Category: CyberSecurityNews

Jaguar Land Rover Employee Data Stolen
15
Dec
2025

Jaguar Land Rover Confirms Employee Data Stolen in August Cyberattack

Jaguar Land Rover (JLR), the iconic British luxury automaker, has finally disclosed that a cyberattack in August compromised sensitive data…

ZnDoor Malware Exploiting React2Shell Vulnerability to Compromise Network Devices
15
Dec
2025

ZnDoor Malware Exploiting React2Shell Vulnerability to Compromise Network Devices

Since December 2025, a concerning trend has emerged across Japanese organizations as attackers exploit a critical vulnerability in React/Next.js applications….

New PCPcat Exploiting React2Shell Vulnerability to compromise 59,000+ Servers
15
Dec
2025

New PCPcat Exploiting React2Shell Vulnerability to compromise 59,000+ Servers

A new malware campaign called PCPcat has successfully compromised more than 59,000 servers in under 48 hours through targeted exploitation…

xHunt APT Hackers Attacking Microsoft Exchange and IIS Web Servers to Deploy Custom Backdoors
15
Dec
2025

xHunt APT Hackers Attacking Microsoft Exchange and IIS Web Servers to Deploy Custom Backdoors

The xHunt advanced persistent threat group has firmly established itself as a sophisticated cyber-espionage actor, orchestrating targeted campaigns against organizations…

JumpCloud Remote Assist for Windows Agent Flaw Let Attackers Escalate Privilege
15
Dec
2025

JumpCloud Remote Assist for Windows Agent Flaw Let Attackers Escalate Privilege

The JumpCloud Remote Assist vulnerability (CVE-2025-34352) exposes Windows systems to local privilege escalation and denial-of-service attacks. Discovered by XM Cyber…

New Android Malware Frogblight Mimics as Official Government Websites to Collect SMS and Device Details
15
Dec
2025

New Android Malware Frogblight Mimics as Official Government Websites to Collect SMS and Device Details

A sophisticated Android banking Trojan named Frogblight has emerged as a significant threat targeting Turkish users, employing deceptive tactics to…

NVIDIA Merlin Vulnerabilities Let Attackers Execute Malicious Code and Trigger DoS Condition
15
Dec
2025

NVIDIA Merlin Vulnerabilities Let Attackers Execute Malicious Code and Trigger DoS Condition

Security patches for the Merlin framework addressing two high-severity deserialization vulnerabilities. That could allow attackers to execute arbitrary code and…

Wireshark 4.6.2 Released With Fix for Vulnerabilities, and Updated Protocol Support
15
Dec
2025

Wireshark 4.6.2 Released With Fix for Vulnerabilities, and Updated Protocol Support

Wireshark 4.6.2, the latest version of the leading open-source network protocol analyzer, addresses critical crash vulnerabilities and plugin compatibility issues….

New ARTEMIS AI Agent Outperformed 9 out of 10 Human Penetration Testers in Detecting Vulnerabilities
15
Dec
2025

New ARTEMIS AI Agent Outperformed 9 out of 10 Human Penetration Testers in Detecting Vulnerabilities

Researchers from Stanford University, Carnegie Mellon University, and Gray Swan AI have unveiled ARTEMIS, a sophisticated AI agent framework that…

New Android Malware Mimic as mParivahan and e-Challan Attacking Android Users to Steal Login Credentials
15
Dec
2025

New Android Malware Mimic as mParivahan and e-Challan Attacking Android Users to Steal Login Credentials

A sophisticated Android malware campaign named NexusRoute is actively targeting Indian citizens by impersonating government services. The operation uses fake…

Critical Plesk Vulnerability Allows Plesk Users to Gain Root-Level Access
15
Dec
2025

Critical Plesk Vulnerability Allows Plesk Users to Gain Root-Level Access

A severe security vulnerability has been discovered in Plesk for Linux that could allow users to gain root access on…

New Clickfix Attack Exploits finger.exe Tool to Trick Users into Execute Malicious Code
15
Dec
2025

New Clickfix Attack Exploits finger.exe Tool to Trick Users into Execute Malicious Code

A novel social engineering campaign, dubbed ClickFix, has been identified, which cleverly employs an old Windows command-line tool, finger.exe, to…