Category: CyberSecurityNews

Apache Syncope Groovy RCE Vulnerability Let Attackers Inject Malicious Code
21
Oct
2025

Apache Syncope Groovy RCE Vulnerability Let Attackers Inject Malicious Code

Apache Syncope, an open-source identity management system, has been found vulnerable to remote code execution (RCE) through its Groovy scripting…

Sendmarc Appoints Dan Levinson as Customer Success Director in North America
21
Oct
2025

Sendmarc Appoints Dan Levinson as Customer Success Director in North America

Wilmington, Delaware, October 21st, 2025, CyberNewsWire Sendmarc has announced the appointment of Dan Levinson as Customer Success Director – North…

LANSCOPE Endpoint Manager Vulnerability Let Attackers Execute Remote Code
21
Oct
2025

LANSCOPE Endpoint Manager Vulnerability Let Attackers Execute Remote Code

Motex has disclosed a severe remote code execution vulnerability in its LANSCOPE Endpoint Manager On-Premise Edition. Assigned CVE-2025-61932, the flaw…

New LOSTKEYS Malware Linked to Russia State-Sponsored Hacker Group COLDRIVER
21
Oct
2025

New LOSTKEYS Malware Linked to Russia State-Sponsored Hacker Group COLDRIVER

Over the summer of 2025, a novel malware family emerged following the public disclosure of the LOSTKEYS implant. This new…

131 Malicious Extensions Targeting WhatsApp Used Found in Chrome Web Store
21
Oct
2025

131 Malicious Extensions Targeting WhatsApp Used Found in Chrome Web Store

Over the past several months, cybersecurity researchers have observed a surge of fraudulent Chrome extensions masquerading as legitimate WhatsApp Web…

Critical ASP.NET Vulnerability Allows Attacker To Bypass Security Feature Remotely
21
Oct
2025

Critical ASP.NET Vulnerability Allows Attacker To Bypass Security Feature Remotely

Microsoft has disclosed a serious security flaw in ASP.NET Core that enables authenticated attackers to smuggle HTTP requests and evade…

ZYXEL Authorization Bypass Vulnerability Let Attackers View and Download System Configuration
21
Oct
2025

ZYXEL Authorization Bypass Vulnerability Let Attackers View and Download System Configuration

A critical vulnerability in Zyxel’s ATP and USG series firewalls that allows attackers to bypass authorization controls and access sensitive…

Hackers Attacking Remote Desktop Protocol Services With 30,000+ New IP Addresses Daily
21
Oct
2025

Hackers Attacking Remote Desktop Protocol Services With 30,000+ New IP Addresses Daily

A persistent campaign targeting Microsoft Remote Desktop Protocol (RDP) services, with attackers deploying over 30,000 new IP addresses daily to…

AWS Declares Major Outage Resolved After Nearly 24 Hours of Disruption
21
Oct
2025

AWS Declares Major Outage Resolved After Nearly 24 Hours of Disruption

Amazon Web Services (AWS), the world’s largest cloud computing provider, has officially marked a widespread outage in its US-EAST-1 region…

Automatic BitLocker Encryption May Silently Lock Away Your Data
21
Oct
2025

Automatic BitLocker Encryption May Silently Lock Away Your Data

A Reddit poster detailed how reinstalling Windows 11 unexpectedly encrypted two of their backup drives with BitLocker, locking away 3TB…

CISA Warns of Windows SMB Vulnerability Actively Exploited in Attacks
21
Oct
2025

CISA Warns of Windows SMB Vulnerability Actively Exploited in Attacks

The Cybersecurity and Infrastructure Security Agency (CISA) issued an urgent alert on October 20, 2025, highlighting a severe vulnerability CVE-2025-33073…

71,000+ WatchGuard Devices Vulnerable to Remote Code Execution Attacks
21
Oct
2025

71,000+ WatchGuard Devices Vulnerable to Remote Code Execution Attacks

The Shadowserver Foundation has uncovered more than 71,000 internet-exposed WatchGuard devices running vulnerable versions of Fireware OS. The flaw, tracked…