Amazon WorkSpaces For Linux Vulnerability Let Attackers Extract Valid Authentication Token

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Amazon has disclosed a significant security vulnerability in its WorkSpaces client for Linux that could allow unauthorized users to extract valid authentication tokens and gain unauthorized access to other users’ WorkSpaces. The vulnerability, tracked as CVE-2025-12779, affects multiple client versions …

FreeBSD-based OPNsense Firewall Released for Security Issues and Improvements

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

OPNsense has released an update focused on eliminating security vulnerabilities and improving firewall performance. The latest version includes third-party security updates, firewall improvements, and fixes that make the system more reliable for network administrators and security professionals. The development team …

NVIDIA NVApp for Windows Vulnerability Let Attackers Execute Malicious Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

NVIDIA has patched a critical vulnerability in its App for Windows that could allow local attackers to execute arbitrary code and escalate privileges on affected systems. Tracked as CVE-2025-23358, the flaw exists in the installer component. It poses a significant …

Cisco Identity Services Engine Vulnerability Allows Attackers to Restart ISE Unexpectedly

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability in Cisco Identity Services Engine (ISE) could allow remote attackers to crash the system through a crafted sequence of RADIUS requests. The flaw CVE-2024-20399, lies in how ISE handles repeated authentication failures from rejected endpoints, creating a …

Sandworm Hackers Attacking Ukranian Organizations with Data Wiper Malwares

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Russia-aligned Sandworm threat group has intensified its destructive cyberattacks against Ukrainian organizations, deploying sophisticated data wiper malware designed to cripple critical infrastructure and economic operations. Unlike traditional cyberespionage campaigns, Sandworm’s recent operations focus exclusively on destruction, targeting governmental entities, …

AI Browsers Bypass Content PayWall Mimicking as a Human-User

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The emergence of advanced AI browsing platforms such as OpenAI’s Atlas and Perplexity’s Comet has created a sophisticated challenge for digital publishers worldwide. These tools leverage agentic capabilities designed to execute complex, multistep tasks that fundamentally transform how content is …

Midnight Ransomware Decrypter Flaws Opens the Door to File Recovery

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The cybersecurity landscape continues to evolve as new ransomware variants emerge from the remnants of previous campaigns. Midnight ransomware represents one such development, drawing substantial inspiration from the notorious Babuk ransomware family that first appeared in early 2021. Like its …

Iranian Hackers Targeting Academics and Foreign Policy Experts Using RMM Tools

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A previously unidentified Iranian threat actor has emerged with sophisticated social engineering tactics aimed at academics and foreign policy experts across the United States. Operating between June and August 2025, this campaign demonstrates the evolving landscape of state-sponsored cyber espionage, …

Threat Actors May Abuse VS Code Extensions to Deploy Ransomware and Use GitHub as C2 Server

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

North Korean threat actors are evolving their attack strategies by leveraging developer-focused tools as infection vectors. Recent security discoveries reveal that Kimsuky, a nation-state group operating since 2012, has been utilizing JavaScript-based malware to infiltrate systems and establish persistent command …

List of AI Tools Promoted by Threat Actors in Underground Forums and Their Capabilities

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The cybercrime landscape has undergone a dramatic transformation in 2025, with artificial intelligence emerging as a cornerstone technology for malicious actors operating in underground forums. According to Google’s Threat Intelligence Group (GTIG), the underground marketplace for illicit AI tools has …