Category: CyberSecurityNews

Ransomware Gangs Leverage Remote Access Tools to Gain Persistence and Evade Defenses
07
Oct
2025

Ransomware Gangs Leverage Remote Access Tools to Gain Persistence and Evade Defenses

Ransomware operators have shifted from opportunistic malware distribution to highly targeted campaigns that exploit legitimate software for stealth and persistence….

New Mic-E-Mouse Attack Let Hackers Exfiltrate Sensitive Data by Exploiting Mouse Sensors
07
Oct
2025

New Mic-E-Mouse Attack Let Hackers Exfiltrate Sensitive Data by Exploiting Mouse Sensors

A novel and alarming cybersecurity threat has emerged, turning an ordinary computer peripheral into a sophisticated eavesdropping device. Researchers have…

CrowdStrike Warns of New Mass Exploitation Campaign Leveraging Oracle E-Business Suite 0-Day
07
Oct
2025

CrowdStrike Warns of New Mass Exploitation Campaign Leveraging Oracle E-Business Suite 0-Day

A widespread campaign observed exploiting a novel zero-day vulnerability in Oracle E-Business Suite (EBS) applications, now tracked as CVE-2025-61882.  First…

Threat Actors Behind WARMCOOKIE Malware Added New Features to It’s Arsenal
07
Oct
2025

Threat Actors Behind WARMCOOKIE Malware Added New Features to It’s Arsenal

The WARMCOOKIE backdoor first surfaced in mid-2024, delivered primarily via recruiting-themed phishing campaigns that coaxed victims into executing malicious documents….

Cisco ASA/FTD 0-Day Vulnerability Exploited for Authentication Bypass
07
Oct
2025

Cisco ASA/FTD 0-Day Vulnerability Exploited for Authentication Bypass

Cisco has released advisories for a zero-day exploit chain affecting its Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall…

Kibana Crowdstrike Connector Vulnerability Exposes Protected Credentials
07
Oct
2025

Kibana Crowdstrike Connector Vulnerability Exposes Protected Credentials

Elastic has released a security advisory detailing a medium-severity vulnerability in the Kibana CrowdStrike Connector that could allow for the…

Red Hat Breach Exposes 5000+ High Profile Enterprise Customers at Risk
07
Oct
2025

Red Hat Breach Exposes 5000+ High Profile Enterprise Customers at Risk

A sophisticated cyberattack has compromised Red Hat Consulting’s infrastructure, potentially exposing sensitive data from over 5,000 enterprise customers worldwide. The…

GoAnywhere 0-Day RCE Vulnerability Exploited in the Wild to Deploy Medusa Ransomware
07
Oct
2025

GoAnywhere 0-Day RCE Vulnerability Exploited in the Wild to Deploy Medusa Ransomware

A critical deserialization flaw in GoAnywhere MFT’s License Servlet, tracked as CVE-2025-10035, has already been weaponized by the Storm-1175 group…

CISA Warns of Windows Privilege Escalation Vulnerability Exploited in Attacks
07
Oct
2025

CISA Warns of Windows Privilege Escalation Vulnerability Exploited in Attacks

CISA has issued an urgent security advisory, adding Microsoft Windows privilege escalation vulnerability CVE-2021-43226 to its Known Exploited Vulnerabilities (KEV)…

OpenSSH Vulnerability Exploited Via ProxyCommand to Execute Remote Code
07
Oct
2025

OpenSSH Vulnerability Exploited Via ProxyCommand to Execute Remote Code

A new command injection vulnerability in OpenSSH, tracked as CVE-2025-61984, has been disclosed, which could allow an attacker to achieve…

Cl0p Ransomware Actively Exploiting Oracle E-Business Suite 0-Day Vulnerability in the Wild
07
Oct
2025

Cl0p Ransomware Actively Exploiting Oracle E-Business Suite 0-Day Vulnerability in the Wild

Oracle has issued an emergency security alert for a critical zero-day vulnerability (CVE-2025-61882) in its E-Business Suite after the notorious…

13-year-old Critical Redis RCE Vulnerability Let Attackers Gain Full Access to Host System
07
Oct
2025

13-year-old Critical Redis RCE Vulnerability Let Attackers Gain Full Access to Host System

A 13-year-old critical remote code execution (RCE) vulnerability in Redis, dubbed RediShell, allows attackers to gain full access to the…