New FvncBot Android Banking Attacking Users to Log Keystrokes and Inject Malicious Payloads

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A dangerous new Android banking malware named FvncBot was first observed on November 25, 2025. This malicious tool is designed to steal sensitive financial information by logging keystrokes, recording screens, and injecting fake login pages into banking apps. The malware initially spreads …

Researchers Hack Google’s Gemini CLI Through Prompt Injections in GitHub Actions

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability class dubbed “PromptPwnd,” affects AI agents integrated into GitHub Actions and GitLab CI/CD pipelines. This flaw allows attackers to inject malicious prompts via untrusted user inputs like issue titles or pull request bodies, tricking AI models into …

2.15M Web Services Running Next.js Exposed Over Internet, Active Exploitation Underway – Patch Now

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical unauthenticated remote code execution vulnerability dubbed “React2Shell” is actively being exploited in the wild, putting millions of web services at risk. On December 3, React disclosed CVE-2025-55182, a critical flaw in React Server Components with a CVSS score …

Avast Antivirus Sandbox Vulnerabilities Let Attackers Escalate Privileges

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Security researchers from the SAFA team have uncovered four kernel heap overflow vulnerabilities in Avast Antivirus, all traced to the aswSnx kernel driver. The flaws, now tracked collectively as CVE-2025-13032, could allow a local attacker to escalate privileges to SYSTEM …

Sprocket Security Earns Repeat Recognition in G2’s Winter 2025 Relationship Index for Penetration Testing

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Madison, United States, December 5th, 2025, CyberNewsWire Sprocket Security is proud to announce that it has once again been recognized by G2 for “High Performer,” “Best Support,” and “Easiest to Do Business With” in the Winter 2025 Relationship Index for …

Criminal IP to Host Webinar: Beyond CVEs – From Visibility to Action with ASM

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Torrance, California, USA, December 5th, 2025, CyberNewsWire Criminal IP will host a live webinar on December 16 at 11:00 AM Pacific Time (PT), focusing on the shift in cyberattack strategies. The session will examine how an increasing number of incidents …

Netflix Acquires Warner Bros. Studios and HBO in Landmark $82.7 Billion Megadeal

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Netflix has struck a transformative deal to acquire Warner Bros. studios, HBO, and HBO Max from Warner Bros. Discovery (WBD) in a cash-and-stock transaction valued at $82.7 billion. The move catapults Netflix into a content powerhouse, blending its streaming dominance …

Threat Actors Deploying CoinMiner Malware via USB Drives Infecting Workstations

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals are actively spreading CoinMiner malware through USB drives, targeting workstations across South Korea to mine Monero cryptocurrency. This ongoing campaign uses deceptive shortcut files and hidden folders to trick users into executing malicious scripts without their knowledge. The attack …

MuddyWater Hackers Using UDPGangster Backdoor to Attack Windows Systems Evading Network Defenses

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated cyber threat has emerged targeting Windows systems across multiple countries in the Middle East. UDPGangster, a UDP-based backdoor, represents a dangerous new weapon in the arsenal of the MuddyWater threat group, known for conducting cyber espionage operations throughout …

Cloudflare Outage Traced to Emergency React2Shell Patch Deployment

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cloudflare’s global network suffered a brief but widespread disruption this morning, lasting approximately 25 minutes, due to an internal change in its Web Application Firewall (WAF) designed to counter a critical vulnerability in React Server Components. The incident, which began …