New Cmoon Worm Attacking Users Via Compromised Websites

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity experts have uncovered a new worm named CMoon targeting users through compromised websites. This sophisticated malware can steal confidential and payment data, download additional malware, and launch Distributed Denial-of-Service (DDoS) attacks. The worm was initially detected in July 2024, …

Tor Browser 13.5.2 Released: What’s New!

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Tor Project has announced the release of Tor Browser 13.5.2, which includes significant security updates and improvements, mainly focusing on integrating the latest Firefox security patches. Tor Browser anonymizes web traffic using the Tor network, making it easy to …

Beware Of New Botnet Attacking ASUS Routers & Opens Port 63256

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Botnets attack routers to gain control over these devices, turning them into “zombies” that can be used to carry out malicious activities. While they execute all their illicit activities without getting detected, and they do activities like DDoS attacks, spreading …

MacOS Stealer Mimic as Screen Recorder Attacking Users via Google Ads

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new AMOS Mac stealer variant is circulating, distributed via a fake Loom website hosted on Google Ads, which, potentially linked to the Crazy Evil threat group, redirects users to a fraudulent download page disguised as the legitimate Loom platform.  …

Researches Introduced MaskAnyone Toolkit To Minimize The Privacy Risks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Audio-visual data offers invaluable insights into human behavior and communication but raises significant privacy concerns, which proposes MaskAnyone, a toolkit for de-identifying individuals in audio-visual data while preserving data utility.  By combining face-swapping, auditory masking, and real-time bulk processing, MaskAnyone …

Cisco Software Manager Password Change Vulnerability Let Hackers Change password

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability in Cisco’s Smart Software Manager On-Prem (SSM On-Prem) has surfaced, allowing unauthenticated, remote attackers to change user passwords, including those of administrative users. This flaw, rooted in improperly implementing the password-change process, has raised significant security concerns …

US to offer $10 million for Information on Iranian CyberAv3ngers Hackers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The United States has intensified its efforts to combat cyber threats by offering a substantial reward for information leading to identifying or locating individuals involved in malicious cyber activities against U.S. critical infrastructure. The move comes as part of a …

AMD Patches Multiple Memory Vulnerabilities That Leads Corrupt The Guest VM

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Three potential vulnerabilities in Secure Encrypted Virtualization – Secure Nested Paging (SEV-SNP) could allow an attacker to read or corrupt the memory of a guest VM. To establish an isolated execution environment, (SEV-SNP) adds robust memory integrity protection to prevent …

Microsoft Entra ID (Azure AD) Vulnerability Let Attackers Gain Global Admin Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Security researchers have uncovered vulnerabilities in Microsoft’s Entra ID (formerly Azure Active Directory) dubbed “UnOAuthorized,” which could allow unauthorized actions beyond expected controls. The findings, centered on the OAuth 2.0 scope permissions, could have enabled attackers to elevate privileges and …

Massive DDoS Attack: Record-breaking 419 TB of Malicious Traffic Within 24 Hours

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Akamai Technologies effectively countered one of the most extensive and advanced distributed denial-of-service (DDoS) attacks it has faced to date. The attack, targeting a major financial services company in Israel, lasted for nearly 24 hours and resulted in Akamai blocking …