HP researchers have detected an alarming trend of cyber attackers using fraudulent CAPTCHA challenges to install malware or Remote Access Trojans (RATs) on users’ systems. The latest Threat Insights Report shows increased tolerance for complex authentication processes being exploited, including use of Python scripts for SVG smuggling and malware enabling control over victims’ webcams and microphones. The report’s data was gathered from real cyberattacks on millions of secured endpoints, and highlights campaigns delivering harmful PowerShell commands and malware through malicious CAPTCHA challenges.

400+ SAP NetWeaver Devices Vulnerable to 0-Day Attacks that Exploited in the Wild
Shadow Servers have identified 454 vulnerable SAP NetWeaver systems affected by a critical zero-day flaw, CVE-2025-31324, allowing unauthenticated file uploads and potential system compromise. Discovered