New Ransomware Variants Targeting Amazon S3 Services Leveraging Misconfigurations and Access Controls

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new wave of ransomware attacks is targeting cloud storage environments, specifically focusing on Amazon Simple Storage Service (S3) buckets that contain critical business data. Unlike traditional ransomware that encrypts files using malicious software, these attacks exploit weak access controls …

TamperedChef Hacking Campaign Leverages Common Apps to Deliver Payloads and Gain Remote Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new global hacking campaign tracked as TamperedChef has emerged, exploiting everyday software names to trick users into installing malicious applications that deliver remote access tools. The campaign uses fake installers disguised as common programs like manual readers, PDF editors, …

Lessons from Oracle E-Business Suite Hack That Allegedly Compromises Nearly 30 Organizations Worldwide

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated cyberattack targeting Oracle E-Business Suite (EBS) customers has exposed critical vulnerabilities in enterprise resource planning systems, compromising an estimated 100 organizations worldwide between July and October 2025. The campaign, attributed to the notorious Clop ransomware group and linked …

New Malware Via WhatsApp Exfiltrate Contacts to Attack Server and Deploys Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Trustwave SpiderLabs researchers have identified a sophisticated banking trojan called Eternidade Stealer that spreads through WhatsApp hijacking and social engineering tactics. The malware, written in Delphi, represents a significant evolution in Brazil’s cybercriminal landscape, combining advanced contact harvesting with credential …

GenAI Makes it Easier for Cybercriminals to Successfully Lure Victims into Scams

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals are rapidly embracing generative AI to transform the way they operate scams, making fraud operations faster, more convincing, and dramatically easier to scale. According to recent research, what once required months of work and specialized technical skills can now …

Threat Actors Allegedly Selling Microsoft Office 0-Day RCE Vulnerability on Hacking Forums

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A threat actor known as Zeroplayer has reportedly listed a zero-day remote code execution (RCE) vulnerability, combined with a sandbox escape, targeting Microsoft Office and Windows systems for sale on underground hacking forums. Priced at $30,000, the exploit purportedly works …

Threat Actors Pioneering a New Operational Model That Combines Digital and Physical Threats

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Nation-state actors are fundamentally changing how they conduct military operations. The boundary between digital attacks and physical warfare is disappearing rapidly. Instead of treating cybersecurity and military operations as separate activities, hostile nations are now blending them together in coordinated …

Critical N-able N-central Vulnerabilities Allow attacker to interact with legacy APIs and read sensitive files

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

N-able’s N-central remote management and monitoring (RMM) platform faces critical security risks following the discovery of multiple vulnerabilities. According to Horizon3.ai, it allows unauthenticated attackers to bypass authentication, access legacy APIs, and exfiltrate sensitive files, including credentials and database backups. …

Critical Twonky Server Vulnerabilities Let Attackers Bypass Authentication

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Twonky Server version 8.5.2 contains two critical authentication bypass vulnerabilities that allow unauthenticated attackers to gain full administrative access to the media server software. Rapid7 discovered that the vulnerabilities can be chained together to compromise administrator accounts without any user …

Researchers Disclosed Analysis of Rhadamanthys Loader’s Anti-Sandboxing and Anti-AV Emulation Features

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Rhadamanthys has emerged as one of the most dangerous stealer malware programs since its first appearance in 2022. This advanced threat continues to challenge security teams with its ability to steal sensitive data from infected systems while avoiding detection by …