Category: CyberSecurityNews

New Android Spyware Attacking Android Users Mimic as Signal and ToTok Apps
03
Oct
2025

New Android Spyware Attacking Android Users Mimic as Signal and ToTok Apps

In recent months, security teams have observed a surge in Android spyware campaigns that prey on privacy-conscious users by masquerading…

New XWorm V6 Variant Injects Malicious Code into a Legitimate Windows Program
03
Oct
2025

New XWorm V6 Variant Injects Malicious Code into a Legitimate Windows Program

The resurgence of XWorm in mid-2025 marks a significant escalation in malware sophistication. After a lull following the abrupt discontinuation…

Chinese Hackers Compromising High-Value IIS Servers to Manipulate Search Rankings
03
Oct
2025

Chinese Hackers Compromising High-Value IIS Servers to Manipulate Search Rankings

The Chinese-speaking cybercrime group UAT-8099 has been stealthily breaching valuable Internet Information Services (IIS) servers in India, Thailand, Vietnam, Canada,…

Threat Actors Leveraging WhatsApp Messages to Attack Windows Systems With SORVEPOTEL Malware
03
Oct
2025

Threat Actors Leveraging WhatsApp Messages to Attack Windows Systems With SORVEPOTEL Malware

Enterprise networks worldwide are facing an aggressive, self-propagating malware campaign that exploits WhatsApp as its primary delivery mechanism. First observed…

SideWinder Hacker Group Hosting Fake Outlook/Zimbra Portals to Steal Login Credentials
03
Oct
2025

SideWinder Hacker Group Hosting Fake Outlook/Zimbra Portals to Steal Login Credentials

APT SideWinder, a state-sponsored threat actor long associated with espionage across South Asia, has recently launched a campaign deploying phishing…

New ‘Point-and-Click’ Phishing Kit Bypasses User Awareness and Security Filters to Deliver Malicious Payloads
03
Oct
2025

New ‘Point-and-Click’ Phishing Kit Bypasses User Awareness and Security Filters to Deliver Malicious Payloads

A novel phishing kit has surfaced that enables threat actors to craft sophisticated lures with minimal technical expertise. This “point-and-click”…

Hundreds of Free VPN Apps for Both Android and iOS Leaks Users Personal Data
03
Oct
2025

Hundreds of Free VPN Apps for Both Android and iOS Leaks Users Personal Data

Mobile VPN apps promise to protect privacy and secure communications on smartphones, but a comprehensive analysis of nearly 800 free…

HackerOne Paid $81 In Bug Bounty With Emergence of Bionic Hackers
03
Oct
2025

HackerOne Paid $81 In Bug Bounty With Emergence of Bionic Hackers

HackerOne, a leading platform in offensive security, announced it has paid out a total of $81 million in bug bounties…

Oracle Confirms that Hackers Targeting E-Business Suite Data With Extortion Emails
03
Oct
2025

Oracle Confirms that Hackers Targeting E-Business Suite Data With Extortion Emails

Oracle Corporation has officially acknowledged that cybercriminals are targeting customers of its E-Business Suite (EBS) platform through sophisticated extortion campaigns. …

Red Hat Confirms Data Breach After Hackers Claim to Steal 570GB of Private GitHub Repositories
03
Oct
2025

Red Hat Confirms Data Breach After Hackers Claim to Steal 570GB of Private GitHub Repositories

Red Hat, the world’s leading enterprise open-source software provider, has officially confirmed a significant security incident involving unauthorized access to…

Microsoft Defender for Endpoint Bug Triggers Numerous False BIOS Alerts
03
Oct
2025

Microsoft Defender for Endpoint Bug Triggers Numerous False BIOS Alerts

Microsoft Defender for Endpoint is currently experiencing a bug that generates false positive alerts concerning out-of-date Basic Input/Output System (BIOS)…

Microsoft to Launch New Secure Default Settings for Exchange and Teams APIs
02
Oct
2025

Microsoft to Launch New Secure Default Settings for Exchange and Teams APIs

Microsoft is updating its security policies to require administrator consent for new third-party applications seeking access to Exchange and Teams…