Windows 11 Notepad to Get AI Support for Free to Generate and Summarize Text

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft is integrating free, on-device artificial intelligence capabilities into the classic Notepad application for Windows 11 users with Copilot+ PCs. The update introduces powerful text generation and editing tools, including “Summarize,” “Write,” and “Rewrite,” without requiring a subscription. Windows 11 …

Hackers Injecting Malicious Code into GitHub Actions Workflows to Steal PyPI Publishing Tokens

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Attackers injected malicious code into GitHub Actions workflows in a widespread campaign to steal Python Package Index (PyPI) publishing tokens. While some tokens stored as GitHub secrets were successfully exfiltrated, PyPI administrators have confirmed that the platform itself was not …

Critical Microsoft’s Entra ID Vulnerability Allows Attackers to Gain Complete Administrative Control

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability in Microsoft’s Entra ID could have allowed an attacker to gain complete administrative control over any tenant in Microsoft’s global cloud infrastructure. The flaw, now patched, was discovered in July 2025 and has been assigned CVE-2025-55241. The …

Palo Alto Networks Acknowledges SquareX Research on Limitations of SWGs Against Last Mile Reassembly Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

SquareX first discovered and disclosed Last Mile Reassembly attacks at DEF CON 32 last year, warning the security community of 20+ attacks that allow attackers to bypass all major SASE/SSE solutions and smuggle malware through the browser. Despite responsible disclosures …

New ‘shinysp1d3r’ Ransomware-as-a-service in Active Development to Encrypt VMware ESXi Environments

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Emerging in mid-2025, the shinysp1d3r ransomware-as-a-service (RaaS) platform represents the next evolution of cloud-focused extortion tools. Unlike traditional ransomware that targets Windows endpoints or network file shares, shinysp1d3r is engineered specifically to infect and encrypt VMware ESXi hypervisors and their …

PureVPN Vulnerability Exposes Users IPv6 Address While Toggling Wi-Fi

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

PureVPN’s Linux clients leak users’ IPv6 addresses when Wi-Fi reconnections or system resumes occur, and also obliterate host firewall rules without restoring them upon disconnect.  This undermines privacy guarantees and leaves systems more exposed than before VPN use, with critical …

SonicWall Urges Customers to Reset Login Credentials After Configuration Backup Files Exposed

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

SonicWall has issued an urgent advisory urging all customers to perform an Essential Credential Reset after security researchers discovered that MySonicWall configuration backup files were inadvertently exposed on public storage.  The sensitive files contained encrypted passwords, pre-shared keys, and TLS …

BMW Allegedly Breached by Everest Ransomware Group, Internal Documents Reportedly Stolen

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The infamous Everest ransomware group has reportedly included Bayerische Motoren Werke AG (BMW) as a high-profile target, claiming the theft of a significant amount of critical internal documents from the German automotive manufacturer. According to information surfaced, Everest claims to …

Researchers Uncover Hidden Connections Between Ransomware Groups and Relationships Between Them

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In recent months, cybersecurity researchers have exposed a tangled web of hidden alliances among leading ransomware operations, reshaping how defenders perceive these threats. Historically treated as distinct entities—Conti, LockBit, Evil Corp, and others—ransomware groups have evolved into a dynamic marketplace …

Lessons Learned from Massive npm Supply Chain Attack Using “Shai-Hulud” Self-Replicating Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The JavaScript ecosystem experienced one of its most sophisticated and damaging supply chain attacks in September 2025, when a novel self-replicating worm dubbed “Shai-Hulud” compromised over 477 npm packages, marking the first successful automated propagation campaign in the npm registry’s history. …