Oracle Issues Urgent Security Update for Critical RCE Flaw in Identity Manager and Web Services Manager

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Oracle has issued an out-of-band Security Alert addressing a critical remote code execution (RCE) vulnerability, CVE-2026-21992, affecting two widely deployed Fusion Middleware components, Oracle Identity Manager and Oracle Web Services Manager. The vulnerability carries a CVSS 3.1 base score of …

Anthropic Launches Projects Feature for Claude Cowork Desktop

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Anthropic is expanding Claude Cowork Desktop with a new Projects feature designed to keep files, instructions, and task context organized inside a single workspace. For paid users, the update makes it easier to start from scratch, import an existing chat, …

Windows 11 March Update Breaks Microsoft Teams and OneDrive Sign-Ins

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Windows 11 March Update Breaks Teams Microsoft has acknowledged a significant bug introduced by its March 2026 cumulative update that is preventing users from signing into Microsoft Teams Free, OneDrive, and several other Microsoft applications on Windows 11 devices. The …

Hackers Compromised 7,500+ Magento Websites to Upload Hidden Malicious Files and Steal Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sweeping cyberattack campaign has compromised more than 7,500 Magento-powered e-commerce websites since late February 2026, with attackers uploading hidden malicious files into publicly accessible web directories across thousands of domains. The attack has spread to over 15,000 hostnames, affecting …

New VoidStealer Variant Bypasses Chrome ABE Without Injection or Privilege Escalation

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A newly identified variant of the VoidStealer infostealer has drawn serious attention from the security community after it became the first malware known to bypass Google Chrome’s Application-Bound Encryption (ABE) without requiring code injection or elevated system privileges. The variant, …

Perseus Android Malware Steals User Notes and Enables Full Device Takeover

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new Android banking trojan named Perseus has emerged in the wild, representing the next step in the ongoing evolution of mobile malware. Built on the leaked source code of Cerberus and drawing directly from the Phoenix codebase, Perseus refines …

FBI, Thai Partners Target Southeast Asia Scam Centers Behind Cyber Fraud on Americans

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The fraud rarely announces itself. It begins with a friendly message on social media, a wrong-number text that turns into a conversation, or a romantic connection that slowly builds over weeks. For tens of thousands of Americans, those innocent interactions …

Microsoft Unveils New Teams Optimizations for Windows App on iOS & Android

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft New Teams Optimizations Windows App on iOS & Android Microsoft has officially announced the general availability of new Microsoft Teams optimizations for the Windows App on both iOS and Android platforms. Released on March 18, 2026, this update introduces …

CISA Warns of Cisco Secure Firewall Management Center 0-Day Exploited in Ransomware Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

CISA Warns Cisco Secure Firewall Management Center 0-Day Exploit An urgent warning highlights a critical zero-day in Cisco products, now added to the CISA Known Exploited Vulnerabilities Catalog after active exploitation in ransomware campaigns. Network defenders and security administrators are …

Ransomware Actors Expand EDR Killer Tactics Beyond Vulnerable Drivers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Ransomware attackers have widened their approach to defeating endpoint security, moving well past the technique of exploiting vulnerable drivers. For years, the Bring Your Own Vulnerable Driver (BYOVD) method was the primary way attackers disabled security tools before launching their …