Category: CyberSecurityNews

Threat Actors Leverage Fake Update Lures to Deliver SocGholish Malware
27
Nov
2025

Threat Actors Leverage Fake Update Lures to Deliver SocGholish Malware

Threat actors continue to exploit a dangerous vulnerability in user behavior by deploying fake software updates to deliver the SocGholish…

OpenAI Discloses Mixpanel Data Breach
27
Nov
2025

OpenAI Discloses Mixpanel Data Breach

The company has publicly revealed a security incident involving Mixpanel, a third-party analytics provider previously used to monitor activity on platform.openai.com,…

Hackers Actively Attacking Telecommunications & Media Industry to Deploy Malicious Payloads
27
Nov
2025

Hackers Actively Attacking Telecommunications & Media Industry to Deploy Malicious Payloads

Cybercriminals are launching increasingly sophisticated attacks against the telecommunications and media industry, focusing their efforts on deploying malicious payloads that…

Hackers Tricks macOS Users to Execute Command in Terminal to Deliver FlexibleFerret Malware
27
Nov
2025

Hackers Tricks macOS Users to Execute Command in Terminal to Deliver FlexibleFerret Malware

Cybercriminals are successfully targeting Apple users through a sophisticated social engineering scheme that tricks victims into running harmful commands on…

Regional execution blocking (Source - Bitdefender)
27
Nov
2025

Hackers Exploiting Fake Battlefield 6 Popularity to Deploy Stealers and C2 Agents

Since its release in October, Battlefield 6 has become one of the year’s most anticipated game launches. However, cybercriminals have…

Threat Actors Allegedly Listed iOS 26 Full‑Chain 0‑Day Exploit on Dark Web
27
Nov
2025

Threat Actors Allegedly Listed iOS 26 Full‑Chain 0‑Day Exploit on Dark Web

A threat actor operating under the alias ResearcherX has posted what they claim to be a full‑chain zero‑day exploit targeting…

27
Nov
2025

New Malware-as-a-Service Olymp Loader Advertised on Hacker Forums with It’s Anti-analysis and Detection Features

A new Malware-as-a-Service (MaaS) threat named “Olymp Loader” appeared in June 2025, aggressively advertised on underground hacker forums like XSS…

Microsoft Teams Guest Chat Vulnerability Exposes Users to Malware Attack
27
Nov
2025

Microsoft Teams Guest Chat Vulnerability Exposes Users to Malware Attack

A significant gap in Microsoft Teams’ B2B guest access allows attackers to bypass Defender for Office 365 protections, creating unprotected…

New Unauthenticated DoS Vulnerability Crashes Next.js Servers with a Single Request
27
Nov
2025

New Unauthenticated DoS Vulnerability Crashes Next.js Servers with a Single Request

A newly discovered critical vulnerability in the Next.js framework allows attackers to crash self-hosted servers using a single HTTP request,…

North Korean Hackers Evade UN Sanctions Leveraging Cyber Capabilities, IT Workers and Crypto Activities
27
Nov
2025

North Korean Hackers Evade UN Sanctions Leveraging Cyber Capabilities, IT Workers and Crypto Activities

The Democratic People’s Republic of Korea (DPRK) has intensified its global cyber operations, systematically violating United Nations Security Council resolutions…

Teaching Claude to Cheat Reward Hacking Coding Tasks Makes Them Behave Maliciously in Other Tasks
26
Nov
2025

Teaching Claude to Cheat Reward Hacking Coding Tasks Makes Them Behave Maliciously in Other Tasks

A new research study from Anthropic has uncovered a concerning pattern in large language models: when these AI systems are…

New "JackFix" Attack Leverages Windows Updates into Executing Malicious Commands
26
Nov
2025

New “JackFix” Attack Leverages Windows Updates into Executing Malicious Commands

A sophisticated ClickFix campaign dubbed “JackFix” that uses fake adult websites to hijack screens with realistic Windows Update prompts, tricking…