Category: CyberSecurityNews

Meta Launches New Tools to Protect Messenger and WhatsApp Users from Scammers
21
Oct
2025

Meta Launches New Tools to Protect Messenger and WhatsApp Users from Scammers

Meta announced innovative tools on Tuesday to shield users of Messenger and WhatsApp from scammers. The updates, revealed during Cybersecurity…

Microsoft 365 Copilot Prompt Injection Vulnerability Allows Attackers to Exfiltrate Sensitive Data
21
Oct
2025

Microsoft 365 Copilot Prompt Injection Vulnerability Allows Attackers to Exfiltrate Sensitive Data

A sophisticated vulnerability in Microsoft 365 Copilot (M365 Copilot) that allows attackers to steal sensitive tenant data, including recent emails,…

CISA Warns of Apple macOS, iOS, tvOS, Safari, and watchOS Vulnerability Exploited in Attacks
21
Oct
2025

CISA Warns of Apple macOS, iOS, tvOS, Safari, and watchOS Vulnerability Exploited in Attacks

The Cybersecurity and Infrastructure Security Agency (CISA) has issued a high-priority alert about a critical vulnerability in multiple Apple products….

Better Auth API keys Vulnerability Let Attackers Create Privileged Credentials For Arbitrary Users
21
Oct
2025

Better Auth API keys Vulnerability Let Attackers Create Privileged Credentials For Arbitrary Users

A severe vulnerability in the popular better-auth library’s API keys plugin enables attackers to generate privileged credentials for any user…

Apache Syncope Groovy RCE Vulnerability Let Attackers Inject Malicious Code
21
Oct
2025

Apache Syncope Groovy RCE Vulnerability Let Attackers Inject Malicious Code

Apache Syncope, an open-source identity management system, has been found vulnerable to remote code execution (RCE) through its Groovy scripting…

Sendmarc Appoints Dan Levinson as Customer Success Director in North America
21
Oct
2025

Sendmarc Appoints Dan Levinson as Customer Success Director in North America

Wilmington, Delaware, October 21st, 2025, CyberNewsWire Sendmarc has announced the appointment of Dan Levinson as Customer Success Director – North…

LANSCOPE Endpoint Manager Vulnerability Let Attackers Execute Remote Code
21
Oct
2025

LANSCOPE Endpoint Manager Vulnerability Let Attackers Execute Remote Code

Motex has disclosed a severe remote code execution vulnerability in its LANSCOPE Endpoint Manager On-Premise Edition. Assigned CVE-2025-61932, the flaw…

New LOSTKEYS Malware Linked to Russia State-Sponsored Hacker Group COLDRIVER
21
Oct
2025

New LOSTKEYS Malware Linked to Russia State-Sponsored Hacker Group COLDRIVER

Over the summer of 2025, a novel malware family emerged following the public disclosure of the LOSTKEYS implant. This new…

131 Malicious Extensions Targeting WhatsApp Used Found in Chrome Web Store
21
Oct
2025

131 Malicious Extensions Targeting WhatsApp Used Found in Chrome Web Store

Over the past several months, cybersecurity researchers have observed a surge of fraudulent Chrome extensions masquerading as legitimate WhatsApp Web…

Critical ASP.NET Vulnerability Allows Attacker To Bypass Security Feature Remotely
21
Oct
2025

Critical ASP.NET Vulnerability Allows Attacker To Bypass Security Feature Remotely

Microsoft has disclosed a serious security flaw in ASP.NET Core that enables authenticated attackers to smuggle HTTP requests and evade…

ZYXEL Authorization Bypass Vulnerability Let Attackers View and Download System Configuration
21
Oct
2025

ZYXEL Authorization Bypass Vulnerability Let Attackers View and Download System Configuration

A critical vulnerability in Zyxel’s ATP and USG series firewalls that allows attackers to bypass authorization controls and access sensitive…

Hackers Attacking Remote Desktop Protocol Services With 30,000+ New IP Addresses Daily
21
Oct
2025

Hackers Attacking Remote Desktop Protocol Services With 30,000+ New IP Addresses Daily

A persistent campaign targeting Microsoft Remote Desktop Protocol (RDP) services, with attackers deploying over 30,000 new IP addresses daily to…