Chinese Companies Linked With Hackers Filed Patents Over 10+ Forensics and Intrusion Tools

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity researchers have uncovered more than 10 patents for highly intrusive forensics and data collection technologies filed by Chinese companies directly linked to state-sponsored hacking operations, according to a new report from SentinelLABS released this week. The patents, registered by …

Threat Actors Weaponizes LNK Files to Deploy RedLoader Malware on Windows Systems

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The cybersecurity landscape faces a renewed threat as the GOLD BLADE cybercriminal group has significantly evolved their attack methodology, combining previously observed techniques to create a sophisticated infection chain. This new campaign, which surged in July 2025, leverages malicious LNK …

20 Best Inventory Management Tools in 2025

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Inventory management tools streamline tracking and managing stock levels, orders, sales, and deliveries. It provides real-time visibility into inventory across multiple locations, ensuring accurate stock levels and reducing the risk of overstocking or stockouts. These tools often include features for …

Lenovo IdeaCentre and Yoga Laptop BIOS Vulnerabilities Let Attackers Execute Arbitrary Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Critical vulnerabilities in Lenovo’s IdeaCentre and Yoga All-In-One systems could allow privileged local attackers to execute arbitrary code and access sensitive system information.  The vulnerabilities affect InsydeH2O BIOS implementations used in specific Lenovo desktop and all-in-one computer models, with CVSS …

Hacker Arrested for Stealing Users Personal Data from Spanish Banks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Spanish authorities have successfully apprehended a sophisticated cybercriminal operating from Girona province, who allegedly orchestrated multiple data breaches targeting financial institutions, educational organizations, and private companies.  The arrest represents a significant victory in the ongoing fight against cybercrime in Spain, …

UNC2891 Threat Actors Hacked ATM Networks Using 4G Raspberry Pi Device

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A financially motivated threat group known as UNC2891 orchestrated a sophisticated attack on banking infrastructure by physically installing a 4G-equipped Raspberry Pi device directly into an ATM network, security researchers from Group-IB revealed this week. The campaign represents a rare …

Microsoft SharePoint Server 0-Day Hack Hits African Treasury, Companies, and University

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated cyberattack exploiting a zero-day vulnerability in Microsoft SharePoint servers has compromised over 400 entities globally, with significant impact across African nations including South Africa and Mauritius. The attack specifically targets on-premise SharePoint installations, exploiting previously unknown security flaws …

20 Best Kubernetes Monitoring Tools in 2025

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Kubernetes monitoring tools are essential for maintaining the health, performance, and reliability of Kubernetes clusters. These tools provide real-time visibility into the state of clusters, nodes, and pods, allowing administrators to identify and resolve issues quickly. They offer detailed metrics …

APT Hackers Attacking Maritime and Shipping Industry to Launch Ransomware Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The maritime industry, which facilitates approximately 90% of global trade, has emerged as a critical battleground for advanced persistent threat (APT) groups deploying sophisticated ransomware campaigns. This surge in cyber warfare represents a paradigm shift where state-sponsored hackers and financially …

Critical CrushFTP 0-Day RCE Vulnerability Technical Details and PoC Released

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A significant zero-day vulnerability in CrushFTP has been disclosed, allowing unauthenticated attackers to achieve complete remote code execution on vulnerable servers.  The flaw, tracked as CVE-2025-54309 and scoring a critical 9.8 on the CVSS scale, stems from a fundamental breakdown …