MathWorks Confirms Cyberattack, User Personal Information Stolen

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

MathWorks, Inc., the developer of the popular MATLAB and Simulink software, confirmed today that it was the target of a significant cyberattack, resulting in the theft of sensitive personal information belonging to an undisclosed number of users. In a notice …

Threat Actors Abuse Velociraptor Incident Response Tool to Gain Remote Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated intrusion in which threat actors co-opted the legitimate, open-source Velociraptor digital forensics and incident response (DFIR) tool to establish a covert remote access channel. This represents an evolution from the long-standing tactic of abusing remote monitoring and management …

Nevada IT Systems Hit by Cyberattack – State Office Closed for Two Days

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A significant cyberattack disrupted Nevada’s state government network on August 24, forcing all state office branches to shut down operations for 48 hours. The intrusion began with the exploitation of an unpatched VPN gateway, allowing the threat actor to gain …

Cisco Nexus 3000 and 9000 Series Vulnerability Let Attackers Trigger DoS Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cisco has issued a High-severity security advisory alerting customers to a critical vulnerability in the Intermediate System-to-Intermediate System (IS-IS) feature of NX-OS Software for Cisco Nexus 3000 and 9000 Series switches.  Tracked as CVE-2025-20241 with a CVSS base score of …

Farmers Insurance Cyber Attack – 1.1 Million Customers Data Exposed in Salesforce Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Farmers Insurance Exchange and its subsidiaries recently disclosed a significant security incident that compromised personal information of approximately 1.1 million customers through an unauthorized access to a third-party vendor’s database. The breach, which occurred on May 29, 2025, represents one …

Hackers Attempted to Misuse Claude AI to Launch Cyber Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Anthropic has thwarted multiple sophisticated attempts by cybercriminals to misuse its Claude AI platform, according to a newly released Threat Intelligence report. Despite layered safeguards designed to prevent harmful outputs, malicious actors have adapted to exploit Claude’s advanced capabilities, weaponizing …

UTG-Q-1000 Group Weaponizing Subsidy Schemes to Exfiltrate Sensitive Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The emergence of sophisticated cybercriminal organizations continues to pose significant threats to individuals and institutions worldwide, with the UTG-Q-1000 group representing one of the most concerning developments in recent cybersecurity history. This highly organized criminal network has demonstrated exceptional technical …

ShadowSilk Leveraging Penetration-Testing Tools, Public Exploits to Attack Organizations

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

ShadowSilk first surfaced in late 2023 as a sophisticated threat cluster targeting government entities across Central Asia and the broader APAC region. Exploiting known public vulnerabilities and widely available penetration-testing frameworks, the group orchestrates data exfiltration campaigns with a high …

FreePBX Servers Hacked in 0-Day Attack – Admins are Urged to Disable Internet Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical zero-day exploit targeting exposed FreePBX 16 and 17 systems. Threat actors are abusing an unauthenticated privilege escalation vulnerability in the commercial Endpoint Manager module, allowing remote code execution (RCE) when the Administrator Control Panel is reachable from the …

New TamperedChef Attack With Weaponized PDF Editor Steals Sensitive Data and Login Credentials

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated malware campaign that weaponizes a seemingly legitimate PDF editor to steal sensitive data and login credentials from unsuspecting users across Europe. The attack uncovered by Truesec, dubbed “TamperedChef,” represents a new evolution in social engineering tactics that leverage …