Skip to content

Polymath Central

Thoughts and musings of David Greenberg, a polymath

Technology

GOP may finally succeed in unrelenting quest to kill two NASA climate satellites

September 7, 2025 Blogmaster

It was in 2002, during the George W. Bush administration, when NASA decided to put a satellite into orbit to track emissions of carbon dioxide, the primary greenhouse gas pumped…

Cybersecurity

Cybercriminals Exploit X’s Grok AI to Bypass Ad Protections and Spread Malware to Millions

September 7, 2025 Blogmaster

Cybersecurity researchers have flagged a new technique that cybercriminals have adopted to bypass social media platform X’s malvertising protections and propagate malicious links using its artificial intelligence (AI) assistant Grok.…

Cybersecurity

GhostRedirector Hacks 65 Windows Servers Using Rungan Backdoor and Gamshen IIS Module

September 7, 2025 Blogmaster

Cybersecurity researchers have lifted the lid on a previously undocumented threat cluster dubbed GhostRedirector that has managed to compromise at least 65 Windows servers primarily located in Brazil, Thailand, and…

Cybersecurity

Russian APT28 Deploys “NotDoor” Outlook Backdoor Against Companies in NATO Countries

September 7, 2025 Blogmaster

The Russian state-sponsored hacking group tracked as APT28 has been attributed to a new Microsoft Outlook backdoor called NotDoor in attacks targeting multiple companies from different sectors in NATO member…

Cybersecurity

VirusTotal Finds 44 Undetected SVG Files Used to Deploy Base64-Encoded Phishing Pages

September 7, 2025 Blogmaster

Cybersecurity researchers have flagged a new malware campaign that has leveraged Scalable Vector Graphics (SVG) files as part of phishing attacks impersonating the Colombian judicial system. The SVG files, according…

Cybersecurity

Automation Is Redefining Pentest Delivery

September 7, 2025 Blogmaster

Pentesting remains one of the most effective ways to identify real-world security weaknesses before adversaries do. But as the threat landscape has evolved, the way we deliver pentest results hasn’t…

Cybersecurity

SAP S/4HANA Critical Vulnerability CVE-2025-42957 Exploited in the Wild

September 7, 2025 Blogmaster

A critical security vulnerability impacting SAP S/4HANA, an Enterprise Resource Planning (ERP) software, has come under active exploitation in the wild. The command injection vulnerability, tracked as CVE-2025-42957 (CVSS score:…

Cybersecurity

TAG-150 Develops CastleRAT in Python and C, Expanding CastleLoader Malware Operations

September 7, 2025 Blogmaster

The threat actor behind the malware-as-a-service (MaaS) framework and loader called CastleLoader has also developed a remote access trojan known as CastleRAT. “Available in both Python and C variants, CastleRAT’s…

Cybersecurity

CISA Orders Immediate Patch of Critical Sitecore Vulnerability Under Active Exploitation

September 7, 2025 Blogmaster

Federal Civilian Executive Branch (FCEB) agencies are being advised to update their Sitecore instances by September 25, 2025, following the discovery of a security flaw that has come under active…

Cybersecurity

Malicious npm Packages Impersonate Flashbots, Steal Ethereum Wallet Keys

September 7, 2025 Blogmaster

A new set of four malicious packages have been discovered in the npm package registry with capabilities to steal cryptocurrency wallet credentials from Ethereum developers. “The packages masquerade as legitimate…

Posts pagination

1 … 71 72 73 … 275

Polymath Central

Thoughts and musings of David Greenberg, a polymath

Proudly powered by WordPress | Theme: Newsup by Themeansar.