Category: CyberSecurityNews

New Sorillus RAT Actively Attacking European Organizations Via Tunneling Services
17
Jun
2025

New Sorillus RAT Actively Attacking European Organizations Via Tunneling Services

European organizations are facing a sophisticated cyber threat as the Sorillus Remote Access Trojan (RAT) emerges as a prominent weapon…

WhatsApp to Show Ads for Users in Status & Updates Tab
17
Jun
2025

WhatsApp to Show Ads for Users in Status & Updates Tab

Meta has announced a significant expansion of WhatsApp’s monetization strategy with the introduction of advertising capabilities within the platform’s Updates…

ASUS Armoury Crate Vulnerability Let Attackers Escalate to System User on Windows Machine
17
Jun
2025

ASUS Armoury Crate Vulnerability Let Attackers Escalate to System User on Windows Machine

A critical authorization bypass vulnerability in ASUS Armoury Crate enables attackers to gain system-level privileges on Windows machines through a…

Malicious Loan App on iOS & Google Play Store Infected 150K+ Users Devices
17
Jun
2025

Malicious Loan App on iOS & Google Play Store Infected 150K+ Users Devices

A malicious loan application masquerading as a legitimate financial service has infected over 150,000 iOS and Android devices before being…

CISA Warns of iOS 0-Click Vulnerability Exploited in the Wild
17
Jun
2025

CISA Warns of iOS 0-Click Vulnerability Exploited in the Wild

CISA has added a critical iOS zero-click vulnerability to its Known Exploited Vulnerabilities (KEV) catalog, warning that the flaw has…

Threat Actors Abuse Windows Run Prompt to Execute Malicious Command and Deploy DeerStealer
17
Jun
2025

Threat Actors Abuse Windows Run Prompt to Execute Malicious Command and Deploy DeerStealer

Cybersecurity researchers have uncovered a sophisticated malware campaign that exploits Windows’ built-in Run prompt to deliver DeerStealer, a powerful information…

Apache Tomcat Vulnerabilities Let Attackers Bypass Authentication & Trigger DoS Attacks
17
Jun
2025

Apache Tomcat Vulnerabilities Let Attackers Bypass Authentication & Trigger DoS Attacks

Multiple critical security vulnerabilities affecting Apache Tomcat web servers, including two high-severity flaws enabling denial-of-service (DoS) attacks and one moderate-severity…

Hackers Actively Exploiting Langflow RCE Vulnerability to Deploy Flodrix Botnet
17
Jun
2025

Hackers Actively Exploiting Langflow RCE Vulnerability to Deploy Flodrix Botnet

Security researchers have uncovered an active cyberattack campaign targeting Langflow servers through CVE-2025-3248, a critical remote code execution vulnerability that…

Microsoft Investigating Teams and Exchange Online Services Disruption Impacting Users
17
Jun
2025

Microsoft Investigating Teams and Exchange Online Services Disruption Impacting Users

Microsoft experienced a significant service disruption affecting multiple Microsoft 365 services, including Teams and Exchange Online, impacting users globally whose…

Gunra Ransomware Group Leaks 40TB of Data from American Hospital
17
Jun
2025

Gunra Ransomware Group Leaks 40TB of Data from American Hospital

The Gunra ransomware group escalated its attack on American Hospital Dubai (AHD), a premier healthcare facility in Dubai, UAE, by…

46,000+ Grafana Instances Exposed to Malicious Account Takeover Attacks
16
Jun
2025

46,000+ Grafana Instances Exposed to Malicious Account Takeover Attacks

A critical vulnerability affecting over 46,000 publicly accessible Grafana instances worldwide, with 36% of all public-facing deployments vulnerable to complete…

20+ Malicious Apps on Google Play Actively Attacking Users to Steal Login Credentials
16
Jun
2025

20+ Malicious Apps on Google Play Actively Attacking Users to Steal Login Credentials

A sophisticated phishing operation involving more than 20 malicious applications distributed through the Google Play Store, specifically designed to steal…