SIM Swapping Attacks on the Rise – How eSIM can Make SIM Swapping Harder

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The telecommunications landscape is facing an unprecedented crisis as SIM swapping attacks surge to alarming levels, with the United Kingdom alone reporting a staggering 1,055% increase in incidents during 2024, jumping from just 289 cases in 2023 to nearly 3,000 …

Microsoft Urges OEM Manufacturers to Fix Windows 11 USB-C Notification issues

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft is issuing a direct call to its hardware partners, urging original equipment manufacturers (OEMs) to address configuration issues that prevent crucial USB-C troubleshooting notifications from functioning correctly in Windows 11. These built-in alerts are designed to enhance user experience …

Microsoft To Mandate MFA for Accounts Signing In to the Azure Portal

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In a significant security move, Microsoft announced on August 26, 2025, that it will require mandatory multifactor authentication (MFA) for all accounts signing in to the Azure portal and related administrative centers. The policy, first introduced in 2024, aims to …

Critical Next.js Framework Vulnerability Let Attackers Bypass Authorization

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A newly discovered critical security vulnerability in the Next.js framework, designated CVE-2025-29927, poses a significant threat to web applications by allowing malicious actors to completely bypass authorization mechanisms.  This vulnerability arises from improper handling of the x-middleware-subrequest header within Next.js …

New Large-Scale Phishing Attacks Targets Hotelier Via Ads to Gain Access to Property Management Tools

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A novel phishing campaign emerged in late August 2025 that specifically targeted hoteliers and vacation rental managers through malicious search engine advertisements. Rather than relying on mass email blasts or social media lures, attackers purchased sponsored ads on platforms such …

MediaTek Security Update – Patch for Multiple Vulnerabilities Across Chipsets

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

MediaTek today published a critical security bulletin addressing several vulnerabilities across its latest modem chipsets, urging device OEMs to deploy updates immediately.  The bulletin, issued two months after confidential OEM notification, confirms that no known in-the-wild exploits have been detected …

Salesforce Releases Forensic Investigation Guide Following Chain of Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Salesforce today unveiled its comprehensive Forensic Investigation Guide, equipping organizations with best practices, log analysis techniques, and automation workflows to detect and respond to sophisticated security breaches rapidly.  To reconstruct attack timelines and assess data exposure, the guide emphasizes three …

Hackers Leverage Built-in MacOS Protection Features to Deploy Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

macOS has long been recognized for its robust, integrated security stack, but cybercriminals are finding ways to weaponize these very defenses.  Recent incidents show attackers exploit Keychain, SIP, TCC, Gatekeeper, File Quarantine, XProtect, and XProtect Remediator to stealthily deliver malicious …

Hackers Abuse Legitimate Email Marketing Platforms to Disguise Malicious Links

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals are increasingly exploiting legitimate email marketing platforms to launch sophisticated phishing campaigns, leveraging the trusted reputation of these services to bypass security filters and deceive victims. This emerging threat vector represents a significant evolution in phishing tactics, where attackers …

Food Delivery Robots Can Be Hacked to Deliver Meals to Your Table Instead of the Intended Customers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

You may have seen them in restaurants, cat-faced robots gliding between tables, delivering plates of food. These robots, many of them made by Pudu Robotics, the world’s largest commercial service robotics company, are part of a growing fleet of automated …