Category: CyberSecurityNews

Critical mcp-remote Vulnerability Exposes LLM Clients to Remote Code Execution Attacks
10
Jul
2025

Critical mcp-remote Vulnerability Exposes LLM Clients to Remote Code Execution Attacks

A critical vulnerability CVE-2025-6514 with a CVSS score of 9.6 affecting the mcp-remote project allows attackers to achieve arbitrary operating…

Critical Vulnerabilities in Bluetooth Protocol Stack Expose Millions of Devices to Remote Code Execution Attacks
10
Jul
2025

Critical Vulnerabilities in Bluetooth Protocol Stack Expose Millions of Devices to Remote Code Execution Attacks

A new and critical security threat, PerfektBlue, has emerged, targeting OpenSynergy’s BlueSDK Bluetooth framework and posing an unprecedented risk to…

New Scraper Botnet with 3,600+ Unique Devices Attacking Targets in US and UK
10
Jul
2025

New Scraper Botnet with 3,600+ Unique Devices Attacking Targets in US and UK

Cybersecurity researchers have uncovered a sophisticated scraper botnet comprising more than 3,600 unique devices that has been systematically targeting systems…

New Opossum Attack Allows Hackers to Compromise Secure TLS Channels with Malicious Messages
10
Jul
2025

New Opossum Attack Allows Hackers to Compromise Secure TLS Channels with Malicious Messages

The new Opossum attack is a sophisticated cross-protocol application layer desynchronization vulnerability that compromises TLS-based communications.  This attack exploits fundamental…

ChatGPT Tricked into Disclosing Windows Home, Pro, and Enterprise Editions Keys
10
Jul
2025

ChatGPT Tricked into Disclosing Windows Home, Pro, and Enterprise Editions Keys

A sophisticated jailbreak technique that bypasses ChatGPT’s protective guardrails, tricking the AI into revealing valid Windows product keys through a…

Rhadamanthys Infostealer Leveraging ClickFix Technique to Steal Login Credentials
10
Jul
2025

Rhadamanthys Infostealer Leveraging ClickFix Technique to Steal Login Credentials

Rhadamanthys first surfaced in 2022 as a modular stealer sold under the Malware-as-a-Service model, but its latest campaign shows how…

Users Unable to Access Mailboxes
10
Jul
2025

Users Unable to Access Mailboxes

In a significant disruption for millions of users worldwide, Microsoft Outlook has been experiencing a major outage since Wednesday, July…

McDonald’s AI Hiring Bot With Password ‘123456’ Leaks Millions of Job-Seekers Data
10
Jul
2025

McDonald’s AI Hiring Bot With Password ‘123456’ Leaks Millions of Job-Seekers Data

A severe security vulnerability in McDonald’s AI-powered hiring system has exposed the personal information of potentially 64 million job applicants…

Microsoft Confirms Teams Outage for Users, Investigation Underway
10
Jul
2025

Microsoft Confirms Teams Outage for Users, Investigation Underway

Microsoft acknowledged a significant outage affecting its popular communication platform, Microsoft Teams, leaving numerous users unable to access critical services….

Windows BitLocker Bypass Vulnerability Let Attackers Bypass Security Feature
09
Jul
2025

Windows BitLocker Bypass Vulnerability Let Attackers Bypass Security Feature

A critical security vulnerability in Windows BitLocker enables attackers to bypass the encryption feature through a sophisticated time-of-check time-of-use (TOCTOU)…

Microsoft 365 PDF Export LFI Vulnerability Allows Access to Sensitive Server Data
09
Jul
2025

Microsoft 365 PDF Export LFI Vulnerability Allows Access to Sensitive Server Data

A critical Local File Inclusion (LFI) vulnerability was recently discovered in Microsoft 365’s Export to PDF functionality, potentially allowing attackers…

Top 5 Remote-Access And RMM Tools Most Abused By Threat Actors 
09
Jul
2025

Top 5 Remote-Access And RMM Tools Most Abused By Threat Actors 

Remote monitoring and management (RMM) tools are a go-to for IT teams, but that same power makes them a favorite…