Kali Linux vs Parrot OS – Which Penetration Testing Platform is Most Suitable for Cybersecurity Professionals?

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Penetration testing and ethical hacking have been dominated by specialized Linux distributions designed to provide security professionals with comprehensive toolsets for vulnerability assessment and network analysis. Among the most prominent options, Kali Linux and Parrot OS have emerged as leading contenders, each offering unique …

New Report Claims Microsoft Used China-Based Engineers For SharePoint Support and Bug Fixing

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A recent investigation has revealed that Microsoft employed China-based engineers to maintain and support SharePoint software, the same collaboration platform that was recently compromised by Chinese state-sponsored hackers. This revelation raises significant concerns about cybersecurity practices and potential insider threats …

143,000 Malware Files Attacked Android and iOS Device Users in Q2 2025

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals unleashed a massive wave of mobile malware attacks during the second quarter of 2025, with security researchers detecting nearly 143,000 malicious installation packages targeting Android and iOS devices. This surge represents a significant escalation in mobile cyber threats, affecting …

SafePay Ransomware Claiming Attacks Over 73 Victim Organizations in a Single Month

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new ransomware threat has emerged as one of 2025’s most prolific cybercriminal operations, with SafePay ransomware claiming attacks against 73 victim organizations in June alone, followed by 42 additional victims in July. This surge has positioned SafePay as a …

TAG-150 Hackers Deploying Self-Developed Malware Families to Attack Organizations

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated new threat actor designated TAG-150 has emerged as a significant cybersecurity concern, demonstrating rapid development capabilities and technical sophistication in deploying multiple self-developed malware families since March 2025. The group has successfully created and deployed CastleLoader, CastleBot, and …

Threats Actors Weaponize ScreenConnect Installers to Gain Initial Access to Organizations

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated cyber campaign has emerged targeting U.S.-based organizations through trojanized ConnectWise ScreenConnect installers, marking a significant evolution in remote monitoring and management (RMM) tool abuse. Since March 2025, these attacks have demonstrated increased frequency and technical sophistication, leveraging legitimate …

Wealthsimple Data Breach Exposes Personal Information of Some Users

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Canadian fintech giant Wealthsimple announced today that it has suffered a data breach, resulting in the unauthorized access of personal information belonging to a small fraction of its client base. The company stressed that all funds and accounts remain secure …

New Malware Leverages Windows Character Map to Bypass Windows Defender and Mine Cryptocurrency for The Attackers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A recently discovered strain of cryptomining malware has captured the attention of security teams worldwide by abusing the built-in Windows Character Map application as an execution host. The threat actor initiates the attack through a PowerShell script that downloads and …

Hackers Weaponize Fake Microsoft Teams Site to Deploy Odyssey macOS Stealer

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated cyber campaign is targeting macOS users by distributing the potent “Odyssey” information stealer through a deceptive website impersonating the official Microsoft Teams download page. The attack, identified by researchers at CloudSEK’s TRIAD, leverages a social engineering technique known …

North Korean Threat Actors Reveal Their Tactics in Replacing Infrastructure With New Assets

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Over the past year, cybersecurity researchers have observed a surge in activity from North Korean threat actors leveraging military-grade social engineering techniques to target professionals in the cryptocurrency industry. This campaign, dubbed Contagious Interview, employs a deceptively benign job-application process …