New ModStealer Evade Antivirus Detection to Attack macOS Users and Steal Sensitive Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated new cross-platform information stealer known as ModStealer has emerged, targeting macOS users and demonstrating concerning capabilities to evade Apple’s built-in security mechanisms. The malware represents the latest evolution in macOS-focused threats, which have seen a dramatic surge throughout …

WhatsApp 0-Click Vulnerability Exploited Using Malicious DNG File

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

WhatsApp 0-click remote code execution (RCE) vulnerability affecting Apple’s iOS, macOS, and iPadOS platforms, detailed with a proof of concept demonstration. The attack chain exploits two distinct vulnerabilities, identified as CVE-2025-55177 and CVE-2025-43300, to compromise a target device without requiring …

SUSE Rancher Vulnerabilities Let Attackers Lockout the Administrators Account

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical flaw in SUSE Rancher’s user management module allows privileged users to disrupt administrative access by modifying usernames of other accounts.  Tracked as CVE-2024-58260, this vulnerability affects Rancher Manager versions 2.9.0 through 2.12.1, enabling both username takeover and full …

ThreatBook Launches Best-of-Breed Advanced Threat Intelligence Solution

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Singapore, Singapore, September 29th, 2025, CyberNewsWire Analyzing over 14 billion cyber-attack records daily, ThreatBook ATI is a global solution enriched with granular, local insights; and can offer organizations a truly APAC perspective. Boasting low false positive rates, the solution is …

Lesson From Cisco ASA 0-Day RCE Vulnerability That Actively Exploited In The Wild

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The cybersecurity landscape experienced a significant escalation in September 2025, when Cisco disclosed multiple critical zero-day vulnerabilities affecting its Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) platforms. At the center of this security crisis lies CVE-2025-20333, a devastating …

Formbricks Signature Verification Vulnerability Let Attackers Reset User Passwords Without Authorization

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security flaw discovered in Formbricks, an open-source experience management platform, demonstrates how missing JWT signature verification can lead to complete account takeovers.  The vulnerability tracked as CVE-2025-59934 affects all versions prior to 4.0.1 and stems from improper token …

Windows Heap Exploitation Vulnerability With Record’s Size Field Leads to Arbitrary R/W

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability in Windows heap management demonstrates how improper handling of record-size fields enables arbitrary memory read and write operations.  Suraj Malhotra shared a detailed exploitation technique leveraging the Low Fragmentation Heap (LFH) mechanism to achieve code execution on …

Threat Actors Leveraging Dynamic DNS Providers to Use for Malicious Purposes

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity researchers are raising alarms about a growing threat vector as malicious actors increasingly exploit Dynamic DNS providers to establish robust command and control infrastructure. These publicly rentable subdomain services, traditionally designed for legitimate hosting purposes, have become the preferred …

Notepad++ DLL Hijacking Vulnerability Let Attackers Execute Malicious Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A newly discovered DLL hijacking vulnerability in Notepad++, the popular source code editor, could allow attackers to execute arbitrary code on a victim’s machine. Tracked as CVE-2025-56383, the flaw exists in version 8.8.3 and potentially affects all installed versions of …

DataCenter Fire Takes 600+ South Korean Government Websites Offline

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A fire caused by a lithium-ion battery explosion at a key government data center in South Korea has knocked more than 600 essential services offline, disrupting daily life across the highly digitized nation. The incident, which began Friday night at …