First AI Ransomware ‘PromptLock’ Uses OpenAI gpt-oss-20b Model for Encryption

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new ransomware has been identified, which is believed to be the first-ever ransomware strain that leverages a local AI model to generate its malicious components. Dubbed “PromptLock” by the ESET Research team that discovered it, the malware uses OpenAI’s …

New Attack Targeting ScreenConnect Cloud Administrators to Steal Login Credentials

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated credential harvesting campaign has emerged targeting ScreenConnect cloud administrators with spear phishing attacks designed to steal super administrator credentials. The ongoing operation, designated MCTO3030, has maintained consistent tactics since 2022 while operating largely undetected through low-volume distribution strategies …

Citrix NetScaler ADC and Gateway 0-Day RCE Vulnerability Actively Exploited in Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cloud Software Group has disclosed multiple high-severity vulnerabilities in NetScaler ADC (formerly Citrix ADC) and NetScaler Gateway (formerly Citrix Gateway) that can lead to remote code execution (RCE) and denial of service (DoS). Exploitation of CVE-2025-7775 has been observed in …

Online PDF Editors Safe to Use? Detailed Analysis of Security Risks Associated With It

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Online PDF editors have become common tools for quick document manipulation, providing convenient alternatives to desktop software. However, their cloud-based nature brings significant security vulnerabilities that both organizations and individuals must carefully consider. Recent cybersecurity research reveals that these platforms present …

Microsoft Unveils New Tool to Migrate VMware Virtual Machines From vCenter to Hyper-V

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has released a new VM Conversion extension for Windows Admin Center, designed to streamline the migration of VMware virtual machines from vCenter to Hyper-V environments.  The preview tool, announced on August 20, 2025, provides enterprises with a cost-free solution …

Aembit Extends Secretless CI/CD with Credential Lifecycle Management for GitLab

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Aembit, the workload identity and access management (IAM) company, today announced new capabilities for GitLab designed to reduce the security risks of long-lived personal access tokens (PATs) and other secrets needed to automate software delivery, while making it easier to …

APT36 Hackers Attacking Indian BOSS Linux Systems With Weaponized .desktop Shortcut Files

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In early August 2025, security researchers uncovered an unprecedented campaign targeting India’s BOSS Linux installations through seemingly innocuous shortcut files. These files, masquerading as PDF documents, leverage the .desktop format intrinsic to Linux desktop environments to deliver and execute malicious …

WhatsApp Desktop Users At Risk of Code Execution Attacks with Python on Windows PCs

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

WhatsApp Desktop users who have Python installed on their Windows PCs are at risk of arbitrary code execution due to a flaw in how the application handles Python archive files.  A maliciously crafted .pyz file can be executed with a …

OneFlip – New Attack Flips a Single Bit in Neural Networks for Stealthily Backdoor on AI Systems

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In August 2025, researchers at George Mason University published a groundbreaking study at the 34th USENIX Security Symposium, introducing OneFlip, an inference-time backdoor attack that flips just one bit in full-precision neural networks to implant stealth triggers. Unlike traditional backdoor …

PoC Exploit Released for Chrome 0-Day Vulnerability Exploited in the Wild

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Google has disclosed a critical zero-day vulnerability in the V8 JavaScript engine used by Chrome, tracked as CVE-2025-5419.  Before a patch could be rolled out to all users, proof-of-concept (PoC) exploit code had been published, and active exploitation had been …