New STX RAT Uses Hidden Remote Desktop and Infostealer Features to Evade Detection

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A newly discovered remote access trojan called STX RAT has emerged as a serious cybersecurity threat in 2026, combining hidden remote desktop access with credential-stealing features to quietly compromise targeted machines. The malware gets its name from the Start of …

Hackers Use Fake Security Software to Deliver LucidRook Malware in Taiwan Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A newly identified malware called LucidRook has been spotted targeting organizations across Taiwan, hiding inside what appears to be legitimate security software. The attackers went out of their way to make it look convincingly real, forging the icon and application …

Hackers Impersonate Linux Foundation Leader in Slack to Target Open Source Developers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Open source developers are facing a growing and sophisticated threat — one that does not rely on complex exploits or hidden vulnerabilities but instead uses something far simpler: trust. A social engineering campaign is actively targeting developers through Slack, where …

CISA Warns of Critical Ivanti EPMM Code Injection Vulnerability Exploited in Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent warning regarding a critical security flaw in Ivanti Endpoint Manager Mobile (EPMM). The agency recently added this flaw, tracked as CVE-2026-1340, to its Known Exploited Vulnerabilities (KEV) catalog after …

GitLab Patches Multiple Vulnerabilities That Enables DoS and Code Injection Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

GitLab has released urgent security updates (versions 18.10.3, 18.9.5, and 18.8.9) for its Community Edition (CE) and Enterprise Edition (EE) to address high-severity flaws that enable Denial-of-Service (DoS) and code-injection attacks. GitLab strongly advises all administrators of self-managed systems to …

Hackers Claim to Have Stolen 10 Petabytes of Data from China’s Tianjin Supercomputer Center

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hackers are claiming that one of China’s most strategically important computing facilities suffered a massive cyber intrusion, with more than 10 petabytes of sensitive information allegedly taken from a state-run supercomputing environment that experts suspect is the National Supercomputing Center …

Microsoft Suspends Developer Accounts of High-Profile Open-Source Projects

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has suspended the Windows Hardware Program developer accounts of two critical open-source security projects, VeraCrypt and WireGuard, blocking their ability to sign drivers and push updates to millions of Windows users, with no prior warning or explanation provided to …

New RoningLoader Campaign Uses DLL Side-Loading and Code Injection to Evade Detection

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A threat actor known as DragonBreath has launched a stealthy campaign using a multi-stage malware loader called RoningLoader. The malware targets Chinese-speaking users by disguising itself as trusted software such as Google Chrome and Microsoft Teams. Its core strength lies …

Critical Chrome Vulnerabilities Let Attackers to Execute Arbitrary Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Google has released Chrome 147 to the stable channel for Windows, Mac, and Linux, patching a sweeping set of security vulnerabilities — including two critical-severity flaws that could allow remote attackers to execute arbitrary code on targeted systems. The most …

New Silver Fox Campaign Hides ValleyRAT Inside Fake Telegram Chinese Language Pack Installer

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new malware campaign linked to the Silver Fox APT group has been discovered, using a fake Telegram Chinese language pack installer to secretly deliver ValleyRAT — a powerful remote access trojan — onto targeted machines. The malicious file, disguised …