Qilin Ransomware Leveraging Mspaint and Notepad to Find Files with Sensitive Information

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Qilin ransomware has emerged as one of the most devastating threats in the second half of 2025, operating at an alarming pace with over 40 victim disclosures per month on its public leak site. Originally tracked under the name Agenda …

Hackers Actively Exploiting WordPress Arbitrary Installation Vulnerabilities in The Wild

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Threat actors have launched a significant mass exploitation campaign targeting critical vulnerabilities in two popular WordPress plugins, GutenKit and Hunk Companion, affecting hundreds of thousands of websites globally. These vulnerabilities, discovered in September and October 2024, have resurfaced as an …

Chrome 0-Day Vulnerability Actively Exploited in Attacks by Notorious Hacker Group

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The notorious Mem3nt0 mori hacker group has been actively exploiting a zero-day vulnerability in Google Chrome, compromising high-profile targets across Russia and Belarus. Dubbed CVE-2025-2783, this flaw allowed attackers to bypass Chrome’s robust sandbox protections with minimal user interaction, leading …

HashiCorp Vault Vulnerabilities Let Attack Bypass Authentication And Trigger DoS Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

HashiCorp has disclosed two critical vulnerabilities in its Vault software that could allow attackers to bypass authentication controls and launch denial-of-service (DoS) attacks. Published on October 23, 2025, these flaws affect both Vault Community Edition and Vault Enterprise, prompting urgent …

Hackers Leveraging ClickFix Technique to Deploy NetSupport RAT Loaders

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals continue to evolve their tactics for compromising systems, with recent campaigns demonstrating a significant shift from traditional fake update methods to more sophisticated social engineering approaches. Throughout 2025, threat actors have increasingly adopted the ClickFix technique as their primary …

Infamous Cybercriminal Forum BreachForums Is Back Again With a New Clear Net Domain

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The notorious cybercrime forum BreachForums has resurfaced online, this time on a clearnet domain accessible without specialized tools like Tor. The platform, long a hub for data leaks, hacking tools, and illicit trades, went dark earlier this year following a …

Critical Dell Storage Manager Vulnerabilities Let Attackers Compromise System

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Dell Technologies has disclosed three critical vulnerabilities in its Storage Manager software that could allow attackers to bypass authentication, disclose sensitive information, and gain unauthorized access to systems. Announced on October 24, 2025, these flaws affect versions of Dell Storage …

Hackers Exploiting Microsoft WSUS Vulnerability In The Wild – 2800 Instances Exposed Online

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hackers are actively exploiting a critical flaw in Microsoft’s Windows Server Update Services (WSUS), with security researchers reporting widespread attempts in the wild. The vulnerability, tracked as CVE-2025-59287, allows remote code execution on unpatched WSUS servers, potentially granting attackers full …

Scattered LAPSUS$ Hunters Onion Leak Website Taken Down By Law-enforcement Agencies

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Law enforcement agencies from the United States and France have seized the onion leak website operated by the notorious Scattered LAPSUS$ Hunters collective, displaying a prominent seizure notice featuring logos from the FBI, Department of Justice, and international partners. This …

New EDR-Redir Tool Breaks EDR Exploiting Bind Filter and Cloud Filter Driver

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new tool called EDR-Redir has emerged, allowing attackers to redirect or isolate the executable folders of popular Endpoint Detection and Response (EDR) solutions. Demonstrated by cybersecurity researcher TwoSevenOneT, the technique leverages Windows’ Bind Filter driver (bindflt.sys) and Cloud Filter …