Kali Linux 2026.1 Released With 8 New Hacking Tools

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Kali Linux 2026.1 has officially been released, marking the first major update of the year for the popular penetration testing distribution. Designed for professionals engaged in technical security research and …

Aqua Security’s Trivy Scanner Compromised in Supply Chain Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated supply chain attack targeting Aqua Security’s widely used open-source vulnerability scanner, Trivy. A threat actor leveraged compromised credentials to distribute malicious releases, turning a trusted security tool into …

HackerOne Data Breach – Employees Data Stolen Following Navia Hack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

HackerOne recently disclosed a data breach affecting 287 of its employees following a cyberattack on its U.S. benefits administrator, Navia Benefit Solutions. The breach stemmed from a Broken Object Level …

Dell Wyse Management Vulnerabilities Enables Complete System Compromise

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A recent security analysis has revealed how chaining seemingly minor logic flaws in Dell Wyse Management Suite (WMS) On-Premises can result in a complete system compromise. Security researchers demonstrated that …

Tycoon2FA Operators Resume Cloud Account Phishing After Infrastructure Disruption

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals behind Tycoon2FA, a phishing-as-a-service (PhaaS) platform, have resumed targeting cloud accounts with near-full force despite a coordinated law enforcement takedown on March 4, 2026. Europol, working alongside authorities from …

Threat Actors Continuously Attacking MS-SQL Servers to Deploy ICE Cloud Scanner

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A persistent threat actor known as Larva-26002 has been continuously targeting poorly managed Microsoft SQL (MS-SQL) servers, this time deploying a new scanner malware called ICE Cloud Client. The campaign …

Google Forms Job Lures Deliver PureHVNC in New Multi-Stage Malware Campaign

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Attackers have found a new way to push malware by weaponizing one of the most trusted everyday tools — Google Forms. A newly identified campaign is exploiting business-themed lures, including …

APT Hackers Attacking RDP Servers to Deploy Malicious Payloads and Establish Persistence

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

One of the world’s most dangerous state-backed hacking groups is actively targeting Remote Desktop Protocol (RDP) servers across critical infrastructure, defense organizations, and government agencies. The threat actor, known as …

DarkSword Exploit Chain That Can Hack Millions of iPhones Leaked Online

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A powerful iOS exploit toolkit known as DarkSword has been publicly leaked on GitHub, dramatically lowering the barrier for cybercriminals to target hundreds of millions of iPhones and iPads still …