Category: CyberSecurityNews

4.3 Million Chrome and Edge Users Hacked in 7-Year ShadyPanda Malware Campaign
01
Dec
2025

4.3 Million Chrome and Edge Users Hacked in 7-Year ShadyPanda Malware Campaign

“ShadyPanda,” a sophisticated threat actor responsible for a seven-year campaign that has successfully infected 4.3 million Chrome and Edge users….

Hackers are Moving to "Living Off the Land" Techniques to Attack Windows Systems Bypassing EDR
01
Dec
2025

Hackers are Moving to “Living Off the Land” Techniques to Attack Windows Systems Bypassing EDR

Cybercriminals have found a more effective method to compromise Windows computers while evading detection by security software. Ivan Spiridonov observed…

Microsoft Azure API Management Flaw Enables Cross-Tenant Account Creation, Bypassing Admin Restrictions
01
Dec
2025

Microsoft Azure API Management Flaw Enables Cross-Tenant Account Creation, Bypassing Admin Restrictions

A critical security vulnerability in Microsoft Azure API Management (APIM) Developer Portal enables attackers to register accounts across different tenant…

Tomiris Hacker Group Added New Tools and Techniques to Attack Organizations Globally
01
Dec
2025

Tomiris Hacker Group Added New Tools and Techniques to Attack Organizations Globally

The Tomiris hacker group has resurfaced with a sophisticated campaign targeting foreign ministries and government entities worldwide. Beginning in early…

Mystery OAST With Exploit for 200 CVEs Leveraging Google Cloud to Launch Attacks
01
Dec
2025

Mystery OAST With Exploit for 200 CVEs Leveraging Google Cloud to Launch Attacks

A new threat has emerged in the cybersecurity landscape as security experts discover a private Out-of-Band Application Security Testing (OAST)…

APT36 Hackers Used Python-Based ELF Malware to Target Indian Government Entities
01
Dec
2025

APT36 Hackers Used Python-Based ELF Malware to Target Indian Government Entities

Pakistan-based threat actor APT36, also known as Transparent Tribe, has launched a sophisticated cyber-espionage campaign against Indian government institutions using…

Linux 6.18 Released With Enhanced Hardware Support, Updated Drivers and File Systems
01
Dec
2025

Linux 6.18 Released With Enhanced Hardware Support, Updated Drivers and File Systems

Linus Torvalds has officially announced the release of Linux kernel 6.18 on November 30, 2025, marking another significant milestone in…

Kevin Lancaster Joins the usecure Board to Accelerate North American Channel Growth
01
Dec
2025

Kevin Lancaster Joins the usecure Board to Accelerate North American Channel Growth

Claymont, Delaware, December 1st, 2025, CyberNewsWire Lancaster’s arrival brings significant North American channel experience and expertise, supporting usecure’s ambition to…

Critical Apache bRPC Framework Vulnerability Let Attackers Crash the Server
01
Dec
2025

Critical Apache bRPC Framework Vulnerability Let Attackers Crash the Server

A critical security vulnerability has been discovered in the Apache bRPC framework that could allow remote attackers to crash servers…

Windows 11 24H2 Update Hides the Password Icon in the Sign-in Options on the Lock Screen
01
Dec
2025

Windows 11 24H2 Update Hides the Password Icon in the Sign-in Options on the Lock Screen

Microsoft has confirmed a bizarre user interface bug affecting Windows 11 version 24H2 devices that renders the password sign-in icon…

PoC Exploit Released for Critical Outlook 0-Click Remote Code Execution Vulnerability
01
Dec
2025

PoC Exploit Released for Critical Outlook 0-Click Remote Code Execution Vulnerability

A Proof-of-Concept (PoC) exploit code has been released for a critical remote code execution (RCE) vulnerability in Microsoft Outlook, identified…

Hackers Allegedly Claim Breach of Mercedes-Benz USA Legal and Customer Data
01
Dec
2025

Hackers Allegedly Claim Breach of Mercedes-Benz USA Legal and Customer Data

A threat actor known as “zestix” has claimed responsibility for a significant data breach affecting Mercedes-Benz USA (MBUSA), allegedly exfiltrating…