Featured Story
Lazarus hackers breach six South Korean companies in watering hole attacks
South Korea has been targeted by the prolific North Korea-linked Lazarus Group as part of an espionage campaign dubbed “Operation SyncHole” by researchers at Kaspersky. At least six organizations in sectors including IT, finance, and telecom were compromised between November 2024 and February 2025.
Other Stories
159 CVEs Exploited in Q1 2025
VulnCheck reports that 159 vulnerabilities were exploited in the wild during Q1 2025 — up from 151 in Q4 2024. Notably, 28.3% were exploited within 24 hours of disclosure. CMS platforms, network edge devices, and operating systems were the most common targets.
Cisco Confirms Some Products Impacted by Critical Erlang/OTP Flaw
A critical SSH vulnerability (CVE-2025-32433) in Erlang/OTP may allow unauthenticated attackers to execute arbitrary code. Cisco confirmed exposure in some products and recommends urgent updates to patched OTP versions.
Hackers abuse OAuth 2.0 workflows to hijack Microsoft 365 accounts
Russian-linked threat actors are exploiting OAuth 2.0 flows to hijack Microsoft 365 accounts, targeting individuals via WhatsApp and Signal. Victims are tricked into sharing authorization codes or clicking malicious links.
Beware of fraudulent text messages sent in the name of AG Insurance
Smishing messages pretending to be from AG Insurance invite recipients to click a link to receive a refund. These fraudulent messages are part of a wider phishing campaign targeting financial data.
verdacht@safeonweb.be, suspect@safeonweb.be, suspicious@safeonweb.be.