Samsung has issued software updates to address a serious security flaw, CVE-2025-4632, in its MagicINFO 9 Server that is being exploited in the wild. The flaw can enable attackers to write arbitrary files as system authority. The issue has been exploited in several instances since the release of a proof-of-concept, sometimes to deploy the Mirai botnet. Users are urged to apply the latest fixes urgently to protect against potential threats.

New Weaponized PyPI Package Attacking Developers to Steal Source Code
A malicious Python package named solana-token was discovered, designed to steal source code and sensitive data from Solana developers. Masquerading as a legitimate utility, it