Microsoft, SentinelOne, and Palo Alto Networks Withdraw from 2026 MITRE ATT&CK Evaluations

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Three of the cybersecurity industry’s most prominent vendors, Microsoft, SentinelOne, and Palo Alto Networks, have announced they will not participate in the 2026 MITRE ATT&CK Evaluations. The coordinated withdrawal marks a significant shift in how leading security companies approach independent product validation, …

Lucid PhaaS With 17,500 Phishing Domains Mimics 316 Brands From 74 Countries

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The cybersecurity landscape faces a growing threat from sophisticated Phishing-as-a-Service (PhaaS) platforms that are democratizing cybercrime by lowering technical barriers for fraudsters worldwide. Among these emerging threats, the Lucid PhaaS platform has established itself as a formidable force in the …

Windows 11 24H2 Update KB5064081 Breaks Video Content Playback

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A recent optional update for Windows 11 version 24H2 is causing significant video playback issues for users with certain media applications. Microsoft has confirmed that the update, released in late August, can prevent protected content from playing correctly on Blu-Ray, …

Top 10 Best Autonomous Endpoint Management Tools in 2025

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In 2025, organizations demand robust, intelligent solutions to manage, secure, and optimize their growing endpoint fleets. With cyber threats escalating and workforces becoming more distributed, the need for autonomous endpoint management tools has never been greater. These platforms automate device …

Stellantis, the Maker of Citroën, FIAT, Jeep, and Other Cars, Confirms Data Breach

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Automotive giant Stellantis, the parent company of major brands including Citroën, FIAT, Jeep, Chrysler, and Peugeot, has confirmed a data breach affecting its customers in North America. The company announced on Sunday that it detected unauthorized access to the platform …

New Inboxfuscation Tool That Bypasses Microsoft Exchange Inbox Rules and Evade Detection

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Attackers increasingly exploit Microsoft Exchange inbox rules to maintain persistence and exfiltrate data within enterprise environments.  A newly released tool, Inboxfuscation, leverages Unicode-based obfuscation to craft malicious inbox rules that slip past conventional security controls.  Developed by Permiso, the Inboxfuscation …

Chrome Type Confusion 0-Day Vulnerability Code Analysis Released

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Google Chrome’s V8 JavaScript engine has been compromised by a critical type confusion zero-day vulnerability, designated CVE-2025-10585, marking the sixth actively exploited Chrome zero-day discovered in 2025.  This high-severity flaw, with an estimated CVSS 3.1 score of 8.8, enables remote …

Canada Police Dismantles TradeOgre Platform That Stolen 56 Million Dollars in Cryptocurrency

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Canada’s law enforcement community has achieved a landmark victory in the fight against illicit finance with the dismantling of TradeOgre, a Tor-based cryptocurrency exchange that facilitated the theft and laundering of over 56 million dollars in digital assets. Emerging in …

Threat Actors Impersonate FBI IC3 Website to Steal The Visitors’ Personal Information

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated spoofing campaign has emerged targeting the Federal Bureau of Investigation’s Internet Crime Complaint Center (IC3). Beginning in mid-September 2025, victims attempting to access IC3’s official portal were redirected to fraudulent domains crafted to mirror the legitimate site. The …

Threat Actors Attacking ICS Computers With Malicious Scripts and Phishing Pages

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Industrial automation systems have become the latest battleground for sophisticated cybercriminals who are deploying cleverly crafted malicious scripts and phishing pages to compromise ICS computers. Over the first half of 2025, attackers have increasingly shifted to web-based attack vectors, exploiting …