Category: CyberSecurityNews

Threat Actors Allegedly Selling macOS 0-day LPE Exploit on Hacker Forums
22
Jul
2025

Threat Actors Allegedly Selling macOS 0-day LPE Exploit on Hacker Forums

A threat actor known as “skart7” is allegedly offering a zero-day Local Privilege Escalation (LPE) exploit targeting Apple’s macOS operating…

UK to Ban Public Sector Organizations from Paying Criminals Behind Ransomware Attacks
22
Jul
2025

UK to Ban Public Sector Organizations from Paying Criminals Behind Ransomware Attacks

The UK government has announced comprehensive measures to tackle ransomware attacks, with public sector organizations and critical national infrastructure operators…

New Scanner Released to Detect SharePoint Servers Vulnerable to 0-Day Attack
22
Jul
2025

New Scanner Released to Detect SharePoint Servers Vulnerable to 0-Day Attack

An open-source scanning tool has been released to identify SharePoint servers vulnerable to the critical zero-day exploit CVE-2025-53770.  The newly…

Critical Sophos Firewall Vulnerabilities Enables pre-auth Remote Code Execution
22
Jul
2025

Critical Sophos Firewall Vulnerabilities Enables pre-auth Remote Code Execution

Multiple security vulnerabilities affecting Sophos firewall products, with two enabling pre-authentication remote code execution that could allow attackers to compromise…

Cisco Warns of Identity Services Engine RCE Vulnerability Exploited in the Wild
22
Jul
2025

Cisco Warns of Identity Services Engine RCE Vulnerability Exploited in the Wild

Cisco Systems has issued a critical security advisory warning of multiple remote code execution vulnerabilities in its Identity Services Engine…

UK Sanctions Russian APT 28 Hackers for Attacking Microsoft Cloud Service Login Details
22
Jul
2025

UK Sanctions Russian APT 28 Hackers for Attacking Microsoft Cloud Service Login Details

The UK Government has imposed sanctions on Russian military intelligence units and 18 individuals following the exposure of a sophisticated…

New DCHSpy Android Malware Steals WhatsApp data, call logs, Record Audio and Take Photos
22
Jul
2025

New DCHSpy Android Malware Steals WhatsApp data, call logs, Record Audio and Take Photos

A sophisticated new variant of DCHSpy Android surveillanceware, deployed by the Iranian cyber espionage group MuddyWater just one week after…

Threat Actors Combine Android Malware With Click Fraud Apps to Steal Login Credentials
22
Jul
2025

Threat Actors Combine Android Malware With Click Fraud Apps to Steal Login Credentials

A fresh wave of malicious Android Package Kit (APK) files is weaving together two of cybercrime’s most reliable revenue streams—click-fraud…

Wireshark 4.4.8 Released With Bug Fixes and Updated Protocol Support
22
Jul
2025

Wireshark 4.4.8 Released With Bug Fixes and Updated Protocol Support

Wireshark Foundation has announced the availability of Wireshark 4.4.8, the latest maintenance release of the world’s most widely used network-protocol…

GLOBAL GROUP's Golang Ransomware Attacks Windows, Linux, and macOS Environments
22
Jul
2025

GLOBAL GROUP’s Golang Ransomware Attacks Windows, Linux, and macOS Environments

A sophisticated new ransomware threat has emerged from the cybercriminal underground, targeting organizations across multiple operating systems with advanced cross-platform…

Google News
22
Jul
2025

Dior, a Louis Vuitton Brand, Alerts Customers Following Cyber Attack

Christian Dior Couture, the luxury fashion house owned by Louis Vuitton, has begun notifying customers of a major cybersecurity incident…

Microsoft Releases Mitigations and Threat Hunting Queries for SharePoint Zero-Day
22
Jul
2025

Microsoft Releases Mitigations and Threat Hunting Queries for SharePoint Zero-Day

Thousands of organizations worldwide face active cyberattacks targeting Microsoft SharePoint servers through two critical vulnerabilities, prompting urgent government warnings and…