top of page
Cyber Security Hub
Stay updated with the latest news on technology, cybersecurity, market reports
Featured News


Cybersecurity News Roundup (20.7 - 26.7): AI-powered attacks, data breaches and critical vulnerabilities
Stay updated with the latest cybersecurity news from Vietnam and around the world, including AI-powered attacks, data breaches, critical vulnerabilities, and emerging cyber threats affecting businesses.
Jul 27


Cybersecurity landscape in Vietnam – Q2/2026: Key risks and recommendations for businesses
An analysis of Vietnam’s cybersecurity landscape in Q2 2026, covering online fraud, data breaches, malware, AI-powered threats, and key recommendations for businesses.
Jul 23


Last week in cybersecurity (June 22–28): EVN scams alert, AI manipulation, and Linux root-exploiting vulnerability
Explore last week in cybersecurity (June 22–28): EVN warns of fake OTPs, AI agents tricked into executing malware, and the DirtyClone Root flaw. Read now!
Jun 29


Network maintenance for Startups: In-house or Outsourced?
Learn what a startup network maintenance solution should include, how to choose the right support model, and what to look for in a service provider.
Jul 25


Financial sector cybersecurity 2026: Decoding 6 cyberattack trends and proactive defense strategies
Decode 6 financial sector cybersecurity trends in 2026 from Darktrace & Visa. Discover how to combat ransomware and phishing with a 24/7 SOC platform from IPSIP experts!
Jul 7


IPSIP Vietnam Pentest services: Penetration Testing for businesses
IPSIP provides pentest services in Vietnam for websites, APIs, mobile applications, networks, and cloud environments, including reports, remediation consulting, and retesting.
Jul 2


Claude code, Gemini CLI and Codex vulnerabilities expose new CI/CD security risks
Security flaws affecting Claude Code, Gemini CLI and Codex show how AI coding agents can expose CI/CD pipelines, source code, credentials and enterprise systems.
22 hours ago


Critical Zoom vulnerability: risk of computer takeover via a familiar feature
A critical chain of security vulnerabilities has recently been discovered in Zoom, allowing anyone in a meeting – whether a presenter or an attendee – to take control of other participants' computers.
3 days ago


OpenAI pauses some Astra activities over Critical Cybersecurity Risks
OpenAI restricted some Astra activities after preliminary evaluations could not rule out Critical cybersecurity capabilities, including zero-day exploitation.
5 days ago
24H movement


GitLab releases emergency patch for 13 security vulnerabilities: What you need to know
Source code management platform GitLab has officially released new security updates to address 13 vulnerabilities across its system.
20 hours ago


Hackers mass attack Microsoft SharePoint servers after public PoC release
Shortly after proof-of-concept (PoC) tools were widely shared online, hacker groups quickly leveraged them to launch real-world attacks against Microsoft SharePoint servers.
20 hours ago


Claude code, Gemini CLI and Codex vulnerabilities expose new CI/CD security risks
Security flaws affecting Claude Code, Gemini CLI and Codex show how AI coding agents can expose CI/CD pipelines, source code, credentials and enterprise systems.
22 hours ago
All posts


Chaos ransomware through Microsoft Teams encrypted a network in just 17 hours
STAC4749 impersonated IT support staff through Microsoft Teams to gain remote access and deploy Chaos ransomware in less than 17 hours. Here's what organizations need to know.
Aug 3


Russian threat group exploits Microsoft OWA vulnerability: The emergence of sophisticated malware OWAReaper
A dangerous cyber attack campaign targeting Microsoft Outlook Web Access (OWA) systems has recently been discovered, directly threatening government agencies in the US and Europe.
Jul 31


Warning: Microsoft Defender on Linux may be disabled after an update
Microsoft confirmed that Defender for Endpoint on Linux may become disabled after an update and reboot. Organizations should verify affected systems and upgrade immediately.
Jul 30


How AI just helped Microsoft smash its security patch record
Recently, Microsoft marked a significant milestone by releasing an unprecedented number of security patches for familiar products like Windows and Office.
Jul 16


Microsoft releases patches for 622 flaws, including two actively exploited Zero-day
Microsoft patched 622 flaws in July 2026, including two actively exploited zero-days affecting SharePoint and AD FS. Organizations should update now.
Jul 16


Microsoft Teams abused to fake IT support and deliver EtherRAT malware to businesses
Microsoft Teams is being abused to impersonate IT support and deliver EtherRAT malware. Learn how the attack works and how businesses can respond.
Jul 8


SharePoint vulnerability CVE-2026-45659 actively exploited, CISA urges immediate patching
SharePoint vulnerability CVE-2026-45659 has been added to CISA's KEV catalog after active exploitation. Learn about the RCE risk, ransomware threats, and how IPSIP helps secure your systems.
Jul 8


Urgent warning: Critical Microsoft SharePoint vulnerability actively exploited
The Microsoft SharePoint storage and collaboration platform is a widely used system across many organizations and enterprises. However, a high-severity security vulnerability has recently been discovered and is being actively exploited by threat actors in the wild.
Jul 6


Edgecution malware turns Microsoft Edge extension into a system backdoor
Researchers at Zscaler ThreatLabz have discovered an Edgecution malware campaign that spreads through Microsoft Teams and a malicious Microsoft Edge browser extension. The malware uses a two-component architecture and abuses Chrome Native Messaging to escape the browser sandbox, allowing attackers to execute commands, run PowerShell scripts, and gain direct access to victims' systems.
Jun 26


New Microsoft Defender vulnerability threatens complete control over Windows systems
Windows users face a major security alert as Microsoft confirms a critical unpatched zero-day flaw in its default antivirus, Microsoft Defender. This vulnerability clears the path for attackers to easily seize the highest level of system privileges.
Jun 22


Urgent patch from Microsoft: Why Outlook/Word users must update immediately
Microsoft has officially released critical patches to address a series of severe security vulnerabilities in Outlook and Word.
Jun 17


"FlagLeft" vulnerability in Microsoft 365 source code puts billions of Android users at risk of data exposure
Recently, researchers discovered a critical vulnerability dubbed "FlagLeft" within the Microsoft 365 application ecosystem for the Android operating system. This issue threatens the information security of billions of users globally, paving the way for malicious applications to silently hijack account access without requiring any user interaction or permission.
Jun 4


CISA warns of Zero-day vulnerabilities in Windows Defender: Microsoft releases emergency patches
The widely used security application, Microsoft Defender, has recently logged two highly critical "zero-day" vulnerabilities. Microsoft has swiftly rolled out emergency fixes.
May 26


Microsoft open-sources RAMPART and Clarity: Standardizing security processes for AI agents
Microsoft officially open-sourced two new security tools named RAMPART and Clarity. This is the tech giant's effort to help developers control risks from AI agents during the software development process, rather than only testing at the final step before deployment.
May 22


High-quality free office suites to replace Microsoft Office
Driven by recent crackdowns on pirated software-a hot topic lately-many users are searching for legal, cost-effective alternatives to Microsoft Office. Fortunately, there are several free office suites available today that are more than capable of handling common tasks such as viewing and editing DOCX, XLSX, and PPTX files. These tools perfectly serve daily workflows, studying, and basic office administrative tasks.
May 18


97% of enterprises as the "weak link": Seminar overview and cybersecurity solutions for SME in Vietnam
With 97% of SMEs acting as weak security links, explore the seminar overview and 3 practical cybersecurity solutions for small businesses to optimize costs.
Apr 17


100% cloud data control achieved through double key encryption (Duokey)
Discover how Double Key Encryption (Duokey) empowers organizations with 100% control over digital assets on Office 365 and AWS seamlessly and securely.
Apr 16


Technical Alert: Analysis of the Azure Monitor Alerts Phishing Campaign (2026)
Cybercriminals are exploiting Azure Monitor Alerts to spoof invoices and system failures. Discover the list of malicious Alert Rules and expert prevention strategies from IPSIP.
Mar 24


Warning: Windows 11 update triggers Microsoft account login failures
In the technology landscape, operating system updates are typically expected to enhance stability and security. However, Microsoft's March 2026 cumulative update is currently delivering the opposite result.
Mar 23


Urgent Alert: CVE-2026-20963 Vulnerability on Microsoft SharePoint Actively Exploited
CISA warns of CVE-2026-20963, a highly dangerous Remote Code Execution (RCE) flaw in Microsoft SharePoint. Update immediately with security solutions from IPSIP experts.
Mar 20
bottom of page
