NC4 Public1

National Cyber Threat Level

Low

Moderate

Caution

High

Critical

Latest News

Chinese cyber spies are using Ivanti EPMM flaws to breach EU, US organizations

CVE-2025-4427 and CVE-2025-4428 – the two Ivanti Endpoint Manager Mobile (EPMM) vulnerabilities that have been exploited in the wild as zero-days and patched by Ivanti last week – are being leveraged by a Chinese cyber espionage gro...

TikTok videos + ClickFix tactic = Malware infection

Malware peddlers are using TikTok videos and the ClickFix tactic to trick users into installing infostealer malware on their computers, Trend Micro researchers have warned. The videos are getting published by a number of TikTok user accounts, s...

DanaBot botnet disrupted, QakBot leader indicted

Operation Endgame, mounted by law enforcement and judicial authorities from the US, Canada and the EU, continues to deliver positive results by disrupting the DanaBot botnet and indicting the leaders of both the DanaBot and Qakbot Malware-as-a-...

Token Security unveils MCP Server for non-human identity security

Token Security launched Model Context Protocol (MCP) Server for non-human identity (NHI). This capability brings the power of agentic AI to modern security operations and enables teams to interact with complex NHI data using simple, natural lan...

Is privacy becoming a luxury? A candid look at consumer data use

In this Help Net Security interview, Dr. Joy Wu, Assistant Professor, UBC Sauder School of Business, discusses the psychological and societal impacts of data monetization, why current privacy disclosures often fall short, and what it will take ...

Outsourcing cybersecurity: How SMBs can make smart moves

Outsourcing cybersecurity can be a practical and affordable option. It allows small businesses to get the protection they need without straining their budgets, freeing up time and resources to focus on core operations. 76% of SMBs lack the in-h...

Alert and Advisories

NC4-ALR-2025-000004

Critical Persistent Access via SSL-VPN Symbolic Link Abuse in Fortinet FortiOS Devices

Read More
NC4-ALR-2025-000003

Strengthening Cyber Resilience During Periods of Reduced Operations

Read More
NC4-ALR-2025-000002

Mitigating Cyber Security Risks - Deprecating SMS-Based Authentication and Service

Read More
NC4-ALR-2025-000001

Heightened Cyber Threat - Hacktivist Activities Targeting Malaysia

Read More
NC4-ALR-2024-000011

Critical Vulnerability of Missing Authentication for Critical Function in Fortinet FortiManager

Read More
NC4-ALR-2024-000010

Remote Code Execution Vulnerability in Zimbra Collaboration Suite

Read More

Top 10 Malware Attacks

As of Date
24 May 2025

No Malware Name Count

Global APT Campaign

As of Date
24 May 2025
No Campaign Name IOC
Insert title here