Reza Rafati
-

Google’s AI Uncovers Critical Flaws in Apple’s WebKit, Highlighting Machine Learning’s Role in Cybersecurity
Google’s AI system, ‘Big Sleep,’ discovered five critical vulnerabilities in Apple’s WebKit, highlighting AI’s growing role in cybersecurity for proactive vulnerability detection and responsible disclosure practices between tech giants.
-

Samsung Zero-Click Vulnerability Exploited, Deploying LANDFALL Spyware
A critical zero-click vulnerability in Samsung devices has reportedly been exploited, enabling the deployment of sophisticated Android spyware known as LANDFALL. The attack vector, leveraging popular messaging platform WhatsApp, highlights the escalating threat of highly evasive surveillance tools.
-

Mozilla Unveils Enterprise Support Program for Firefox
Mozilla has launched a new paid support program for businesses and institutional users of its Firefox web browser, offering dedicated technical assistance and extended stability. This initiative aims to expand Firefox’s presence in corporate IT infrastructures by providing features like long-term support versions and prioritized security patches.
-

German Experts Deployed to Belgium Amid Rising Drone Incidents Near Sensitive Sites
Germany has dispatched military specialists to Belgium to assist in countering an uptick in unidentified drone sightings near critical installations, including a military air base known to house U.S. nuclear weapons. The move underscores growing concerns over hybrid threats within Europe and the readiness of NATO allies to respond.
-

China-Linked Hackers Exploit Legacy Flaws and IIS Servers in Global Espionage Surge
Chinese state-linked cyber actors are increasingly leveraging well-known vulnerabilities and exploiting server misconfigurations to establish enduring footholds within critical networks globally, according to recent reports from cybersecurity researchers.
-

Bulgaria Seeks State Control Over Key Lukoil Refinery Amid U.S. Sanctions
Bulgaria’s parliament has enacted new legislation to place the nation’s largest oil refinery, Lukoil Neftochim Burgas, under state control, a direct response to recent U.S. sanctions targeting the Russian energy giant over its war in Ukraine. The move aims to avert a potential shutdown of the crucial Balkan facility.
-

Chinese State-Backed Hackers Weaponize Old Software Flaws for Global Espionage
Chinese state-backed hackers are exploiting old software vulnerabilities like Log4j and Microsoft IIS for global espionage, bypassing advanced defenses. This highlights the critical need for rigorous patch management against seemingly dated flaws.
-

Russia Enacts New Reservist Law Amid Ukraine War, Sparking ‘Hidden Mobilization’ Concerns
A new Russian law allowing reservist call-ups for ‘special training’ amid the Ukraine war has sparked concerns of a ‘hidden mobilization’ to bolster forces, though its impact remains debated.
-

Samsung Patches High-Severity Flaw Allowing Remote Code Execution on Android Devices
Samsung has patched a high-severity flaw, CVE-2025-21042, in its Android devices, which could allow remote code execution without user interaction. Users are urged to apply the April 2025 Security Maintenance Release promptly to protect against this vulnerability.
-

Hidden “Logic Bombs” Found in Popular Software Packages, Threatening Future Industrial Sabotage and Data Corruption
Security researchers have uncovered a new wave of ‘logic bombs’ hidden within commonly used software, designed to disrupt critical industrial systems and corrupt databases, posing significant challenges for detection and forensic investigation.
