Red Hot Cyber. The Cybersecurity Blog
Featured Articles

The Tor project has announced the introduction of a new encryption scheme, called Counter Galois Onion (CGO) , intended to replace the previous Tor1 Relay method. The update aims to strengthen network...

A group of members of the European Parliament have called for Microsoft to abandon its internal use of products and switch to European solutions. Their initiative stems from growing concerns about the...

Hi everyone… my name is Marco, I’m 37 years old and I work as an administrative clerk in an accounting firm. This is my first time speaking in front of you all, and I’m a little emotional… and...

A nearly forgotten service command has returned to prominence after being spotted in new Windows device infection patterns. For decades considered a relic of the early days of the internet, the mechan...

On the porch of an old cabin in Colorado, Mark Gubrud , 67, gazes absently into the distant dusk, his phone beside him, the screen still on a news app. As we know, tech giants Microsoft and OpenAI ann...
Hikvision Exploiter: The open-source tool for attacking IP cameras
100 Infostealer packages uploaded to NPM using AI hallucinations
Atroposia: The MaaS platform that provides a Trojan with a vulnerability scanner
0day as weapons: sold 8 US defense 0day exploits to Moscow
Critical vulnerability in Blink: a website can block all Chromium-based browsers
Trump-Xi Summit: A Truce That Doesn’t Benefit Europe

Hikvision Exploiter: The open-source tool for attacking IP cameras
Redazione RHC - October 30th, 2025
A new open-source tool, known as HikvisionExploiter, was recently updated. This tool is designed to automate cyberattacks against vulnerable Hikvision IP cameras . Designed to facilitate penetration testing operations, this...

100 Infostealer packages uploaded to NPM using AI hallucinations
Redazione RHC - October 29th, 2025
Since August 2024, the PhantomRaven campaign has uploaded 126 malicious packages to npm, which have been downloaded a total of over 86,000 times . The campaign was discovered by Koi...

Atroposia: The MaaS platform that provides a Trojan with a vulnerability scanner
Redazione RHC - October 29th, 2025
Varonis researchers have discovered the Atroposia MaaS (malware-as-a-service) platform. For $200 a month, its customers receive a remote access Trojan with extensive functionality, including remote desktop, file system management, information...

0day as weapons: sold 8 US defense 0day exploits to Moscow
Redazione RHC - October 29th, 2025
Peter Williams, a former employee of the defense contractor, pleaded guilty in US federal court to two counts of theft of trade secrets, admitting to selling eight zero-day vulnerabilities to...

Critical vulnerability in Blink: a website can block all Chromium-based browsers
Redazione RHC - October 29th, 2025
Researcher José Pino has presented a proof-of-concept vulnerability in the Blink rendering engine used in Chromium -based browsers, demonstrating how a single web page can crash many popular browsers and...

Trump-Xi Summit: A Truce That Doesn’t Benefit Europe
Redazione RHC - October 29th, 2025
After years of tensions, tariffs, mutual accusations, and trade wars that have shattered the global balance of power, the long-awaited meeting between Donald Trump and Xi Jinping has finally taken...
Discover the latest critical CVEs issued and stay updated on the most recent vulnerabilities. Or search for a specific CVE

