Critical Microsoft Office Vulnerability Enables Remote Code Execution Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft Office Vulnerability On March 10, 2026, Microsoft released security updates to address a critical vulnerability in its widely used Office suite. Tracked as CVE-2026-26110, this security flaw allows an unauthorized attacker to execute malicious code on a victim’s device. …

GitLab Security Update – Patch for XSS and API DoS Vulnerabilities

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

GitLab Security Update Patch XSS and API DoS Vulnerabilities GitLab has released urgent security updates for its Community Edition (CE) and Enterprise Edition (EE) to address a wide range of vulnerabilities. The newly released versions 18.9.2, 18.8.6, and 18.7.6 fix …

Hackers Leveraging Cloudflare Anti-Bot Features to Steal Microsoft 365 Credentials

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated Microsoft 365 credential harvesting campaign that weaponizes Cloudflare’s own protective features to evade detection and silently steal user login data. The campaign demonstrates a growing and troubling trend: threat actors turning the very tools designed to defend websites …

Chrome Security Update – Patch for 29 Vulnerabilities that Allows Remote Code Execution

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Chrome Security Update Patch for 29 Vulnerabilities Google has officially released Chrome version 146 to the stable channel, delivering crucial security updates for Windows, Mac, and Linux users. Rolling out over the coming days, Chrome 146.0.7680.71 for Linux and 146.0.7680.71/72 …

Google Completes Acquisition of Wiz in Historic $32 Billion Deal

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Google has officially closed its $32 billion all-cash acquisition of Wiz, the Israeli cloud and AI security platform, marking the largest deal in Google’s history and a landmark moment for the global cybersecurity industry. The Wiz team will join Google …

Stryker Cyber Attack – Hackers Claim System Breach and Device Wipe

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Stryker Cyber Attack On March 11, 2026, the global medical technology giant Stryker experienced a severe cyberattack when Iranian-linked hackers used wiper malware to permanently erase data from its network. The breach severely impacted operations at its Cork headquarters and …

Iran’s Internet Blackout Surpasses 10 Days as Traffic Flatlines Below 1% of Normal Levels

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Iran’s internet blackout has now surpassed ten consecutive days, with Cloudflare Radar data confirming that HTTP traffic from the country remains well below 1% of pre-shutdown levels, effectively severing approximately 90 million Iranians from the global internet. The near-total blackout …

Microsoft Active Directory Domain Services Vulnerability Let Attackers Escalate Privileges

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

An “Important” security update released on March 10, 2026, addresses a high-severity flaw in Active Directory Domain Services (AD DS). Tracked as CVE-2026-25177, this vulnerability has a CVSS score of 8.8. It allows authorized network attackers to elevate their privileges …

Microsoft SQL Server Zero-Day Vulnerability Allows Attackers to Escalate Privileges

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has disclosed a critical zero-day vulnerability in SQL Server that allows authenticated attackers to escalate their privileges to the highest administrative level on affected database systems. Tracked as CVE-2026-21262, the flaw was officially released on March 10, 2026, and …

Fortinet Security Update – Patch for Multiple Vulnerabilities That Enable Malicious Command Execution

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Fortinet released a sweeping security advisory on March 10, 2026, addressing eleven vulnerabilities across its core enterprise products, including FortiManager, FortiAnalyzer, FortiSwitchAXFixed, and FortiSandbox. The flaws range from authentication bypasses and buffer overflows to OS command injection and SQL injection, …