Multiple Splunk Enterprise Vulnerabilities Let Attackers Execute Unauthorized JavaScript code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Splunk has released patches for multiple vulnerabilities in its Enterprise and Cloud Platform products, some of which could allow attackers to execute unauthorized JavaScript code, access sensitive information, or cause a denial-of-service (DoS) condition. The advisories, published on October 1, …

Ukraine Warns of Weaponized XLL Files Delivers CABINETRAT Malware Via Zip Files

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Ukrainian security agencies have issued an urgent warning regarding a sophisticated malware campaign targeting government and critical infrastructure sectors through weaponized XLL files distributed via compressed archives. The malicious campaign leverages Microsoft Excel add-in files containing the CABINETRAT backdoor, representing …

Threat Actors Leveraging Senior Travel Scams to Deliver Datzbro Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity researchers have uncovered a sophisticated Android malware campaign targeting seniors through fraudulent travel and social activity promotions on Facebook. The newly identified Datzbro malware represents a dangerous evolution in mobile threats, combining advanced spyware capabilities with remote access tools …

Malicious PyPI Package Mimics as SOCKS5 Proxy Tool Attacking Windows Platforms

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated malicious package has infiltrated the Python Package Index (PyPI), masquerading as a legitimate SOCKS5 proxy tool while harboring backdoor capabilities that target Windows systems. The SoopSocks package, tracked as XRAY-725599, presents itself as a benign networking utility that …

New Google Drive Desktop Feature adds AI-powered Ransomware Detection to Prevent Cyberattacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Google has introduced a new AI-powered ransomware detection feature for Google Drive for desktop, designed to block cyberattacks and protect user files automatically. This enhancement adds a significant layer of security for users of Windows and macOS, addressing the persistent …

New FlipSwitch Hooking Technique Bypasses Linux Kernel Defenses

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The cybersecurity landscape witnessed the emergence of a sophisticated rootkit variation, FlipSwitch, targeting modern Linux kernels. First surfacing in late September 2025, FlipSwitch exploits recent changes in syscall dispatching to implant stealthy hooks directly into kernel code. Early indicators suggest …

New DNS Malware Detour Dog Delivers Strela Stealer Using DNS TXT Records

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated DNS-based malware campaign has emerged, utilizing thousands of compromised websites worldwide to deliver the Strela Stealer information-stealing malware through an unprecedented technique involving DNS TXT records. The threat, tracked as Detour Dog by security researchers, represents a significant …

Allianz Life Data Breach Exposes Personal Records of 1.5 Million Users

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Allianz Life Insurance Company of North America has reported a significant data security incident that has exposed the sensitive personal information of an estimated 1.5 million customers, financial professionals, and employees. The breach involved unauthorized access to a cloud-based system, …

AI-Powered FunkLocker Ransomware Leverages Windows utilities to Disable Defenses

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new ransomware strain, dubbed FunkLocker, is leveraging artificial intelligence to expedite its development, while relying on the abuse of legitimate Windows utilities to disable security defenses and disrupt systems. The ransomware, attributed to a group known as FunkSec, highlights …

CISA Warns of Cisco IOS and IOS XE SNMP Vulnerabilities Exploited in Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cisco’s Simple Network Management Protocol (SNMP) implementations in IOS and IOS XE have come under intense scrutiny following reports of active exploitation in the wild. First disclosed in August 2025, CVE-2025-20352 describes a critical buffer overflow in the SNMP engine …