Category: CyberSecurityNews

Authentication Coercion Attack Tricks Windows Machines into Revealing Credentials to Attack-controlled Servers
12
Nov
2025

Authentication Coercion Attack Tricks Windows Machines into Revealing Credentials to Attack-controlled Servers

Authentication coercion represents a sophisticated and evolving threat targeting Windows and Active Directory environments across organizations globally. This attack method…

Tor Browser 15.0.1 Released With Fix for Multiple Security Vulnerabilities
12
Nov
2025

Tor Browser 15.0.1 Released With Fix for Multiple Security Vulnerabilities

Tor Browser 15.0.1 is now available for download, bringing essential security patches and bug fixes to users across all platforms….

ChatGPT Hacked Using Custom GPTs Exploiting SSRF Vulnerability to Expose Secrets
12
Nov
2025

ChatGPT Hacked Using Custom GPTs Exploiting SSRF Vulnerability to Expose Secrets

A Server-Side Request Forgery (SSRF) vulnerability in OpenAI’s ChatGPT. The flaw, lurking in the Custom GPT “Actions” feature, allowed attackers…

New KomeX Android RAT Advertised on Hacker Forums with Multiple Subscription Options
12
Nov
2025

New KomeX Android RAT Advertised on Hacker Forums with Multiple Subscription Options

A newly identified Android remote access trojan (RAT) dubbed KomeX has surfaced on underground hacker forums, generating widespread concern within…

New Phishing Attack Targeting Meta Business Suite Users to Steal Login Credentials
12
Nov
2025

New Phishing Attack Targeting Meta Business Suite Users to Steal Login Credentials

A large-scale phishing campaign has emerged, exploiting Meta’s Business Suite to compromise credentials across thousands of small and medium-sized businesses…

AI-backed Tool Uses Claude AI Agents to Scan for Vulnerabilities Across 11 Languages
12
Nov
2025

AI-backed Tool Uses Claude AI Agents to Scan for Vulnerabilities Across 11 Languages

In the fast-paced world of “vibecoding,” where developers use AI to build applications rapidly, a new open-source tool is stepping…

Chrome Patches High-severity Implementation Vulnerability in V8 JavaScript engine
12
Nov
2025

Chrome Patches High-severity Implementation Vulnerability in V8 JavaScript engine

Google has released Chrome version 142.0.7444.162/.163 to address a high-severity security vulnerability in the V8 JavaScript engine. The stable channel…

Ferocious Kitten APT Deploying MarkiRAT to Capture Keystroke and Clipboard Logging
12
Nov
2025

Ferocious Kitten APT Deploying MarkiRAT to Capture Keystroke and Clipboard Logging

Ferocious Kitten has emerged as a significant cyber-espionage threat targeting Persian-speaking individuals within Iran since at least 2015. The Iranian-linked…

New Quantum Route Redirect Tool Lets Attackers Launch One-Click Phishing Attacks on Microsoft 365 Users
12
Nov
2025

New Quantum Route Redirect Tool Lets Attackers Launch One-Click Phishing Attacks on Microsoft 365 Users

A sophisticated phishing campaign is targeting Microsoft 365 users worldwide through a newly discovered tool called Quantum Route Redirect. This…

Windows Kernel 0‑day Vulnerability Actively Exploited in the Wild to Escalate Privilege
12
Nov
2025

Windows Kernel 0‑day Vulnerability Actively Exploited in the Wild to Escalate Privilege

Microsoft has assigned CVE-2025-62215 to a new Windows Kernel elevation of privilege flaw that is being actively exploited in the…

Danabot Malware Resurfaced with Version 669 Following Operation Endgame
12
Nov
2025

Danabot Malware Resurfaced with Version 669 Following Operation Endgame

Danabot, a notorious banking Trojan, has made a significant comeback with its new version 669 after a period of inactivity…

Beware of Security Alert-Themed Malicious Emails that Steal Your Email Logins
11
Nov
2025

Beware of Security Alert-Themed Malicious Emails that Steal Your Email Logins

A new wave of security alert-themed phishing emails has recently surfaced, causing concern within both enterprise and personal email environments….