Magento and Adobe SessionReaper Vulnerability Exposes Thousands of Online Stores to Automated Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The U.S. Department of the Treasury has unveiled a sweeping sanctions campaign against a network of cyber scam centers across Southeast Asia that collectively stole more than ten billion dollars from American victims in 2024. These operations, often masquerading as …

Zoom Security Update – Patch for Multiple Vulnerabilities in Clients for Windows and macOS

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Zoom released a security update addressing multiple vulnerabilities in its software, including Zoom Workplace and various clients for Windows and macOS. The patches cover one high-severity flaw and several medium-severity issues, prompting a strong recommendation for users to update their …

How a Faulty Windows Driver Can Cause a System Crash and Blue Screen of Death

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A recent analysis of a Windows kernel-memory dump has provided a detailed look into a DRIVER_POWER_STATE_FAILURE, a critical error that results in a Blue Screen of Death (BSOD). The investigation reveals how a single malfunctioning driver can cause a system-wide …

New Cyber Attack Weaponizes DeskSoft to Deploy Malware Leveraging RDP Access to Execute Commands

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated cyber attack has emerged targeting organizations through a malicious impersonation of DeskSoft’s legitimate EarthTime application, deploying multiple malware families in a coordinated ransomware operation. The attack represents a concerning evolution in threat actor tactics, demonstrating how legitimate software …

Jaguar Land Rover Extends Factory Shutdown Following Cyber Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Jaguar Land Rover (JLR) has extended the shutdown of its UK factories until at least Wednesday, more than a week after a significant cyber attack crippled its operations. The production halt, which began after the company detected the breach on …

Top 10 Best External Penetration Testing Companies in 2025

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

External penetration testing is a crucial practice for any organization aiming to validate its security posture against real-world threats. In 2025, with the proliferation of cloud services, SaaS applications, and remote work, an organization’s external attack surface is larger and …

New Malware Attack Leveraging Exposed Docker APIs to Maintain Persistent SSH Root Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated malware strain targeting exposed Docker APIs has emerged with enhanced infection capabilities that go beyond traditional cryptomining operations. The threat, discovered in August 2025, demonstrates evolved tactics designed to establish persistent root access while denying other attackers access …

SAP Security Patch Day September 2025 – 21 Vulnerabilities and 4 Critical One’s Patched

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

As part of its scheduled security maintenance, SAP released its September 2025 Patch Day notes, addressing a total of 21 new vulnerabilities and providing updates to four previously released security advisories. Among the newly addressed flaws are four critical vulnerabilities …

MostereRAT Attacking Windows Systems With AnyDesk/TightVNC to Enable Remote Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Security researchers have uncovered a sophisticated campaign in recent weeks leveraging a novel Remote Access Trojan (RAT) dubbed MostereRAT that targets Windows systems by deploying legitimate remote access tools such as AnyDesk and TightVNC. The malware’s emergence represents a significant …

Magento and Adobe SessionReaper Vulnerability Exposes Thousands Of Online Stores to Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Adobe has issued an emergency security patch for a critical vulnerability in its Magento and Adobe Commerce platforms, dubbed “SessionReaper”. The vulnerability is considered one of the most severe in Magento’s history, prompting an out-of-band update on Tuesday, September 9th, …