher That Can Find and Fix Vulnerabilities

OpenAI has unveiled an artificial intelligence (AI) agent called Aardvark that can act as a software security researcher. Built on GPT-5, the agent can analyse code, detect vulnerabilities, and propose fixes. Currently in private beta, Aardvark is being tested by partner organisations. OpenAI says the tool aims to make software systems more secure by automating […]

Continue Reading