Lionishackers Threat Actors Exfiltrating and Selling Corporate Databases on Dark Web

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A financially motivated threat actor known as Lionishackers has emerged as a significant player in the illicit marketplace for corporate data in recent months. Leveraging opportunistic targeting and a preference for Asian-based victims, the group employs automated SQL injection tools …

Chrome High-Severity Vulnerabilities Allows Memory Manipulation and Arbitrary Code Execution

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Google has issued an urgent security update for its Chrome browser, patching several vulnerabilities, including a high-severity vulnerability that could allow attackers to manipulate memory and execute arbitrary code on a user’s system. The latest version, Chrome 138.0.7204.183 for Linux …

Threat Actors Attacking Fans and Teams of Belgian Grand Prix With Phishing Campaigns

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals have launched a sophisticated multi-vector attack campaign targeting fans and teams ahead of the 2025 Belgian Grand Prix, scheduled for July 27 at the iconic Spa-Francorchamps circuit. The threat actors have deployed an arsenal of tactics including phishing emails, …

ArmouryLoader Bypassing System Security Protections and Inject Malicious Codes

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

ArmouryLoader burst onto the threat landscape in late 2024 after hijacking the export table of ASUS’s Armoury Crate utility, turning a trusted gaming companion into an initial entry point for sophisticated malware campaigns. Since then, security teams have watched a …

Want To Detect Incidents Before It’s Too Late? You Need Threat Intelligence

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The difference between a minor security incident and a devastating breach often comes down to one critical factor: how quickly you can detect and respond to a threat. Hackers rarely target an isolated business: they typically launch campaigns that hit …

Orange, France’s Leading Telecom Gaint Hit by Cyberattack – Internal Systems Affected

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

France’s leading telecommunications giant Orange confirmed on Monday that it detected a significant cyberattack targeting one of its information systems on Friday, July 25, 2025. The incident has resulted in widespread service disruptions affecting both corporate customers and consumer services, …

Chinese Hackers Weaponizes Software Vulnerabilities to Compromise Their Targets

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Over the past year, a previously quiet Chinese threat cluster has surged onto incident-response dashboards worldwide, pivoting from single zero-day hits to an industrialized pipeline of weaponized vulnerabilities. First detected targeting unpatched Fortinet SSL-VPN appliances in late-2024, the group—dubbed “Goujian …

Microsoft Teams New Meeting Join Bar Reminds You to Join Meeting On-time

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft Teams is rolling out a significant enhancement to its meeting experience with the introduction of a new meeting join banner designed to streamline user access to scheduled meetings.  The feature, identified by message code MC1115979, represents Microsoft’s continued effort …

Critical CodeIgniter Vulnerability Exposes Million of Webapps to File Upload Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security vulnerability has been discovered in CodeIgniter4’s ImageMagick handler, exposing potentially millions of web applications to command injection attacks through malicious file uploads.  The vulnerability, tracked as CVE-2025-54418, received a CVSS score of 9.8, indicating the highest severity …

SonicWall SMA100 Series N-day Vulnerabilities Technical Details Revealed

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Multiple critical vulnerabilities affecting SonicWall’s SMA100 series SSL-VPN appliances, highlighting persistent security flaws in network infrastructure devices.  The vulnerabilities, designated CVE-2025-40596, CVE-2025-40597, and CVE-2025-40598, demonstrate fundamental programming errors that enable pre-authentication attacks against firmware version 10.2.1.15. Key Takeaways 1. Stack …