Category: CyberSecurityNews

Hackers Using New Matrix Push C2 to Deliver Malware and Phishing Attacks via Web Browser
21
Nov
2025

Hackers Using New Matrix Push C2 to Deliver Malware and Phishing Attacks via Web Browser

A new command-and-control platform called Matrix Push C2 has emerged as a serious threat to web users across all operating…

Chinese Hackers Exploiting WSUS Remote Code Execution Vulnerability to Deploy ShadowPad Malware
21
Nov
2025

Chinese Hackers Exploiting WSUS Remote Code Execution Vulnerability to Deploy ShadowPad Malware

Chinese-backed attackers have begun weaponizing a critical vulnerability in Microsoft Windows Server Update Services (WSUS) to distribute ShadowPad, a sophisticated…

Ransomware Actors Primarily Targeting Retailers This Holiday Season to Deploy Malicious Payloads
21
Nov
2025

Ransomware Actors Primarily Targeting Retailers This Holiday Season to Deploy Malicious Payloads

Retailers are facing a sharp rise in targeted ransomware activity as the holiday shopping season begins. Threat groups are timing…

Critical Grafana Vulnerability Let Attackers Escalate Privilege
21
Nov
2025

Critical Grafana Vulnerability Let Attackers Escalate Privilege

Grafana Labs has disclosed a critical security vulnerability affecting Grafana Enterprise that could allow attackers to escalate privileges and impersonate…

China-linked APT24 Hackers New BadAudio Compromised Legitimate Public Websites to Attack Users
21
Nov
2025

China-linked APT24 Hackers New BadAudio Compromised Legitimate Public Websites to Attack Users

APT24, a sophisticated cyber espionage group linked to China’s People’s Republic, has launched a relentless three-year campaign delivering BadAudio, a…

Broadcom Allegedly Breached by Clop Ransomware via E-Business Suite 0-Day Hack
21
Nov
2025

Broadcom Allegedly Breached by Clop Ransomware via E-Business Suite 0-Day Hack

The Cl0p ransomware group has claimed responsibility for infiltrating Broadcom’s internal systems as part of an ongoing exploitation campaign targeting…

Critical ASUSTOR Vulnerability Let Attackers Execute Malicious Code with Elevated Privileges
21
Nov
2025

Critical ASUSTOR Vulnerability Let Attackers Execute Malicious Code with Elevated Privileges

A critical security vulnerability has been discovered in ASUSTOR backup and synchronization software, allowing attackers to execute malicious code with…

Windows 11 to Hide BSOD Crash Errors on Public Displays
21
Nov
2025

Windows 11 to Hide BSOD Crash Errors on Public Displays

Microsoft has introduced a practical new feature in Windows 11 designed specifically for public-facing monitors and signage. This new mode…

OpenAI Releases GPT-5.1-Codex-Max that Performs Coding Tasks Independently
21
Nov
2025

OpenAI Releases GPT-5.1-Codex-Max that Performs Coding Tasks Independently

OpenAI has launched GPT-5.1-Codex-Max, a specialized coding model designed to handle complex development tasks autonomously. The new system represents a significant…

SonicOS SSLVPN Vulnerability Let Attackers Crash the Firewall Remotely
21
Nov
2025

SonicOS SSLVPN Vulnerability Let Attackers Crash the Firewall Remotely

SonicWall has disclosed a critical stack-based buffer overflow vulnerability in its SonicOS SSLVPN service. That allows remote unauthenticated attackers to…

Authorities Sanctioned Russia-based Bulletproof Hosting Provider for Supporting Ransomware Operations
21
Nov
2025

Authorities Sanctioned Russia-based Bulletproof Hosting Provider for Supporting Ransomware Operations

The U.S. Department of the Treasury, Australia, and the United Kingdom have announced coordinated sanctions against Media Land. This Russia-based…

Salesforce Confirms that Customers' Data Was accessed Following the Gainsight Breach
21
Nov
2025

Salesforce Confirms that Customers’ Data Was accessed Following the Gainsight Breach

Salesforce has issued a critical security alert identifying “unusual activity” involving Gainsight-published applications connected to customer environments. The CRM giant’s…