Category: CyberSecurityNews

New Magecart Skimmer Attack With Malicious JavaScript Injection to Skim Payment Data
17
Sep
2025

New Magecart Skimmer Attack With Malicious JavaScript Injection to Skim Payment Data

The threat landscape for e-commerce websites has once again shifted with the emergence of a sophisticated Magecart-style attack campaign, characterized…

Microsoft Dismantles 300+ Websites Used to Distribute RaccoonO365 Phishing Service
17
Sep
2025

Microsoft Dismantles 300+ Websites Used to Distribute RaccoonO365 Phishing Service

Since mid-2024, cybercriminals have leveraged a subscription-based phishing platform known as RaccoonO365 to harvest Microsoft 365 credentials at scale. Emerging…

Agentless Access, Sensitive Data Masking, and Smooth Session Playback
17
Sep
2025

Agentless Access, Sensitive Data Masking, and Smooth Session Playback

Syteca, a global cybersecurity provider, introduced the latest release of its platform, continuing the mission to help organizations reduce insider…

224 Malicious Android Apps on Google Play With 38 Million Downloads Delivering Malicious Payloads
17
Sep
2025

224 Malicious Android Apps on Google Play With 38 Million Downloads Delivering Malicious Payloads

A sophisticated mobile ad fraud operation dubbed “SlopAds” has infiltrated Google Play Store with 224 malicious applications that collectively amassed…

Hackers Exploit RTL/LTR Scripts and Browser Gaps to Hide Malicious URLs
17
Sep
2025

Hackers Exploit RTL/LTR Scripts and Browser Gaps to Hide Malicious URLs

A decade-old Unicode vulnerability known as BiDi Swap allows attackers to spoof URLs for sophisticated phishing attacks. By exploiting how…

PureHVNC RAT Developers Leverage GitHub Host Source Code
17
Sep
2025

PureHVNC RAT Developers Leverage GitHub Host Source Code

The PureHVNC remote administration tool (RAT) has emerged as a sophisticated component of the Pure malware family, gaining prominence in…

Threat Actors Abuse Adtech Companies to Target Users With Malicious Ads
17
Sep
2025

Threat Actors Abuse Adtech Companies to Target Users With Malicious Ads

The digital advertising ecosystem has become a prime hunting ground for cybercriminals, who are increasingly exploiting advertising technology companies to…

Python Based XillenStealer Attacking Windows Users to Steal Sensitive Data
17
Sep
2025

Python Based XillenStealer Attacking Windows Users to Steal Sensitive Data

In recent weeks, cybersecurity researchers have observed the emergence of XillenStealer, a Python-based information stealer publicly hosted on GitHub and…

Critical WatchGuard Vulnerability Allows Unauthenticated Attacker to Execute Arbitrary Code
17
Sep
2025

Critical WatchGuard Vulnerability Allows Unauthenticated Attacker to Execute Arbitrary Code

A critical vulnerability has been discovered in WatchGuard’s Firebox firewalls, which could allow a remote, unauthenticated attacker to execute arbitrary…

Microsoft Introduces Network Strength Indicator With Teams to Clarify Disruptions
17
Sep
2025

Microsoft Introduces Network Strength Indicator With Teams to Clarify Disruptions

Microsoft is set to roll out a new feature for its Teams platform called the Network Strength Indicator, designed to…

40,000+ Cyberattacks Targeting API Environments To Inject Malicious Code
17
Sep
2025

40,000+ Cyberattacks Targeting API Environments To Inject Malicious Code

The cybersecurity landscape has witnessed an unprecedented surge in API-focused attacks during the first half of 2025, with threat actors…

Kubernetes C# Client Vulnerability Exposes API Server Communication To MiTM Attack
17
Sep
2025

Kubernetes C# Client Vulnerability Exposes API Server Communication To MiTM Attack

A medium-severity vulnerability has been discovered in the official Kubernetes C# client, which could allow an attacker to intercept and…