A new malware called SvcStealer 2025 is targeting sensitive user data through spear-phishing emails. The malware collects a range of data, including: software information, user credentials and crypto wallets, which it then exfiltrates to a separate server. It can also download further payloads, expanding its threat beyond just data theft. Its sophistication makes it hard to detect, with the malware erasing its own tracks and terminating certain operations to avoid detection.

400+ SAP NetWeaver Devices Vulnerable to 0-Day Attacks that Exploited in the Wild
Shadow Servers have identified 454 vulnerable SAP NetWeaver systems affected by a critical zero-day flaw, CVE-2025-31324, allowing unauthenticated file uploads and potential system compromise. Discovered