30-Year-Old Libpng Vulnerability Exposes Millions of Systems to Code Execution Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

libpng Vulnerability Exposes Millions Apps A critical vulnerability has been uncovered in libpng, the official PNG reference library used by practically every operating system and web browser in existence. The flaw, assigned CVE-2026-25646, is a heap buffer overflow in the …

Threat Actor Claims Leak of Cybercrime-Focused AI Platform WormGPT Database

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

WormGPT Database Leak A threat actor operating under the alias Sythe has claimed responsibility for leaking the complete WormGPT database, a notorious cybercrime-focused artificial intelligence platform that has been sold on dark web forums since 2023. Hackmanac observed that the …

Microsoft Teams New Option Enables Users to Flag Malicious Messages

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Teams Malicious Messages Flag Microsoft is significantly expanding the threat detection capabilities within Microsoft Teams by granting Defender for Office 365 Plan 1 users the ability to report suspicious messages directly. This update, tracked under Roadmap ID 531760, marks a …

GuLoader Uses Polymorphic Code and Trusted Cloud Hosting to Evade Reputation-Based Defenses

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

GuLoader, also known as CloudEyE, has solidified its position as a persistent threat in the cybersecurity landscape since its emergence. Primarily functioning as a sophisticated downloader, it is designed to retrieve and execute secondary malware payloads, such as the Remcos …

AI Chat App Exposes 300 Million Messages from 25 Million Users

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

AI Chat App Exposes Messages The popular mobile application “Chat & Ask AI” has inadvertently exposed hundreds of millions of private user conversations. The app, which boasts over 50 million users across the Google Play and Apple App stores, failed …

Bloody Wolf Hackers Attacking Organizations to Deploy NetSupport RAT and Gain Remote Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Stan Ghouls, a cybercriminal group also known as Bloody Wolf, has launched a sophisticated wave of targeted attacks against organizations across Russia and Uzbekistan. Active since at least 2023, the group focuses heavily on the manufacturing, finance, and IT sectors. …

Augustus – Open-source LLM Vulnerability Scanner With 210+ Attacks Across 28 LLM Providers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Augustus LLM Vulnerability Scanner Augustus is a new open-source vulnerability scanner designed to secure Large Language Models (LLMs) against an evolving landscape of adversarial threats. Built by Praetorian, Augustus aims to bridge the gap between academic research tools and production-grade …

Chinese Hackers Attacking Singapore’s Telecommunications Sector to Compromise Edge Devices

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Singapore’s telecommunications sector has recently been the target of a highly sophisticated cyber espionage campaign orchestrated by the Advanced Persistent Threat (APT) group known as UNC3886. The details of this extensive intrusion were formally disclosed following Operation CYBER GUARDIAN, a …

15,200 OpenClaw Control Panels with Full System Access Exposed to the Internet

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

OpenClaw Control Panels Exposed A critical security failure in the rapidly adopting “agentic AI” ecosystem has left tens of thousands of personal and corporate AI assistants fully exposed to the public internet. New research released today by the SecurityScorecard STRIKE …

DPRK IT Workers Impersonating Individuals Using Real LinkedIn Accounts to Apply for Remote Roles

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The landscape of remote employment faces a persistent and evolving challenge as North Korean operatives refine their strategies to infiltrate global organizations. For years, these actors have sought remote information technology roles to generate revenue for the regime, often relying …