Microsoft Releases Out-of-Band Update KB5078127 to Fix Windows 11 File System and Outlook Freezes

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

An out-of-band (OOB) cumulative update, KB5078127, to address critical file system compatibility issues affecting Windows 11 users. The update resolves widespread problems introduced by the January 13, 2026, security update (KB5074109) that caused application freezes and cloud storage failures across …

48M Gmail, 6.5M Instagram Exposed Online From Unprotected Database

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A massive database containing 149 million stolen login credentials was discovered exposed online without password protection or encryption. Posing serious security risks to users of Gmail, Instagram, Facebook, Netflix, and thousands of other platforms worldwide. The publicly accessible database contained …

Attackers Targeting Construction Firms Exploiting Mjobtime App Vulnerability Using MSSQL and IIS POST Request

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Attackers are increasingly turning their attention to construction firms by abusing weaknesses in business software that runs on their job sites. One of the newest targets is the Mjobtime construction time-tracking application, which is often deployed on Microsoft IIS with …

Threat Actors Fake BSODs and Trusted Build Tools to Bypass Defenses and Deploy DCRat

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new malware campaign is exploiting fake Blue Screen of Death warnings and trusted Microsoft build tools to deliver a dangerous remote access trojan. The operation, tracked as PHALT#BLYX, targets hospitality businesses with deceptive reservation cancellation emails that manipulate victims …

Microsoft Investigating Boot Failure Issues With Windows 11, version 25H2 Following January Update

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has launched an urgent investigation into severe stability issues plaguing the January 2026 security update for Windows 11, following reports that the patch is causing critical boot failures on physical devices. The update, identified as KB5074109, was intended to …

Hackers Use ‘rn’ Typo Trick to Impersonate Marriott in New Phishing Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated “homoglyph” phishing campaign targeting customers of Marriott International and Microsoft. Attackers are registering domains that replace the letter “m” with the combination “rn” (r + n), creating fake websites that look nearly identical to the real ones. This …

CISA Warns of Critical VMware vCenter RCE Vulnerability Now Exploited in Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Cybersecurity and Infrastructure Security Agency (CISA) has added a critical vulnerability affecting Broadcom’s VMware vCenter Server to its Known Exploited Vulnerabilities (KEV) catalog. This addition confirms that active exploitation of CVE-2024-37079 has been detected in the wild, posing a …

Microsoft Teams to Share your Location With Your Employer Soon Based on Wi-Fi Network

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft is preparing to deploy a significant, potentially controversial update to Microsoft Teams that automatically detects and displays a user’s physical work location based on the Wi-Fi network they connect to. According to the latest update on the Microsoft 365 …

Threat Actors Leverage SharePoint Services in Sophisticated AiTM Phishing Campaign

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft Defender researchers have exposed a sophisticated adversary-in-the-middle (AiTM) phishing campaign targeting energy sector organizations through SharePoint file-sharing abuse. The multi-stage attack compromised multiple user accounts and evolved into widespread business email compromise (BEC) operations across several organisations. Initial Compromise …

Microsoft Launches Open-Source WinApp CLI to Streamline Windows App Development

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has unveiled the public preview of WinApp CLI (winapp), a new open-source command-line tool designed to simplify Windows app development for developers using diverse frameworks outside Visual Studio or MSBuild. Hosted on GitHub, the tool targets web devs with …