UNG0002 Actors Deploys Weaponize LNK Files Using ClickFix Fake CAPTCHA Verification Pages

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated espionage campaign targeting multiple Asian jurisdictions has emerged, utilizing weaponized shortcut files and deceptive social engineering techniques to infiltrate high-value targets across China, Hong Kong, and Pakistan. The threat actor, designated UNG0002 (Unknown Group 0002), has demonstrated remarkable …

Armenian Hacker Extradited to U.S. After Ransomware Attacks on Tech Firms

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

An Armenian national has been extradited from Ukraine to the United States to face federal charges for his alleged involvement in a series of Ryuk ransomware attacks and an extortion conspiracy that targeted U.S. companies, including a technology firm in …

UK Retailer Co-op Confirms 6.5 Million Members’ Data Stolen in Massive Cyberattacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Co-op has confirmed that all 6.5 million members of the UK retail cooperative had their personal data compromised during a sophisticated cyberattack in April.  The breach, which affected names, addresses, and contact information, represents one of the largest data exfiltrations …

Iranian Threat Actors Leveraging AI-Crafted Emails to Target Cybersecurity Researchers and Academics

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Iranian state-sponsored threat actors have significantly escalated their cyber operations, employing sophisticated artificial intelligence-enhanced phishing campaigns to target cybersecurity researchers and academic institutions across Western nations. The campaign, primarily attributed to APT35 (also known as Charming Kitten and Magic Hound), …

NVIDIA Container Toolkit Vulnerability Allows Elevated Arbitrary Code Execution

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

NVIDIA has released critical security updates addressing two significant vulnerabilities in its Container Toolkit and GPU Operator that could allow attackers to execute arbitrary code with elevated permissions.  The vulnerabilities, identified as CVE-2025-23266 and CVE-2025-23267, affect all platforms running NVIDIA …

1-Click Oracle Cloud Code Editor RCE Vulnerability Lets Attackers Upload Malicious Files

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical Remote Code Execution (RCE) vulnerability in Oracle Cloud Infrastructure (OCI) Code Editor that allowed attackers to silently hijack victim Cloud Shell environments through a single click.  The vulnerability, now remediated, affected Code Editor’s integrated services, including Resource Manager, …

GhostContainer Malware Hacking Exchange Servers in the Wild Using N-day Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A highly sophisticated malware campaign targeting Microsoft Exchange servers in government and high-tech organizations across Asia.  The malware, dubbed GhostContainer, exploits known N-day vulnerabilities to establish persistent backdoor access to critical infrastructure. Key Takeaways 1. GhostContainer uses CVE-2020-0688 vulnerability to …

DOGE Denizen Marko Elez Leaked API Key for xAI

Blog WriterCybersecurity News - Original News Source is krebsonsecurity.com

Marko Elez, a 25-year-old employee at Elon Musk’s Department of Government Efficiency (DOGE), has been granted access to sensitive databases at the U.S. Social Security Administration, the Treasury and Justice departments, and the Department of Homeland Security. So it should …

UK Arrests Four in ‘Scattered Spider’ Ransom Group

Blog WriterCybersecurity News - Original News Source is krebsonsecurity.com

Authorities in the United Kingdom this week arrested four people aged 17 to 20 in connection with recent data theft and extortion attacks against the retailers Marks & Spencer and Harrods, and the British food retailer Co-op Group. The breaches …

Microsoft Patch Tuesday, July 2025 Edition

Blog WriterCybersecurity News - Original News Source is krebsonsecurity.com

Microsoft today released updates to fix at least 137 security vulnerabilities in its Windows operating systems and supported software. None of the weaknesses addressed this month are known to be actively exploited, but 14 of the flaws earned Microsoft’s most-dire …