Freelance software developers are being targeted in a campaign, linked to North Korea, that uses job interview themes to deliver malware. Codenamed DeceptiveDevelopment, the campaign aims to steal cryptocurrency wallets and login information. The attack involves the use of fake recruiter profiles on social media and job-hunting platforms that deploy backdoors during a faux job interview process. Attackers don’t distinguish by location and aim to compromise victims globally to increase their chances of extracting funds and information.

400+ SAP NetWeaver Devices Vulnerable to 0-Day Attacks that Exploited in the Wild
Shadow Servers have identified 454 vulnerable SAP NetWeaver systems affected by a critical zero-day flaw, CVE-2025-31324, allowing unauthenticated file uploads and potential system compromise. Discovered