Litecoin Zero-Day Vulnerability Exploited in DoS Attack, Disrupts Major Mining Pools

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

April 26, 2026 A critical zero-day vulnerability in the Litecoin network was actively exploited to launch a denial-of-service (DoS) attack, temporarily disrupting operations across major mining pools before developers issued a full patch. Security researchers confirmed the flaw allowed threat …

New Windows RPC Vulnerability Lets Attackers Escalate Privileges Across All Windows Versions

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

PhantomRPC, a newly identified architectural vulnerability in Windows Remote Procedure Call (RPC) that enables local privilege escalation to SYSTEM-level access, potentially affecting every version of Windows. The research was presented by Kaspersky application security specialist Haidar Kabibo at Black Hat …

CISA Warns of Multiple SimpleHelp Vulnerabilities Exploited in Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

April 25, 2026 The Cybersecurity and Infrastructure Security Agency (CISA) has issued a critical alert regarding two actively exploited vulnerabilities in SimpleHelp remote support software. Remote access tools are highly valued targets for cybercriminals because they provide direct pathways into …

Claude AI Agents Close 186 Deals in Anthropic’s Marketplace Experiment

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

April 25, 2026 Anthropic’s “Project Deal” has demonstrated that AI agents can autonomously negotiate and close real-world transactions, but the experiment also surfaced a quiet, troubling asymmetry: not all AI representations are created equal. In December 2025, Anthropic transformed its …

GPT‑5.5 Bio Bug Bounty to Strengthen Advanced AI Capabilities

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

OpenAI has announced a new Bio Bug Bounty program for GPT-5.5 as part of its efforts to improve safety controls for advanced AI systems and to address misuse in biology. The initiative invites qualified researchers to test whether GPT-5.5 can …

Hackers Can Abuse Entra Agent ID Administrator Role to Hijack Service Principals

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical scope overreach vulnerability was recently identified in the Microsoft Entra Agent Identity Platform. The newly introduced Agent ID Administrator role allowed accounts to hijack arbitrary service principals and escalate privileges across the entire tenant. Microsoft has fully patched …

ADT Confirms Data Breach Following ShinyHunters Data Leak Claim

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Home security giant ADT Inc. has confirmed a data breach after the notorious threat group ShinyHunters claimed to have stolen over 10 million records and issued a ransom ultimatum — “Pay or Leak.” ADT, headquartered in Boca Raton, Florida, disclosed …

Hackers Exploiting Cisco Firepower Devices’ Using n-day Vulnerabilities to Gain Unauthorized Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

State-sponsored threat actors are actively targeting Cisco Firepower devices by chaining known vulnerabilities to deploy a highly customized backdoor. Cisco Talos recently discovered that the espionage-focused threat group UAT-4356 is exploiting two n-day vulnerabilities, tracked as CVE-2025-20333 and CVE-2025-20362, to …

Claude Desktop Reportedly Adds Browser Access Bridge to Multiple Chromium-Based Browsers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A recent technical audit by privacy researcher Alexander Hanff has revealed that Anthropic’s Claude Desktop application for macOS silently installs a Native Messaging bridge into the directories of several Chromium-based browsers. This undocumented behavior occurs without user consent, raising significant …

Hackers Use Fake CAPTCHA Pages to Trigger Costly International SMS Fraud

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Most internet users are familiar with CAPTCHA tests, simple challenges like selecting traffic lights or typing distorted letters to confirm they are human. But cybercriminals have found a way to weaponize this process. Hackers are now building fake CAPTCHA pages …