Red Hot Cyber. The Cybersecurity Blog
Eight 0-days worth $35 million sold to Russia by US insiders
Former US defense contractor CEO Peter Williams has pleaded guilty to selling ” eight sensitive, protected cyber exploits” to Russian zero-day broker Operation Zero. Court documents and a ...
Trump refuses to export Nvidia chips. China responds: “Don’t worry, we’ll do it ourselves.”
Reuters reported that Trump told reporters during a pre-recorded interview on CBS’s “60 Minutes” and on Air Force One during the return flight: “We’re not going to let an...
Goodbye, malware! In 2025, criminal hackers will use legitimate accounts to remain invisible.
A FortiGuard report for the first half of 2025 shows that financially motivated attackers are increasingly eschewing sophisticated exploits and malware. Instead , they are using valid accounts and leg...
Hanyuan-1: China’s room-temperature quantum computer challenges the US
China’s first atomic quantum computer has reached a major commercial milestone, recording its first sales to domestic and international customers, according to state media. The Hubei Daily, a st...
Inside NVIDIA: Jensen Huang leads 36 managers, 36,000 employees, and reads 20,000 emails a day
NVIDIA CEO Jen-Hsun Huang now directly oversees 36 employees across seven key areas: strategy, hardware, software, artificial intelligence, public relations, networking, and executive assistants. This...
Will Bug Hunters Be Out of Work? OpenAI Introduces Aardvark, Its New Bug Fixer
OpenAI has unveiled Aardvark, an autonomous assistant based on the GPT-5 model , designed to automatically find and fix vulnerabilities in software code. This AI tool, dubbed a “security researc...
The Louvre Theft: How Password Governance Can Undermine Security
“When the Key Is ‘Louvre’ – The Theft That Teaches How Password Governance Can Shake Even the Most Violable Fortresses” On October 19, 2025, the Louvre Museum was the sce...
The Future of Society in the Age of Artificial Intelligence
Today, many are wondering what impact the spread of Artificial Intelligence will have on our society. Among the most widespread concerns is the loss of millions of jobs and the resulting unprecedented...
When Google Indexes Even Deception! Ghost Networks Discovered by RHC That Penalize SERPs
RHC analysis of the “BHS Links” network and global Black Hat automated SEO infrastructure An internal Red Hot Cyber analysis of its domain has uncovered a global Black Hat SEO network called “BHS Link...
Theft at the Louvre: The surveillance system’s password “LOUVRE” has put the museum in crisis.
We recently published an in-depth article on the “theft of the century” at the Louvre , in which we highlighted how physical security – access, environmental control, surveillance – is now...
Featured Articles

Former US defense contractor CEO Peter Williams has pleaded guilty to selling ” eight sensitive, protected cyber exploits” to Russian zero-day broker Operation Zero. Court documents and a ...

Reuters reported that Trump told reporters during a pre-recorded interview on CBS’s “60 Minutes” and on Air Force One during the return flight: “We’re not going to let an...

A FortiGuard report for the first half of 2025 shows that financially motivated attackers are increasingly eschewing sophisticated exploits and malware. Instead , they are using valid accounts and leg...

China’s first atomic quantum computer has reached a major commercial milestone, recording its first sales to domestic and international customers, according to state media. The Hubei Daily, a st...

NVIDIA CEO Jen-Hsun Huang now directly oversees 36 employees across seven key areas: strategy, hardware, software, artificial intelligence, public relations, networking, and executive assistants. This...
RediShell: A 13-year-old score 10 RCE has been upgraded to Redis
An 8-year-old critical bug in the Unity game engine poses risks to Android and Windows.
11 death sentences for online fraud. China deals a severe blow to cybercrime
Is it possible to heat a house with Raspberry Pi? In the UK, the answer is yes.
Scattered LAPSUS$ Hunters Group Returns and Threatens to Release Salesforce Data
Securing WebSocket Connections: Risk, Analysis, and Practical Measures

RediShell: A 13-year-old score 10 RCE has been upgraded to Redis
Redazione RHC - October 7th, 2025
A 13-year-old critical flaw, known as RediShell , in Redis allows remote code execution (RCE) , giving attackers the ability to gain full control of the underlying host system. The...

An 8-year-old critical bug in the Unity game engine poses risks to Android and Windows.
Redazione RHC - October 7th, 2025
A vulnerability has been discovered in the Unity game engine, which has been present since 2017. The issue can be exploited for code execution on Android and privilege escalation on...

11 death sentences for online fraud. China deals a severe blow to cybercrime
Redazione RHC - October 6th, 2025
Amid China's long battle against cross-border fraud, authorities have issued a verdict in one of the most high-profile cases in recent years. It concerns a large-scale criminal network operating in...

Is it possible to heat a house with Raspberry Pi? In the UK, the answer is yes.
Redazione RHC - October 6th, 2025
In the UK, they've started testing an unusual way to heat homes: using mini data centers powered by Raspberry Pis. The project is being implemented by UK Power Networks as...

Scattered LAPSUS$ Hunters Group Returns and Threatens to Release Salesforce Data
Redazione RHC - October 6th, 2025
A group calling itself Scattered LAPSUS$ Hunters has resurfaced after months of silence and the arrest of its members. On a new leak site, the attackers published a list of...

Securing WebSocket Connections: Risk, Analysis, and Practical Measures
Diego Bentivoglio - October 6th, 2025
WebSockets offer persistent two-way communication between client and server, essential for real-time applications like chat, gaming, dashboards, and notifications. However, this persistence introduces specific attack surfaces: if the channel or...
Discover the latest critical CVEs issued and stay updated on the most recent vulnerabilities. Or search for a specific CVE
  
