SonicWall SSLVPN Under Attack Following the Breach of All Customers’ Firewall Backups

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A surge in attacks targeting SonicWall SSLVPN devices, affecting numerous customer networks, just weeks after a major breach exposed sensitive firewall data. Starting October 4, 2025, threat actors have rapidly authenticated into over 100 accounts across 16 environments, using what …

Oracle E-Business Suite RCE Vulnerability Exposes Sensitive Data to Hackers Without Authentication

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Oracle has disclosed a critical vulnerability in its E-Business Suite that enables unauthenticated attackers to remotely access sensitive data, raising alarms for enterprises relying on the platform for core operations. Tracked as CVE-2025-61884, the flaw affects the Oracle Configurator component …

Cybersecurity Newsletter Weekly – Discord, Red Hat Data Breach, 7-Zip Vulnerabilities and Sonicwall Firewall Hack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Welcome to this week’s edition of the Cybersecurity Newsletter Weekly, where we dive into the most pressing threats and vulnerabilities shaping the digital landscape. As cyber risks continue to evolve at breakneck speed, our October 12, 2025, roundup spotlights a …

VirusTotal Simplifies User Options With Platform Access and New Contributor Model

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

VirusTotal (VT) is making important changes to its platform access and pricing. These updates aim to improve accessibility and strengthen its commitment to collaboration. The initiative, detailed in a recent company announcement, aims to simplify user options while reinforcing VT’s …

Hackers Can Inject Malicious Code into Antivirus Processes to Create a Backdoor

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new technique enables attackers to exploit antivirus software by injecting harmful code directly into the antivirus processes. This approach makes it easier for them to evade detection and compromise the security that antivirus software is designed to provide. This …

Microsoft Defender Vulnerabilities Allow Attackers to Bypass Authentication and Upload Malicious Files

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Critical flaws uncovered in the network communication between Microsoft Defender for Endpoint (DFE) and its cloud services, allowing post-breach attackers to bypass authentication, spoof data, disclose sensitive information, and even upload malicious files to investigation packages. These vulnerabilities, detailed in …

Microsoft Fixes Long-standing Windows 11 ‘Update and Shut down’ Bug

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has rolled out a fix in its latest preview builds to resolve a notorious glitch with the “update and shut down” feature. This long-standing issue, which has haunted the operating system for years, tricked users into believing their PCs were powering off when updates were pending, only for the machines to restart unexpectedly and disrupt sleep cycles with noisy fans. The …

5 Immediate Steps to be Followed After Clicking on a Malicious Link

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Clicking on a malicious link can quickly turn your device into a security risk. Just seconds after clicking, your browser might start downloading malware, taking advantage of weaknesses, or sending you to fake websites that try to steal your personal …

Hackers Attacking Remote Desktop Protocol Services from 100,000+ IP Addresses

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A massive, coordinated botnet campaign is actively targeting Remote Desktop Protocol (RDP) services across the United States. Security firm GreyNoise reported on October 8, 2025, that it has been tracking a significant wave of attacks originating from over 100,000 unique …

New Kali Tool llm-tools-nmap Uses Nmap For Network Scanning Capabilities

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Along with the release of Kali Linux 2025.3, a major update introduces an innovative tool that combines artificial intelligence and cybersecurity: the llm-tools-nmap. A new experimental plugin, llm-tools-nmap, has been released, providing Simon Willison’s command-line Large Language Model (LLM) tool with …