Category: CyberSecurityNews

178,000+ Invoices With Customers Personal Records Exposes from Invoice Platform Invoicely
14
Oct
2025

178,000+ Invoices With Customers Personal Records Exposes from Invoice Platform Invoicely

In early October 2025, cybersecurity researcher Jeremiah Fowler discovered a publicly accessible database belonging to Invoicely, a Vienna-based invoicing and…

Gcore Mitigates Record-Breaking 6 Tbps DDoS Attack
14
Oct
2025

Gcore Mitigates Record-Breaking 6 Tbps DDoS Attack

Luxembourg, Luxembourg, October 14th, 2025, CyberNewsWire Surge in scale and sophistication highlights rising threats to tech and digital infrastructure Gcore,…

ScreenConnect Abused by Threat Actors to Gain Unauthorized Remote Access to Your Computer
14
Oct
2025

ScreenConnect Abused by Threat Actors to Gain Unauthorized Remote Access to Your Computer

Remote monitoring and management (RMM) tools have long served as indispensable assets for IT administrators, providing seamless remote control, unattended…

SimonMed Data Breach Exposes 1.2 Million Patients Sensitive Information
14
Oct
2025

SimonMed Data Breach Exposes 1.2 Million Patients Sensitive Information

SimonMed Imaging, a leading U.S. provider of outpatient medical imaging services, has disclosed a major cybersecurity incident that compromised the…

Ivanti Patches 13 Vulnerabilities in Endpoint Manager Allowing Remote Code Execution
14
Oct
2025

Ivanti Patches 13 Vulnerabilities in Endpoint Manager Allowing Remote Code Execution

Ivanti has disclosed 13 vulnerabilities in its Endpoint Manager (EPM) software, including two high-severity flaws that could enable remote code…

New PoC Exploit Released for Sudo Chroot Privilege Escalation Vulnerability
14
Oct
2025

New PoC Exploit Released for Sudo Chroot Privilege Escalation Vulnerability

A critical vulnerability in the widely used Sudo utility has come under scrutiny following the public release of a proof-of-concept…

Elastic Cloud Enterprise Vulnerability Let Attackers Execute Malicious Commands
14
Oct
2025

Elastic Cloud Enterprise Vulnerability Let Attackers Execute Malicious Commands

Elastic has disclosed a critical vulnerability in its Elastic Cloud Enterprise (ECE) platform that allows administrators with malicious intent to…

Russian Cybercrime Market Hub Transferring from RDP Access to Malware Stealer Logs to Access
14
Oct
2025

Russian Cybercrime Market Hub Transferring from RDP Access to Malware Stealer Logs to Access

A new evolution is underway in the Russian cybercrime ecosystem: market operators and threat actors are rapidly shifting from selling…

Hackers Attacking macOS Users With Spoofed Homebrew Websites to Inject Malicious Payloads
14
Oct
2025

Hackers Attacking macOS Users With Spoofed Homebrew Websites to Inject Malicious Payloads

A sophisticated campaign targeting macOS users has emerged through spoofed Homebrew installer websites that deliver malicious payloads alongside legitimate package…

Pro-Russian Hacktivist Attacking OT/ICS Devices to Steal Login Credentials
14
Oct
2025

Pro-Russian Hacktivist Attacking OT/ICS Devices to Steal Login Credentials

A newly identified pro-Russian hacktivist group has successfully infiltrated operational technology and industrial control systems belonging to critical infrastructure organizations,…

Hackers Can Bypass OpenAI Guardrails Framework Using a Simple Prompt Injection Technique
14
Oct
2025

Hackers Can Bypass OpenAI Guardrails Framework Using a Simple Prompt Injection Technique

OpenAI’s newly launched Guardrails framework, designed to enhance AI safety by detecting harmful behaviors, has been swiftly compromised by researchers…

Axis Communications Vulnerability Exposes Azure Storage Account Credentials
14
Oct
2025

Axis Communications Vulnerability Exposes Azure Storage Account Credentials

A critical vulnerability in Axis Communications’ Autodesk Revit plugin has exposed Azure Storage Account credentials, creating significant security risks for…