Category: CyberSecurityNews

CISA Warns of Microsoft SharePoint server 0-Day RCE Vulnerability Exploited in Wild
21
Jul
2025

CISA Warns of Microsoft SharePoint server 0-Day RCE Vulnerability Exploited in Wild

CISA has issued an urgent warning about a critical zero-day remote code execution vulnerability affecting Microsoft SharePoint Server on-premises installations…

Weak Password Let Ransomware Gang Destroy 158-Year-Old Company
21
Jul
2025

Weak Password Let Ransomware Gang Destroy 158-Year-Old Company

A single compromised password brought down KNP Logistics, putting 730 employees out of work and highlighting the devastating impact of…

Microsoft’s AppLocker Flaw Allows Malicious Apps to Run and Bypass Restrictions
21
Jul
2025

Microsoft’s AppLocker Flaw Allows Malicious Apps to Run and Bypass Restrictions

A critical configuration flaw in Microsoft’s AppLocker block list policy has been discovered, revealing how attackers could potentially bypass security…

Surveillance Company Using SS7 Bypass Attack to Track the User's Location Information
21
Jul
2025

Surveillance Company Using SS7 Bypass Attack to Track the User’s Location Information

A surveillance company has been detected exploiting a sophisticated SS7 bypass technique to track mobile phone users’ locations. The attack…

Surveillance Company Using SS7 Bypass Attack to Track the User's Location Information
21
Jul
2025

Surveillance Company Using SS7 Bypass Attack to Track the User’s Location Information

A surveillance company has been detected exploiting a sophisticated SS7 bypass technique to track mobile phone users’ locations. The attack…

APT41 Hackers Leveraging Atexec and WmiExec Windows Modules to Deploy Malware
21
Jul
2025

APT41 Hackers Leveraging Atexec and WmiExec Windows Modules to Deploy Malware

The notorious Chinese-speaking cyberespionage group APT41 has expanded its operations into new territories, launching sophisticated attacks against government IT services…

Dell Data Breach - Test Lab Platform Hacked by World Leaks Group
21
Jul
2025

Dell Data Breach – Test Lab Platform Hacked by World Leaks Group

Dell Technologies has confirmed a security breach of its Customer Solution Centers platform by the World Leaks extortion group, marking…

Lighthouse Studio RCE Vulnerability Let Attackers Gain Access to Hosting Servers
21
Jul
2025

Lighthouse Studio RCE Vulnerability Let Attackers Gain Access to Hosting Servers

A critical remote code execution vulnerability has been discovered in Lighthouse Studio, one of the most widely deployed yet relatively…

HPE Warns of Aruba Hardcoded Credentials Allowing Attackers to Bypass Device Authentication
21
Jul
2025

HPE Warns of Aruba Hardcoded Credentials Allowing Attackers to Bypass Device Authentication

A critical vulnerability in Hewlett Packard Enterprise (HPE) Aruba Networking Instant On Access Points could allow attackers to bypass device…

CoinDCX Hacked - $44.2 million Wiped off From the Platform
21
Jul
2025

CoinDCX Hacked – $44.2 million Wiped off From the Platform

India’s second-largest cryptocurrency exchange, CoinDCX, confirmed a sophisticated security breach on July 19, 2025, resulting in approximately $44.2 million being…

Microsoft Released an Emergency Security Update to Patch a Critical SharePoint 0-Day Vulnerability
21
Jul
2025

Microsoft Released an Emergency Security Update to Patch a Critical SharePoint 0-Day Vulnerability

Microsoft has issued an urgent security advisory addressing critical zero-day vulnerabilities in on-premises SharePoint Server that attackers are actively exploiting. …

New PoisonSeed Attack Let Attackers Trick Users into Scanning a QR Code with an MFA Authenticator
21
Jul
2025

New PoisonSeed Attack Let Attackers Trick Users into Scanning a QR Code with an MFA Authenticator

A sophisticated new attack technique compromises Fast IDentity Online (FIDO) key authentication by exploiting cross-device sign-in features.  The PoisonSeed attack…