Flodmonitor Blog

Latest insights in cybersecurity, vulnerabilities & threats

Curated by the Flodmonitor research team
November 07, 2025

U.S. Congressional Budget Office faces suspected cyberattack

The U.S. Congressional Budget Office is in hot water after a suspected foreign cyberattack breached its network. The CBO recently confirmed the incident, raising concerns about the potential exposu...

Read the full report
Ayoub Aouragh Oct 19, 2025 1 min read

Silver Fox targets Japan and Malaysia with Winos 4.0 attacks

Cybersecurity researchers are raising alarms as the Silver Fox group expands its Winos 4.0 malware attacks from China and Taiwan to Japan and Malaysia. This malware, also known as ValleyRAT, is now...

Explore insight
Ayoub Aouragh Oct 18, 2025 1 min read

Google ads for fake Homebrew and LogMeIn sites spread infostealers

Heads up, macOS developers! A new shady campaign is on the loose, using fake Google ads to lure you into downloading malware disguised as popular platforms like Homebrew, LogMeIn, and TradingView. ...

Explore insight
Ayoub Aouragh Oct 18, 2025 1 min read

North Korean hackers develop advanced JS malware using BeaverTail and OtterCookie

North Korean hackers are stepping up their game by merging two of their malware programs, BeaverTail and OtterCookie, into a more advanced threat. Cisco Talos recently reported that the notorious g...

Explore insight
Ayoub Aouragh Oct 18, 2025 1 min read

Researchers find WatchGuard VPN bug that could allow device takeover

If you're using WatchGuard Fireware, you might want to pay attention. Researchers just revealed a critical flaw that could let hackers take over your devices. This vulnerability, dubbed CVE-20...

Explore insight
Ayoub Aouragh Oct 18, 2025 1 min read

ConnectWise addresses Automate bug that enables AiTM attacks

ConnectWise just rolled out a security update to fix some serious vulnerabilities in its Automate product. One of these bugs was rated critical, and it could let bad actors intercept and modify sen...

Explore insight
Ayoub Aouragh Oct 17, 2025 1 min read

Microsoft revokes 200 fraudulent certificates linked to ransomware

Microsoft just pulled the plug on over 200 fraudulent certificates that were being used by a group known as Vanilla Tempest to carry out ransomware attacks. These certificates were signed off on fa...

Explore insight
Ayoub Aouragh Oct 17, 2025 1 min read

Microsoft lifts safeguard holds blocking Windows 11 updates

Microsoft has just lifted two more compatibility holds that were blocking some users from installing the latest Windows 11 update, 24H2. If you’ve been itching to get your hands on those new featur...

Explore insight
Oct 17, 2025 1 min read

New LinkPro Linux rootkit exploits eBPF for stealthy attacks

A new Linux rootkit called LinkPro has surfaced, and it’s causing quite a stir in the cybersecurity world. Discovered by Synacktiv, this sneaky little backdoor takes advantage of eBPF modules to hi...

Explore insight
Oct 17, 2025 1 min read

Windows 11 updates disrupt localhost HTTP/2 connections

You might want to hold off on those Windows 11 updates if you rely on localhost for your apps. Microsoft’s latest round of updates has thrown a wrench in the works, breaking HTTP/2 connections to 1...

Explore insight
Ayoub Aouragh Oct 16, 2025 1 min read

Hackers exploit Cisco SNMP flaw to install rootkit on switches

Hackers have taken advantage of a recently patched vulnerability in Cisco's networking devices, exploiting a flaw known as CVE-2025-20352. This issue allows remote code execution, which means attac...

Explore insight
Ayoub Aouragh Oct 16, 2025 1 min read

Microsoft disrupts ransomware attacks aimed at Teams users

Microsoft just threw a wrench in the works for some pesky ransomware attacks targeting Teams users. Earlier this month, they revoked over 200 certificates that were being used to sign malicious Tea...

Explore insight
Oct 16, 2025 1 min read

Nintendo denies data breach by Crimson Collective

Explore insight