ShinyHunters Claims Credit for Cyber-Attack on Online Learning Management System

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 20, 2026 A recent cyberattack targeting an online Learning Management System (LMS) has been attributed to the notorious cybercriminal group ShinyHunters. The incident caused widespread service disruptions affecting educational institutions and students across the United States, although the platform …

GitHub Source Code Breach – TeamPCP Claims Access to Internal Source Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 20, 2026 A notorious threat actor operating under the alias TeamPCP claims to have breached GitHub’s internal systems, allegedly exfiltrating proprietary organization data and source code. The attackers are offering the stolen dataset for sale on underground cybercrime forums, demanding offers …

UAC-0184 Malware Chain Uses bitsadmin and HTA Files for Gated Payload Delivery

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 19, 2026 A newly documented attack chain linked to the threat group UAC-0184 has been observed using Windows’ built-in bitsadmin tool and HTA files to sneak malicious payloads onto targeted systems. The campaign is primarily aimed at Ukraine, with …

macOS Malware Installs Fake Google Software Update LaunchAgent for Persistence

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 19, 2026 macOS users are facing a new and sophisticated threat as a variant of the SHub infostealer malware, dubbed “Reaper,” has been observed deploying a fake Google Software Update LaunchAgent to maintain persistent access on infected machines. The …

The Gentlemen Ransomware Attacks Windows, Linux, NAS, BSD, and ESXi Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 19, 2026 A ransomware group called The Gentlemen has been quietly building one of the most aggressive cybercriminal operations seen in recent years. Emerging publicly in the second half of 2025, the group rapidly scaled its activity to become …

Kimsuky Hackers Use LNK and JSE Lures to Target Recruiters, Crypto Users, and Defense Officials

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 19, 2026 North Korea-linked hackers are at it again, and this time they are casting a wide net. The Kimsuky threat group, a well-known cyber espionage unit with ties to the DPRK, ran four separate spear-phishing campaigns in the …

Malware Campaign Uses JavaScript, PowerShell, and Shellcode to Deliver Crypto Clipper

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 19, 2026 A wave of well-crafted malware is quietly draining cryptocurrency from users across the globe, and the attackers behind it have gone to great lengths to stay hidden. Researchers have uncovered a large-scale campaign built around a multi-stage …

DirtyDecrypt Linux Kernel Vulnerability PoC Exploit Code Released

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 19, 2026 A working proof-of-concept (PoC) exploit for a high-severity Linux kernel local privilege escalation vulnerability dubbed DirtyDecrypt, also tracked as DirtyCBC, enables local attackers to gain full root access on affected systems. Security analyst Will Dormann technically attributes the flaw …

3 Tactics Elite SOCs Use to Operationalize Threat Intelligence

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 19, 2026 3 SOC Tactics for Threat Intelligence A data breach makes headlines for a day. The damage it leaves behind lasts years. Critical business risk isn’t one catastrophic moment — it’s a slow-motion erosion: dwell time compounding into …

Critical PostgreSQL Vulnerabilities Enables Code Execution and SQL Injections

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 19, 2026 The PostgreSQL Global Development Group has released critical security updates for all supported branches, fixing 11 vulnerabilities, including arbitrary code execution and several SQL injection flaws. PostgreSQL 18.4, 17.10, 16.14, 15.18, and 14.23 have been released as …