Cisco Firewall 0-day Vulnerability Exploited in the Wild to Deploy Interlock Ransomware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

An active campaign by the Interlock ransomware group is exploiting a critical zero-day vulnerability (CVE-2026-20131) in Cisco Secure Firewall Management Center (FMC) Software. Cisco disclosed the flaw on March 4, 2026; it allows unauthenticated remote attackers to execute arbitrary Java …

New iOS Exploit With Advanced iPhone Hacking Tools Attacking Users to Steal Personal Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

DarkSword iOS Exploit A sophisticated full-chain iOS exploit kit dubbed DarkSword, actively deployed by multiple commercial surveillance vendors and state-sponsored threat actors since at least November 2025 to steal sensitive personal data from iPhone users across four countries. DarkSword is a …

The High Cost of Slow Triage: How to Make Tier 1 the Fastest Layer in Your SOC 

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Turn Tier 1 Into Your Fastest SOC Layer Why do so many SOCs still struggle to move quickly even with strong detection tools in place? In many cases, the real bottleneck is Tier 1 triage. When alerts take too long …

OpenAI Launches GPT-5.4 Mini and Nano to Provide Answers 2X Faster

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

OpenAI Launches GPT-5.4 Mini and Nano OpenAI has officially launched GPT-5.4 mini and GPT-5.4 nano, releasing its most capable small models designed to handle high-volume, latency-sensitive workloads. The new mini iteration offers a significant performance upgrade over the previous GPT-5 …

UIDAI Launches Bug Bounty Programme to Strengthen Aadhaar Security

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

UIDAI Bug Bounty Programme Strengthen Aadhaar Security The Unique Identification Authority of India (UIDAI) has officially launched its first structured Bug Bounty Programme. This initiative aims to enhance the security posture of the Aadhaar ecosystem, which serves as the foundational …

Apple WebKit Vulnerability Enables Malicious Web Content Bypass on iOS and macOS

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Apple WebKit Vulnerability Enables Malicious Web Content Bypass on iOS and macOS Apple has released critical security patches to address a high-severity WebKit vulnerability that allows maliciously crafted web content to bypass the Same Origin Policy. Released on March 17, …

New Malware Campaigns Turn Network Devices Into DDoS Nodes and Crypto-Mining Bots

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Network security has taken another hard hit. Two previously unknown malware strains have emerged, quietly turning routers, IoT devices, and enterprise network equipment into weapons for large-scale distributed denial-of-service (DDoS) attacks and cryptocurrency mining operations. These campaigns mark a clear …

FancyBear Server Exposure Reveals Stolen Credentials, 2FA Secrets and NATO-Linked Targets

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A serious operational security failure by Russian state-linked hacking group FancyBear has given security researchers an unusually clear view into an active espionage campaign targeting government and military organizations across Europe. On March 11, 2026, threat intelligence firm Hunt.io published …

Critical Telnetd Vulnerability Enables Remote Attacker to Execute Arbitrary Code via Port 23

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical buffer overflow vulnerability in the GNU Inetutils telnetd daemon. Tracked as CVE-2026-32746, this flaw allows an unauthenticated remote attacker to execute arbitrary code and gain root access to affected systems. The vulnerability requires zero user interaction and possesses …

ForceMemo Hijacks GitHub Accounts, Backdoors Hundreds of Python Repos via Force-Push

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new malware campaign tracked as ForceMemo is quietly compromising hundreds of GitHub accounts and injecting hidden malicious code into Python repositories, leaving almost no visible trace. The earliest confirmed infections date back to March 8, 2026, and the campaign …