OpenAI Codex Desktop App for macOS Vulnerability Allows Attackers to Inject Indirect Prompt

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 7, 2026 A newly disclosed vulnerability in the OpenAI Codex desktop application for macOS could allow attackers to exploit indirect prompt injection techniques to exfiltrate sensitive data, according to …

Cavern Manticore Abuses SysAid RMM and WinDirStat DLL Sideloading to Deploy C2 Framework

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new Iranian-linked hacking group has been caught abusing everyday IT tools to slip malware onto Israeli networks. Researchers have named the group Cavern Manticore, and its latest campaign shows …

Tenda Authentication Backdoor Grants Attackers Full Administrative Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 7, 2026 A newly disclosed vulnerability in Tenda network devices exposes a critical authentication backdoor that allows attackers to gain full administrative access without valid credentials. The flaw affects …

Critical BeyondTrust Flaws Let Attackers Bypass Access Controls and Gain Unauthorized Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 7, 2026 BeyondTrust has disclosed multiple critical and high-severity vulnerabilities affecting its Remote Support (RS) and Privileged Remote Access (PRA) solutions, potentially allowing attackers to bypass access controls and …

Windows Device Identifier Used to Arrest Scattered Spider Hacking Group Member

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 7, 2026 A persistent Microsoft device identifier was used to unravel the anonymity of an alleged Scattered Spider operator, according to a federal superseding complaint filed in the Northern …

Fast-mcp-telegram Vulnerability Allow Attackers to Access Sensitive Files

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 7, 2026 A critical security flaw has been discovered in the fast-mcp-telegram package that could allow remote attackers to access sensitive Telegram session data and perform unauthorized actions. The vulnerability, tracked …

Top 10 Best Next-Generation Firewall (NGFW) Solutions in 2026 

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Best Next-Generation Firewall (NGFW) Solutions If you’re shortlisting the best next-generation firewall for 2026, Palo Alto Networks’ PA-Series is our top overall pick for its App-ID application control and machine-learning …