North Korean Hackers Use Fake IT Worker Scheme to Infiltrate Companies and Evade Sanctions

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

North Korea has been running one of the most quietly effective cyber fraud operations in recent years. State-sponsored operatives working for the Pyongyang regime have been posing as legitimate remote IT workers to get hired by companies around the world, …

Hackers Abuse Fake Wallpaper App and YouTube Channel to Spread notnullOSX Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new macOS malware called notnullOSX has surfaced in early 2026, specifically built to steal cryptocurrency from Mac users who hold digital assets worth more than $10,000. The threat is real, active, and carefully constructed to look completely legitimate at …

Fake TradingView AI Agent Site is Delivering Needle Stealer Malware via Fake TradingClaw

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new malware campaign is tricking traders into downloading a data-stealing tool by impersonating the popular financial platform TradingView. Attackers set up a fake website promoting something called TradingClaw, which they describe as an AI-powered trading assistant. Once a visitor …

Hackers Use Outlook Mailboxes to Hide Linux GoGra Backdoor Communications

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A nation-state-linked hacking group has found a clever way to hide its malicious activity inside Microsoft Outlook mailboxes, making its attacks much harder to detect by standard security tools. The Harvester APT group, believed to be a nation-state-backed threat actor …

Microsoft Teams Rolls Out Efficiency Mode to Optimize Performance on Low-End Devices

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft is set to introduce Efficiency Mode in Microsoft Teams, a performance-enhancing feature designed to improve app responsiveness and meeting quality on hardware-constrained devices. The rollout begins in early May 2026 and is expected to be completed by mid-May 2026, …

Vercel Confirms Security Breach – Set of Customer Account Compromised

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Web infrastructure platform Vercel has disclosed a significant security incident involving unauthorized access to internal systems, tracing the attack chain back to a compromise of Context.ai, a third-party AI productivity tool used by one of its employees. Vercel first published …

New Tropic Trooper Attack Uses Custom Beacon Listener and VS Code Tunnels for Remote Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated cyberattack campaign linked to the well-known threat group Tropic Trooper has recently surfaced, leveraging military-themed document lures to target Chinese-speaking individuals in Taiwan, along with individuals in South Korea and Japan. The campaign was discovered on March 12, …

Critical Pack2TheRoot Vulnerability Let Attackers Gain Root Access or Compromise the System

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A high-severity privilege escalation vulnerability, dubbed Pack2TheRoot (CVE-2026-41651, CVSS 3.1: 8.8), has been publicly disclosed by Deutsche Telekom’s Red Team, affecting multiple major Linux distributions in their default installations. The flaw allows any local unprivileged user to silently install or …

Apple Fixes Notification Privacy Flaw That Allowed FBI to Access Deleted Signal Messages

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Apple released iOS 26.4.2 and iPadOS 26.4.2 on April 22, 2026, to patch a critical notification privacy vulnerability that allowed law enforcement to extract Signal message content from iPhones — even after the app had been deleted. The flaw, tracked …

Checkmarx KICS Official Docker Repo Compromised to Inject Malicious Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A significant supply chain attack targeting the official checkmarx/kics Docker Hub repository, where threat actors pushed trojanized images capable of harvesting and exfiltrating sensitive developer credentials and infrastructure secrets. Docker’s internal monitoring flagged suspicious activity around KICS image tags on …