New Tool Released to Detect Cisco Secure Email Gateway 0-Day Vulnerability Exploited in the Wild

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A lightweight Python script to help organizations quickly identify exposure to CVE-2025-20393, a critical zero-day vulnerability in Cisco Secure Email Gateway (SEG) and Secure Malware Analytics (SMA), also known as Cisco Secure Email and Web Manager. The tool “Cisco SMA …

Microsoft Released Out-of-band Update to Fix MSMQ Bug that Impacts IIS Sites

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has deployed an emergency out-of-band update to address a significant issue with Message Queuing (MSMQ) functionality that emerged following the December 9 security patches. The update, released on December 18, 2025, targets Windows 10 versions 22H2 and 21H2 through …

Roundcube Vulnerabilities Allow Attackers to Execute Malicious Scripts

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Roundcube Webmail has released critical security updates addressing two significant vulnerabilities affecting versions 1.6 and 1.5 LTS. The flaws could enable attackers to execute malicious scripts and gain unauthorized access to sensitive information through multiple attack vectors. The first vulnerability …

North Korean Hackers Make History with $2 Billion Crypto Heist in 2025

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

North Korean hackers reached a dangerous milestone in 2025, stealing a record-breaking $2.02 billion in cryptocurrency throughout the year. This represents a 51% increase from 2024, pushing their total theft since 2016 to $6.75 billion. The alarming trend shows that …

WatchGuard 0-day Vulnerability Exploited in the Wild to Hijack Firewalls

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

An urgent security update has been released to fix a critical zero-day vulnerability in WatchGuard Firebox firewalls. With warnings that hackers are already actively exploiting the flaw in the wild to take control of affected devices. The vulnerability, tracked as CVE-2025-14733, …

Clop Ransomware Group Exploiting Gladinet CentreStack Servers to Steal Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Clop ransomware group has launched a new data extortion campaign targeting Internet-facing Gladinet CentreStack file servers, marking another chapter in the threat actor’s pattern of exploiting file transfer solutions. The campaign appears to leverage multiple security weaknesses in CentreStack …

University of Sydney Hacked – Students and Staff Data Exposed

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The University of Sydney has confirmed a significant data breach affecting thousands of current and former staff members, as well as students and alums. In a message to the university community, Vice-President (Operations) Nicole Gower revealed that suspicious activity was …

China-Aligned APT Hackers Exploit Windows Group Policy to Deploy Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated cyberespionage campaign targeting governmental entities in Southeast Asia and Japan has unveiled a new China-aligned threat actor dubbed LongNosedGoblin. Active since at least September 2023, this advanced persistent threat (APT) group distinguishes itself by leveraging a diverse toolset …

Amazon Catches North Korean IT Worker by Tracking Tiny 110ms Keystroke Delays

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A slight delay in keystrokes from a supposed U.S.-based IT worker alerted Amazon to a North Korean infiltrator accessing a corporate laptop. The commands should have zipped from the worker’s machine to Amazon’s Seattle headquarters in under 100 milliseconds. Instead, …

OpenAI GPT-5.2-Codex Supercharges Agentic Coding and Cyber Vulnerability Detection

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

OpenAI has unveiled GPT-5.2-Codex, a cutting-edge model optimized for agentic coding and enhanced cybersecurity tasks. The release highlights breakthroughs in handling complex software engineering and vulnerability detection. GPT-5.2-Codex tops SWE-Bench Pro with 56.4% accuracy, outperforming GPT-5.2 at 55.6% and GPT-5.1 …