Category: CyberSecurityNews

DarkSamural APT Group Malicious LNK and PDF Files to Steal Critical Data
10
Sep
2025

DarkSamural APT Group Malicious LNK and PDF Files to Steal Critical Data

Security researchers have observed a sophisticated campaign in recent weeks targeting critical infrastructure and government entities across South Asia. Dubbed…

Kimsuky Hackers Via Weaponized LNK File Abuses GitHub for Malware Delivery
10
Sep
2025

Kimsuky Hackers Via Weaponized LNK File Abuses GitHub for Malware Delivery

The North Korea-backed APT group Kimsuky has escalated its cyber operations by weaponizing GitHub repositories for malware delivery and data…

GitLab Patches Multiple Vulnerabilities That Enables Denial Of Service And SSRF Attacks
10
Sep
2025

GitLab Patches Multiple Vulnerabilities That Enables Denial Of Service And SSRF Attacks

GitLab has released urgent security patches for its Community (CE) and Enterprise (EE) editions, addressing multiple vulnerabilities, including two high-severity…

Google Drive Desktop for Windows Vulnerability Grants Full Access to Another User's Drive
10
Sep
2025

Google Drive Desktop for Windows Vulnerability Grants Full Access to Another User’s Drive

A security vulnerability has been found in the Google Drive Desktop application for Windows. It allows a logged-in user on…

Microsoft Warns of Active Directory Domain Services Vulnerability, Let Attackers Escalate Privileges
10
Sep
2025

Microsoft Warns of Active Directory Domain Services Vulnerability, Let Attackers Escalate Privileges

Microsoft has issued an updated warning for a critical security vulnerability in Active Directory Domain Services, tracked as CVE-2025-21293. This…

AI Actions In File Explorer
10
Sep
2025

Microsoft To Introduce New AI Actions In Windows File Explorer

Microsoft is set to enhance the Windows user experience by integrating new AI-powered capabilities directly into File Explorer. This upcoming…

HackerOne Confirms Data Breach - Hackers Gained Unauthorized Access To Salesforce Instance
10
Sep
2025

HackerOne Confirms Data Breach – Hackers Gained Unauthorized Access To Salesforce Instance

HackerOne has confirmed it was among the companies affected by a recent data breach that provided unauthorized access to its…

Critical Microsoft Office Vulnerabilities Let Attackers Execute malicious Code
10
Sep
2025

Critical Microsoft Office Vulnerabilities Let Attackers Execute malicious Code

Microsoft has released patches for two significant vulnerabilities in Microsoft Office that could allow attackers to execute malicious code on…

Sophos Wireless Access Points Vulnerability Let Attackers Bypass Authentication
10
Sep
2025

Sophos Wireless Access Points Vulnerability Let Attackers Bypass Authentication

Sophos has resolved an authentication bypass vulnerability in its AP6 Series Wireless Access Points that could allow attackers to gain…

Critical SAP NetWeaver Vulnerability Let Attackers Execute Arbitrary Code And Compromise System
10
Sep
2025

Critical SAP NetWeaver Vulnerability Let Attackers Execute Arbitrary Code And Compromise System

A critical vulnerability CVE-2025-42922 has been discovered in SAP NetWeaver that allows an authenticated, low-privileged attacker to execute arbitrary code…

Windows BitLocker Vulnerability Let Attackers Elevate Privileges
10
Sep
2025

Windows BitLocker Vulnerability Let Attackers Elevate Privileges

Microsoft has addressed two significant elevation of privilege vulnerabilities affecting its Windows BitLocker encryption feature. The flaws, tracked as CVE-2025-54911…

Workday Confirms Data Breach - Hackers Accessed Customers Data and Case Information
10
Sep
2025

Workday Confirms Data Breach – Hackers Accessed Customers Data and Case Information

Workday has confirmed it suffered a data breach after a security incident involving a third-party application that compromised customer information….