Category: CyberSecurityNews

Support for Windows 10 Ends Today Leaving Users Vulnerable to Cyberattacks
15
Oct
2025

Support for Windows 10 Ends Today Leaving Users Vulnerable to Cyberattacks

Microsoft officially ended support for Windows 10, marking the close of a decade-long era for one of the most popular…

FortiOS CLI Command Bypass Vulnerability Let Attacker Execute System Commands
15
Oct
2025

FortiOS CLI Command Bypass Vulnerability Let Attacker Execute System Commands

Fortinet disclosed a high-severity vulnerability in its FortiOS operating system on October 14, 2025, that could enable local authenticated attackers…

New Cyberattack Leverages NPM Ecosystem to Infect Developers While Installing Packages
14
Oct
2025

New Cyberattack Leverages NPM Ecosystem to Infect Developers While Installing Packages

Cybersecurity researchers have uncovered a sophisticated phishing campaign that weaponizes the NPM ecosystem through an unprecedented attack vector. Unlike traditional…

PolarEdge With Custom TLS Server Uses Custom Binary Protocol for C2 Communication
14
Oct
2025

PolarEdge With Custom TLS Server Uses Custom Binary Protocol for C2 Communication

A sophisticated backdoor malware targeting Internet of Things devices has surfaced, employing advanced communication techniques to maintain persistent access to…

Hackers Leverage Judicial Notifications to Deploy Info-Stealer Malware
14
Oct
2025

Hackers Leverage Judicial Notifications to Deploy Info-Stealer Malware

Cybercriminals have developed a sophisticated phishing campaign targeting Colombian users through fake judicial notifications, deploying a complex multi-stage malware delivery…

FortiPAM and FortiSwitch Manager Vulnerability Let Attackers Bypass Authentication Process
14
Oct
2025

FortiPAM and FortiSwitch Manager Vulnerability Let Attackers Bypass Authentication Process

Fortinet has issued an urgent advisory revealing a critical weakness in its FortiPAM and FortiSwitch Manager products that could allow…

Microsoft October 2025 Patch Tuesday – 4 Zero-days and 173 Vulnerabilities Patched
14
Oct
2025

Microsoft October 2025 Patch Tuesday – 4 Zero-days and 173 Vulnerabilities Patched

Microsoft rolled out its October 2025 Patch Tuesday updates, addressing a staggering 173 vulnerabilities across its ecosystem, including four zero-day…

Hackers Mimic as OpenAI and Sora Services to Steal Login Credentials
14
Oct
2025

Hackers Mimic as OpenAI and Sora Services to Steal Login Credentials

In recent weeks, a sophisticated phishing campaign has emerged, targeting corporate and consumer accounts by impersonating both OpenAI and Sora-branded…

New Pixnapping Attack Steals 2FA Codes From Google Authenticator Within 30 Seconds
14
Oct
2025

New Pixnapping Attack Steals 2FA Codes From Google Authenticator Within 30 Seconds

Pixnapping, a novel class of side-channel attacks targeting Android devices that can covertly extract sensitive screen data, including two-factor authentication…

Criminal IP to Showcase ASM and CTI Innovations at GovWare 2025 in Singapore
14
Oct
2025

Criminal IP to Showcase ASM and CTI Innovations at GovWare 2025 in Singapore

Torrance, United States, October 14th, 2025, CyberNewsWire Criminal IP at Booth J30 | Sands Expo Singapore | October 21 –…

Sweet Security Named Cloud Security Leader and CADR Leader in Latio Cloud Security Report
14
Oct
2025

Sweet Security Named Cloud Security Leader and CADR Leader in Latio Cloud Security Report

Tel Aviv, Israel, October 14th, 2025, CyberNewsWire Sweet Security, a leader in Runtime Cloud and AI security solutions, today announced…

Thousands of North Korean IT Workers Using VPNs and 'Laptop Farms' to Bypass Origin Verification
14
Oct
2025

Thousands of North Korean IT Workers Using VPNs and ‘Laptop Farms’ to Bypass Origin Verification

Since at least 2018, a covert network of thousands of North Korean IT contractors has infiltrated global technology and infrastructure…