Ferocious Kitten APT Deploying MarkiRAT to Capture Keystroke and Clipboard Logging

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Ferocious Kitten has emerged as a significant cyber-espionage threat targeting Persian-speaking individuals within Iran since at least 2015. The Iranian-linked advanced persistent threat group operates with a highly focused objective, utilizing politically themed decoy documents to manipulate victims into executing …

New Quantum Route Redirect Tool Lets Attackers Launch One-Click Phishing Attacks on Microsoft 365 Users

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated phishing campaign is targeting Microsoft 365 users worldwide through a newly discovered tool called Quantum Route Redirect. This advanced automation platform transforms complex phishing operations into simple one-click attacks that evade traditional security measures. The campaign has already …

Danabot Malware Resurfaced with Version 669 Following Operation Endgame

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Danabot, a notorious banking Trojan, has made a significant comeback with its new version 669 after a period of inactivity triggered by Operation Endgame’s law enforcement sweep in May 2025. This advanced malware’s resurgence signals a new threat wave targeting …

Windows Kernel 0‑day Vulnerability Actively Exploited in the Wild to Escalate Privilege

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has assigned CVE-2025-62215 to a new Windows Kernel elevation of privilege flaw that is being actively exploited in the wild. Published on November 11, 2025, the vulnerability is rated Important and tracked as an elevation of privilege issue in …

Beware of Security Alert-Themed Malicious Emails that Steal Your Email Logins

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new wave of security alert-themed phishing emails has recently surfaced, causing concern within both enterprise and personal email environments. These malicious emails cleverly impersonate official security notifications, often appearing to come from the victim’s own domain. Their main objective …

Microsoft November 2025 Patch Tuesday – 63 Vulnerabilities, Including 1 Zero-Day Fixed

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft rolled out its November 2025 Patch Tuesday security updates today, addressing 63 vulnerabilities across its product and service ecosystem. Among these, one zero-day flaw has already been exploited in the wild, underscoring the urgency for organizations and users to …

Best MSP Software: The Essential Tech Stack 

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

To grow a successful MSP business, you need the right technology stack, but the real question is: how do you choose the right tools? While some solutions are well-known and widely used, others are less obvious yet equally important.  Read …

Firefox Releases Security Update to Fix Multiple Vulnerabilities Allowing Arbitrary Code Execution

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Mozilla has rolled out Firefox 145, addressing a series of high-severity vulnerabilities that could allow attackers to execute arbitrary code on users’ systems. Announced on November 11, 2025, the release patches flaws primarily in the browser’s graphics, JavaScript, and DOM …

Researchers Uncover the Strong Links Between Maverick and Coyote Banking Malwares

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Security researchers from CyberProof have discovered significant connections between two advanced banking trojans targeting Brazilian users and financial institutions. The Maverick banking malware, identified through suspicious file downloads via WhatsApp, shares remarkable similarities with the earlier reported Coyote malware campaign. …

New VanHelsing Ransomware RaaS Model Attacking Windows, Linux, BSD, ARM, and ESXi Systems

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

VanHelsing has emerged as a sophisticated ransomware-as-a-service operation that fundamentally changes the threat landscape for organizations worldwide. First observed on March 7, 2025, this multi-platform locker represents a significant escalation in ransomware deployment strategies by providing affiliates with a streamlined …