Category: CyberSecurityNews

Multiple Kibana Vulnerabilities Enables SSRF and XSS Attacks
13
Nov
2025

Multiple Kibana Vulnerabilities Enables SSRF and XSS Attacks

Elastic Security has disclosed critical vulnerabilities affecting Kibana that could enable attackers to execute Server-Side Request Forgery (SSRF) and Cross-Site…

Multiple GitLab Vulnerabilities Let Attackers Inject Malicious Prompts to Steal Sensitive Data
13
Nov
2025

Multiple GitLab Vulnerabilities Let Attackers Inject Malicious Prompts to Steal Sensitive Data

GitLab has released urgent security patches addressing multiple vulnerabilities affecting both the Community Edition and the Enterprise Edition. The company…

BreachLock and Vanta Bridge the Gap Between Continuous Security Testing and Compliance with New Integration
13
Nov
2025

BreachLock and Vanta Bridge the Gap Between Continuous Security Testing and Compliance with New Integration

New York, New York, November 13th, 2025, CyberNewsWire BreachLock, a global leader in offensive security, just announced a powerful new…

Rhadamanthys Stealer Servers Possibly Seized
13
Nov
2025

Rhadamanthys Stealer Servers Possibly Seized

Reports of a possible law enforcement operation against Rhadamanthys Stealer infrastructure have created waves in the cybersecurity community. The information…

English-Speaking Cybercriminal Ecosystem 'The COM' Drives a Wide Spectrum of Cyberattacks
13
Nov
2025

English-Speaking Cybercriminal Ecosystem ‘The COM’ Drives a Wide Spectrum of Cyberattacks

The English-speaking cybercriminal ecosystem, commonly known as “The COM,” has transformed from a niche community of social media account traders…

New ClickFix Attack Tricks Users with 'Fake OS Update' to Execute Malicious Commands
13
Nov
2025

New ClickFix Attack Tricks Users with ‘Fake OS Update’ to Execute Malicious Commands

A new ClickFix campaign is tricking users with a fake Windows update that runs in their browser. Called “Fake OS…

Critical Dell Data Lakehouse Vulnerability Let Remote Attacker Escalate Privileges
13
Nov
2025

Critical Dell Data Lakehouse Vulnerability Let Remote Attacker Escalate Privileges

Dell Technologies has disclosed a critical security vulnerability in its Data Lakehouse platform that could allow remote attackers to escalate…

CISA Warns WatchGuard Firebox Out-of-Bounds Write Vulnerability Exploited Attacks
13
Nov
2025

CISA Warns WatchGuard Firebox Out-of-Bounds Write Vulnerability Exploited Attacks

The Cybersecurity and Infrastructure Security Agency (CISA) has released a warning about a serious vulnerability affecting WatchGuard Firebox security appliances….

Microsoft SQL Server Vulnerability Let Attackers Escalate Privileges
13
Nov
2025

Microsoft SQL Server Vulnerability Let Attackers Escalate Privileges

Microsoft has released security updates to fix a serious vulnerability in SQL Server that allows attackers to gain higher system…

CISA Warns of Federal Agencies Not Fully Patching Actively Exploited Cisco ASA or Firepower Devices
13
Nov
2025

CISA Warns of Federal Agencies Not Fully Patching Actively Exploited Cisco ASA or Firepower Devices

The Cybersecurity and Infrastructure Security Agency (CISA) has issued a critical alert regarding federal agencies. Failing to properly patch Cisco…

New Phishing Attack Targeting iPhone Owners Who’ve Lost Their Devices
13
Nov
2025

New Phishing Attack Targeting iPhone Owners Who’ve Lost Their Devices

A new phishing campaign is targeting iPhone owners who have lost their devices, exploiting their hope of recovery to steal…

Chinese National Jailed for Laundering Over £5 Billion by Defrauding Over 128,000 Victims
13
Nov
2025

Chinese National Jailed for Laundering Over £5 Billion by Defrauding Over 128,000 Victims

A Chinese national has been sentenced to over 11 years in prison following one of the most significant cryptocurrency fraud…