Category: CyberSecurityNews

Dolby Digital Plus 0-Click Vulnerability Enables RCE Attack via Malicious Audio on Android
20
Oct
2025

Dolby Digital Plus 0-Click Vulnerability Enables RCE Attack via Malicious Audio on Android

A critical zero-click vulnerability in Dolby Digital Plus (DDP) audio decoding software has been disclosed, allowing attackers to execute malicious…

AWS Outage Impacts Amazon, Snapchat, Prime Video, Canva and More
20
Oct
2025

AWS Outage Impacts Amazon, Snapchat, Prime Video, Canva and More

A widespread Amazon Web Services (AWS) outage on Monday disrupted operations for millions of users worldwide, knocking out access to…

Canva Down - Suffers Global Outage, Leaving Millions of Users Inaccessible
20
Oct
2025

Canva Down – Suffers Global Outage, Leaving Millions of Users Inaccessible

Canva, the popular graphic design platform, is reeling from a widespread outage that has rendered its services inaccessible to millions…

PoC Exploit for Windows Server Update Services Vulnerability Enables Remote Code Execution
20
Oct
2025

PoC Exploit for Windows Server Update Services Vulnerability Enables Remote Code Execution

A proof-of-concept (PoC) exploit has been released for a critical vulnerability in Microsoft’s Windows Server Update Services (WSUS), enabling unauthenticated…

New DefenderWrite Tool Let Attackers Inject Malicious DLLs into AV Executable Folders
20
Oct
2025

New DefenderWrite Tool Let Attackers Inject Malicious DLLs into AV Executable Folders

A new tool called DefenderWrite exploits whitelisted Windows programs to bypass protections and write arbitrary files into antivirus executable folders,…

PoC Exploit Released for Linux-PAM Vulnerability Allowing Root Privilege Escalation
19
Oct
2025

PoC Exploit Released for Linux-PAM Vulnerability Allowing Root Privilege Escalation

A high-severity vulnerability in the Pluggable Authentication Modules (PAM) framework was assigned the identifier CVE-2025-8941. This vulnerability stems from the…

WatchGuard VPN Vulnerability Let Remote Attacker Execute Arbitrary Code
19
Oct
2025

WatchGuard VPN Vulnerability Let Remote Attacker Execute Arbitrary Code

WatchGuard has disclosed a critical out-of-bounds write vulnerability in its Fireware OS, enabling remote unauthenticated attackers to execute arbitrary code…

19
Oct
2025

WatchGuard VPN Vulnerability Let Remote Attacker Execute Arbitrary Code

WatchGuard has disclosed a critical out-of-bounds write vulnerability in its Fireware OS, enabling remote unauthenticated attackers to execute arbitrary code…

Volkswagen Allegedly Hit by Ransomware Attack as 8Base Claims Sensitive Data Theft
19
Oct
2025

Volkswagen Allegedly Hit by Ransomware Attack as 8Base Claims Sensitive Data Theft

Volkswagen Group has issued a statement addressing claims by the ransomware group 8Base, which alleges it has stolen and leaked…

Windows 11 24H2/25H2 Update Blocks Mouse and Keyboard in Recovery Mode
19
Oct
2025

Windows 11 24H2/25H2 Update Blocks Mouse and Keyboard in Recovery Mode

Microsoft’s latest security update has rendered USB keyboards and mice inoperable within the Windows Recovery Environment (WinRE). Released on October…

American Airlines Subsidiary Envoy Compromised in Oracle Hacking Campaign
18
Oct
2025

American Airlines Subsidiary Envoy Compromised in Oracle Hacking Campaign

Envoy Air, a wholly owned subsidiary of American Airlines, has confirmed it fell victim to a hacking campaign exploiting vulnerabilities…

New Phishing Attack Leverages Azure Blob Storage to Impersonate Microsoft
18
Oct
2025

New Phishing Attack Leverages Azure Blob Storage to Impersonate Microsoft

Threat actors are leveraging Microsoft Azure Blob Storage to craft highly convincing phishing sites that mimic legitimate Office 365 login…