Threat Actors Could Misuse Code Assistant To Inject Backdoors and Generating Harmful Content

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Modern development workflows increasingly rely on AI-driven coding assistants to accelerate software delivery and improve code quality. However, recent research has illuminated a potent new threat: adversaries can exploit these tools to introduce backdoors and generate harmful content without immediate …

LG WebOS TV Vulnerability Let Attackers Bypass Authentication and Enable Full Device Takeover

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability has been discovered in LG’s WebOS for smart TVs, allowing an attacker on the same local network to bypass authentication mechanisms and achieve full control over the device. The flaw, which affects models like the LG WebOS …

New APT28 Attack Via Signal Messenger Delivers BeardShell and Covenant Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Late in the summer of 2025, cybersecurity researchers uncovered a sophisticated spearphishing campaign targeting Ukrainian military personnel via the Signal messaging platform. The operation, dubbed “Phantom Net Voxel,” begins with a malicious Office document sent through private Signal chats, masquerading …

WordPress Plugin Vulnerability Let Attackers Bypass Authentication via Social Login

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical authentication bypass vulnerability in the Case Theme User WordPress plugin has emerged as a significant security threat, allowing unauthenticated attackers to gain administrative access to websites by exploiting the social login functionality. The vulnerability, tracked as CVE-2025-5821 with …

Ongoing npm Supply Chain Attack Compromises Various CrowdStrike npm Packages

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

An ongoing supply chain attack has compromised multiple npm packages published by CrowdStrike, extending a malicious campaign known as the “Shai-Halud attack.” The incident, which involves the same malware previously used to target the popular tinycolor package, highlights the persistent …

Threat Actors Can Weaponize MCP Servers To Harvests Sensitive Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In recent months, threat actors have begun exploiting the Model Context Protocol (MCP)—a universal “plug-in bus” designed to streamline AI-assistant integrations—as a novel supply chain attack vector. MCP servers allow AI assistants and development tools to translate natural-language requests into …

AWSDoor – New Persistence Technique Allows Attackers to Hide Malware Within AWS Cloud Environment

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Attackers are increasingly leveraging sophisticated techniques to maintain long-term access in cloud environments, and a newly surfaced tool named AWSDoor is emerging as a major threat.  AWSDoor automates a range of IAM and resource-based persistence methods, allowing adversaries to hide …

Nessus vs Metasploit Comparison: How To Exploit Vulnerabilities Using These Powerful Tools

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The cybersecurity landscape demands sophisticated tools to identify and exploit vulnerabilities effectively, with Nessus vs Metasploit representing one of the most powerful combinations in modern penetration testing. As cyber threats continue to evolve rapidly, security professionals require comprehensive solutions that …

Spring Framework Security Flaws Enable Authorization Bypass and Annotation Detection Issues

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Two critical vulnerabilities, CVE-2025-41248 and CVE-2025-41249, have emerged in Spring Security and Spring Framework that could allow attackers to bypass authorization controls in enterprise applications.  These flaws arise when using Spring Security’s @EnableMethodSecurity feature in conjunction with method-level annotations such …

SmokeLoader Utilizes Optional Plugins To Perform Tasks Such as Stealing Data and DoS Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

SmokeLoader, first seen on criminal forums in 2011, has evolved into a highly modular malware loader designed to deliver a variety of second-stage payloads, including trojans, ransomware, and credential stealers. After Operation Endgame disrupted numerous campaigns in mid-2024, the loader …