Over 600 companies say they offer MDR.
Gartnerβs new report shows only a few truly deliver.
It also highlights a big gap β most rely too much on automation, not enough on real human response.
Worth a read β https://thehackernews.com/2025/11/bitdefender-named-representative-vendor.html
Gartnerβs new report shows only a few truly deliver.
It also highlights a big gap β most rely too much on automation, not enough on real human response.
Worth a read β https://thehackernews.com/2025/11/bitdefender-named-representative-vendor.html
β‘8
π‘οΈ ThreatsDay Bulletin is out!
πΉ Cyber threats are getting personal.
πΉ AI helps stop attacks β but itβs also powering them.
πΉ Botnets, fake apps, and scams are growing fast.
Hereβs whatβs really happening this week in cyber β https://thehackernews.com/2025/11/threatsday-bulletin-ai-tools-in-malware.html
πΉ Cyber threats are getting personal.
πΉ AI helps stop attacks β but itβs also powering them.
πΉ Botnets, fake apps, and scams are growing fast.
Hereβs whatβs really happening this week in cyber β https://thehackernews.com/2025/11/threatsday-bulletin-ai-tools-in-malware.html
π₯6π4π2
New cyber rules mean every breach test counts. Most teams still run them in Excel.
At Georgetown, gain the tactical skills to plan for and respond to information security threats.
Attend our Nov. 19 webinar β https://thn.news/cyber-risk-webinar-in
At Georgetown, gain the tactical skills to plan for and respond to information security threats.
Attend our Nov. 19 webinar β https://thn.news/cyber-risk-webinar-in
π6π4
π¨ Cisco warns hackers are targeting unpatched Secure Firewall ASA & FTD devices with a new attack variant exploiting two flaws β CVE-2025-20333 and CVE-2025-20362.
The attacks can crash devices (DoS) or let attackers run code as root.
Details here β https://thehackernews.com/2025/11/cisco-warns-of-new-firewall-attack.html
The attacks can crash devices (DoS) or let attackers run code as root.
Details here β https://thehackernews.com/2025/11/cisco-warns-of-new-firewall-attack.html
π5π4
β οΈ A Russia-linked group posed as ESET to hack Ukrainian organizations.
They sent fake ESET installers that looked real β but quietly installed a backdoor using the Tor network.
Experts call the group InedibleOchotense, tied to Sandworm.
Full story β https://thehackernews.com/2025/11/trojanized-eset-installers-drop.html
They sent fake ESET installers that looked real β but quietly installed a backdoor using the Tor network.
Experts call the group InedibleOchotense, tied to Sandworm.
Full story β https://thehackernews.com/2025/11/trojanized-eset-installers-drop.html
π€―7π₯5π4π1
Redis added an AI agent (Prophet Security) to its SOC, working alongside their MDR team.
The result: investigations that took hours now take about 10 minutes.
AI handles the routine alerts so humans can focus on real threats.
Hereβs what actually worked β https://thehackernews.com/expert-insights/2025/11/implementing-ai-in-soc-lessons-learned.html
The result: investigations that took hours now take about 10 minutes.
AI handles the routine alerts so humans can focus on real threats.
Hereβs what actually worked β https://thehackernews.com/expert-insights/2025/11/implementing-ai-in-soc-lessons-learned.html
π12π€7π3π₯2
A fake VS Code extension made with AI just showed up on the Marketplace.
It ran ransomware on install β zipping, encrypting, and uploading files, all by itself.
Microsoft took it down quickly, but the developer accidentally left the control keys and decryption tools inside.
Hereβs what happened and how it worked β https://thehackernews.com/2025/11/vibe-coded-malicious-vs-code-extension.html
It ran ransomware on install β zipping, encrypting, and uploading files, all by itself.
Microsoft took it down quickly, but the developer accidentally left the control keys and decryption tools inside.
Hereβs what happened and how it worked β https://thehackernews.com/2025/11/vibe-coded-malicious-vs-code-extension.html
π7π6π2
ChatGPT just helped researchers crack XLoader malware in hours β work that used to take days.
AI unpacked the code, found keys, and exposed C2 domains. Big shift for malware analysis.
Check this story β https://thehackernews.com/2025/11/threatsday-bulletin-ai-tools-in-malware.html#ai-speeds-triage-but-human-skill-still-needed
AI unpacked the code, found keys, and exposed C2 domains. Big shift for malware analysis.
Check this story β https://thehackernews.com/2025/11/threatsday-bulletin-ai-tools-in-malware.html#ai-speeds-triage-but-human-skill-still-needed
π₯15π10π4
Google just launched a new form to report extortion scams on Google Maps.
Scammers are posting fake 1β reviews, then asking business owners to pay up to remove them.
This new tool is meant to stop the surge in βreview bombingβ hitting small businesses.
Read how it works β https://thehackernews.com/2025/11/google-launches-new-maps-feature-to.html
Scammers are posting fake 1β reviews, then asking business owners to pay up to remove them.
This new tool is meant to stop the surge in βreview bombingβ hitting small businesses.
Read how it works β https://thehackernews.com/2025/11/google-launches-new-maps-feature-to.html
π€11π5π₯4π2
Your company's logins could be on the dark web right now, and they could sell for as little as $15.
It only takes one click for hackers to walk right in.
Find out if your companyβs credentials are exposed β https://thehackernews.com/2025/11/enterprise-credentials-at-risk-same-old.html
It only takes one click for hackers to walk right in.
Find out if your companyβs credentials are exposed β https://thehackernews.com/2025/11/enterprise-credentials-at-risk-same-old.html
π€―5π3
π¨ WARNING: Malicious NuGet packages were caught hiding delayed payloadsβset to fire off years from now, in 2027β2028.
They look harmless. Some even helpful. But one, Sharp7Extend, quietly sabotages PLCsβcrashing processes or corrupting writes after a short delay.
Nearly 10K downloads before anyone noticed.
Hereβs whatβs really going on β https://thehackernews.com/2025/11/hidden-logic-bombs-in-malware-laced.html
They look harmless. Some even helpful. But one, Sharp7Extend, quietly sabotages PLCsβcrashing processes or corrupting writes after a short delay.
Nearly 10K downloads before anyone noticed.
Hereβs whatβs really going on β https://thehackernews.com/2025/11/hidden-logic-bombs-in-malware-laced.html
π₯8π5π4