Incident Response Team (ShieldForce) Partners with AccuKnox for Zero Trust CNAPP in Latin America

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Menlo Park, CA, USA, November 10th, 2025, CyberNewsWire AccuKnox, a leader in Zero Trust Cloud-Native Application Protection Platforms (CNAPP), announced a strategic partnership with Incident Response Team SA DE CV (ShieldForce) and DeepRoot Technologies, a global cybersecurity service provider and managed …

Critical Vulnerability in Popular NPM Library Exposes AI and NLP Apps to Remote Code Execution

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security flaw has been discovered in the widely used npm package expr-eval, potentially exposing AI and natural language processing applications to remote code execution attacks. The vulnerability, tracked as CVE-2025-12735, allows attackers to execute arbitrary system commands through maliciously …

LangGraph Vulnerability Allows Malicious Python Code Execution During Deserialization

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical remote code execution vulnerability has been discovered in LangGraph’s checkpoint serialization system. The flaw CVE-2025-64439 affects versions of langgraph-checkpoint before 3.0. It allows attackers to execute arbitrary Python code when untrusted data is deserialized. The vulnerability resides in …

Fired Intel Engineer Stolen 18,000 Files, Many of which Were Classified as “Top Secret”

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Intel has filed a federal lawsuit against a former employee accused of downloading thousands of classified documents shortly after being terminated, raising serious concerns about corporate data security and insider threats. Jinfeng Luo, a software developer who has worked at …

New Report Warns of Threat Actors Actively Adopting AI Platforms to Attack Manufacturing Companies

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The manufacturing sector faces an escalating threat landscape as cybercriminals increasingly exploit cloud-based platforms and artificial intelligence services to conduct sophisticated attacks. A comprehensive analysis by Netskope Threat Labs reveals that approximately 22 out of every 10,000 manufacturing users encounter …

Google’s Gemini Deep Research Tool Gains Access to Gmail, Chat, and Drive Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Google has expanded its Gemini AI model’s Deep Research feature to pull data directly from users’ Gmail, Google Drive, and Google Chat accounts. Announced today, this update allows the tool to integrate personal emails, documents, spreadsheets, slides, PDFs, and chat …

10 Popular Black Friday Scams – How to Detect the Red Flags and Protect your wallet and Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Black Friday 2025 represents the most dangerous shopping season in cybercrime history, with fraudsters leveraging artificial intelligence, deepfake technology, and sophisticated social engineering tactics to target millions of consumers globally. Recent cybersecurity research indicates that scam websites surged 89% year-over-year, …

MAD-CAT Meow Attack Tool to Simulate Real-World Data Corruption Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

MAD-CAT (Meow Attack Data Corruption Automation Tool) targets MongoDB, Elasticsearch, Cassandra, Redis, CouchDB, and Hadoop HDFS, exactly the systems hit in the original wave. This persistent threat inspired security researcher Karl Biron of Trustwave to create MAD-CAT, a Python-based tool …

Critical runc Vulnerabilities Put Docker and Kubernetes Container Isolation at Risk

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Three critical vulnerabilities in runc, the container runtime powering Docker, Kubernetes, and other containerization platforms. These flaws could allow attackers to escape container isolation and gain root access to host systems. However, no active exploits have been detected yet. The …

Monsta web-based FTP Remote Code Execution Vulnerability Exploited

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical remote code execution vulnerability in Monsta FTP, a popular web-based FTP client used by financial institutions and enterprises worldwide. The flaw, now tracked as CVE-2025-34299, affects multiple versions of the software and has been exploited in the wild. Monsta …