Category: CyberSecurityNews

Exim Mail Transfer Vulnerability Let Attackers Inject Malicious SQL Queries
24
Feb
2025

Exim Mail Transfer Vulnerability Let Attackers Inject Malicious SQL Queries

Security researchers have uncovered a critical SQL injection vulnerability (CVE-2025-26794) in Exim, the widely-used mail transfer agent (MTA) that powers…

UniFi Protect Camera Vulnerability Allows Remote Code Execution Attacks
24
Feb
2025

UniFi Protect Camera Vulnerability Allows Remote Code Execution Attacks

Ubiquiti Networks has issued an urgent security advisory addressing five critical vulnerabilities in its UniFi Protect camera ecosystem, including two…

ACRStealer Malware Exploiting Google Docs as C2 To Steal Login Credentials
24
Feb
2025

ACRStealer Malware Exploiting Google Docs as C2 To Steal Login Credentials

A newly identified malware variant dubbed ACRStealer has been observed leveraging Google Docs as a command-and-control (C2) server to bypass…

China Claim That NSA Allegedly Hacked Northwestern Polytechnical University
24
Feb
2025

China Claim That NSA Allegedly Hacked Northwestern Polytechnical University

Chinese cybersecurity authorities have alleged that the U.S. National Security Agency (NSA) breached Northwestern Polytechnical University (NPU), a leading institution…

Auto-Generated Password Vulnerability In Sitevision Leaks Signing Key
24
Feb
2025

Auto-Generated Password Vulnerability In Sitevision Leaks Signing Key

A critical security flaw in Sitevision CMS versions 10.3.1 and older has exposed SAML authentication signing keys, enabling potential authentication…

Salt Typhoon Hackers Exploit Cisco Vulnerability To Gain Access To U.S. Telecom Networks
24
Feb
2025

Salt Typhoon Hackers Exploit Cisco Vulnerability To Gain Access To U.S. Telecom Networks

Cisco Talos has uncovered a sophisticated cyberespionage campaign by the state-aligned “Salt Typhoon” group targeting U.S. telecommunications infrastructure since late…

BlackBastaGPT – A ChatGPT Powered Tool to Uncover Ransomware Group Tactics
24
Feb
2025

BlackBastaGPT – A ChatGPT Powered Tool to Uncover Ransomware Group Tactics

A new AI-powered chatbot, BlackBastaGPT, trained on over 1 million leaked internal messages from the Black Basta ransomware gang. Hudson…

Attackers Stolen $1.46 Billion From Bybit Exchange
24
Feb
2025

Attackers Stolen $1.46 Billion From Bybit Exchange

Attackers infiltrated Bybit Exchange’s Ethereum cold wallet infrastructure to steal $1.46 billion in digital assets through sophisticated interface manipulation and…

Pegasus Spyware Used Widely to Target Individuals in Private Industry & Finance Sectors
21
Feb
2025

Pegasus Spyware Used Widely to Target Individuals in Private Industry & Finance Sectors

Pegasus spyware, once considered a tool for targeting journalists and activists—is now being deployed against executives in the private sector,…

Chinese Hackers Using New Bookworm Malware In Attacks Targeting Southeast Asia
21
Feb
2025

Chinese Hackers Using New Bookworm Malware In Attacks Targeting Southeast Asia

Security researchers at Palo Alto Networks’ Unit 42 have uncovered a resurgence of the modular Bookworm malware in cyberattacks targeting…

New NailaoLocker Ransomware Attacking European Healthcare
21
Feb
2025

New NailaoLocker Ransomware Attacking European Healthcare

European healthcare organizations are facing a sophisticated cyber threat from a newly identified ransomware strain called NailaoLocker, deployed as part…

Ivanti Endpoint Manager Vulnerabilities Proof-of-Concept (PoC) Exploit Released
21
Feb
2025

Ivanti Endpoint Manager Vulnerabilities Proof-of-Concept (PoC) Exploit Released

A cluster of four critical vulnerabilities in Ivanti Endpoint Manager (EPM) has entered a dangerous new phase with the public…