Category: CyberSecurityNews

Hackers Actively Exploiting Cisco and Citrix 0-Days in the Wild to Deploy Webshell
12
Nov
2025

Hackers Actively Exploiting Cisco and Citrix 0-Days in the Wild to Deploy Webshell

An advanced hacking group is actively exploiting zero-day vulnerabilities in Cisco Identity Services Engine (ISE) and Citrix systems. These attacks,…

Campaign Overview (Source - Cyble)
12
Nov
2025

New Phishing Attack Leverages Popular Brands to Harvest Login Credentials

A sophisticated phishing campaign has emerged, targeting organizations across Central and Eastern Europe by impersonating legitimate global brands to deceive…

Hackers Weaponize AppleScript to Creatively Deliver macOS Malware Mimic as Zoom/Teams Updates
12
Nov
2025

Hackers Weaponize AppleScript to Creatively Deliver macOS Malware Mimic as Zoom/Teams Updates

Threat actors continue to evolve their techniques for bypassing macOS security controls, shifting away from traditional attack vectors that Apple…

Microsoft Investigating Teams Issue that Disables Users from Opening Apps
12
Nov
2025

Microsoft Investigating Teams Issue that Disables Users from Opening Apps

Microsoft has confirmed it is investigating a significant issue affecting Microsoft Teams for Education, which is particularly impacting users’ ability…

Windows Remote Desktop Services Vulnerability Let Attackers Escalate Privileges
12
Nov
2025

Windows Remote Desktop Services Vulnerability Let Attackers Escalate Privileges

Microsoft has disclosed a significant vulnerability in Windows Remote Desktop Services (RDS) that could allow authorized attackers to escalate their…

Authentication Coercion Attack Tricks Windows Machines into Revealing Credentials to Attack-controlled Servers
12
Nov
2025

Authentication Coercion Attack Tricks Windows Machines into Revealing Credentials to Attack-controlled Servers

Authentication coercion represents a sophisticated and evolving threat targeting Windows and Active Directory environments across organizations globally. This attack method…

Tor Browser 15.0.1 Released With Fix for Multiple Security Vulnerabilities
12
Nov
2025

Tor Browser 15.0.1 Released With Fix for Multiple Security Vulnerabilities

Tor Browser 15.0.1 is now available for download, bringing essential security patches and bug fixes to users across all platforms….

ChatGPT Hacked Using Custom GPTs Exploiting SSRF Vulnerability to Expose Secrets
12
Nov
2025

ChatGPT Hacked Using Custom GPTs Exploiting SSRF Vulnerability to Expose Secrets

A Server-Side Request Forgery (SSRF) vulnerability in OpenAI’s ChatGPT. The flaw, lurking in the Custom GPT “Actions” feature, allowed attackers…

New KomeX Android RAT Advertised on Hacker Forums with Multiple Subscription Options
12
Nov
2025

New KomeX Android RAT Advertised on Hacker Forums with Multiple Subscription Options

A newly identified Android remote access trojan (RAT) dubbed KomeX has surfaced on underground hacker forums, generating widespread concern within…

New Phishing Attack Targeting Meta Business Suite Users to Steal Login Credentials
12
Nov
2025

New Phishing Attack Targeting Meta Business Suite Users to Steal Login Credentials

A large-scale phishing campaign has emerged, exploiting Meta’s Business Suite to compromise credentials across thousands of small and medium-sized businesses…

AI-backed Tool Uses Claude AI Agents to Scan for Vulnerabilities Across 11 Languages
12
Nov
2025

AI-backed Tool Uses Claude AI Agents to Scan for Vulnerabilities Across 11 Languages

In the fast-paced world of “vibecoding,” where developers use AI to build applications rapidly, a new open-source tool is stepping…

Chrome Patches High-severity Implementation Vulnerability in V8 JavaScript engine
12
Nov
2025

Chrome Patches High-severity Implementation Vulnerability in V8 JavaScript engine

Google has released Chrome version 142.0.7444.162/.163 to address a high-severity security vulnerability in the V8 JavaScript engine. The stable channel…