21,000+ OpenClaw AI Instances With Personal Configurations Exposed Online

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

21,000+ publicly exposed instances of an open-source personal AI assistant, raising significant concerns about unprotected access to sensitive user configurations and personal data. OpenClaw, a rapidly emerging personal AI assistant …

NationStates Suffers Databreach – Game site Temporarily Offline

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A long-running online nation simulation game has been taken temporarily offline following a security breach that compromised its central production server. The team estimates the downtime will last 2 to …

Pulsar RAT Attacking Windows Systems via Per-user Run Registry Key and Exfiltrates Sensitive Details

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new wave of attacks targeting Windows systems has emerged through a sophisticated remote access trojan known as Pulsar RAT. This malware establishes persistence using the per-user Run registry key, …

Windows 11 Bug Causing Password Sign-in Option to Disappear from the Lock Screen on

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has acknowledged a strange user interface bug affecting specific Windows environments where the password sign-in option appears to vanish from the lock screen. The issue, which originated with updates …

Autonomous AI Agents Are Becoming the New Operating System of Cybercrime

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The cybersecurity landscape has entered a dangerous new phase where autonomous AI agents are transforming from simple automation tools into sophisticated criminal operators. These self-directed systems now execute complex cyberattacks …

Gakido CRLF Injection Vulnerability Let Attackers Bypass Security Controls

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability in Gakido, an HTTP client library by HappyHackingSpace, has been discovered that allows attackers to inject arbitrary HTTP headers through CRLF (Carriage Return Line Feed) sequences. Tracked …

Hackers Attacking MongoDB Instances to Delete Database and Add Ransom Note

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Threat actors are actively targeting internet-exposed MongoDB instances in large-scale automated ransomware campaigns. The attacks follow a consistent pattern: attackers scan for unsecured MongoDB databases accessible on the public internet, …

Arsink Rat Attacking Android Devices to Exfiltrate Sensitive Data and Enable Remote Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A dangerous Android malware called Arsink RAT has emerged as a serious threat to mobile device security worldwide. This cloud-native Remote Access Trojan gives attackers complete control over infected devices …

Google Uncovered Significant Expansion in ShinyHunters Threat Activity with New Tactics

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The ShinyHunters threat group has expanded its extortion operations with sophisticated attack methods targeting cloud-based systems across multiple organizations. These cybercriminals use voice phishing and fake credential harvesting websites to …

Windows 11 New Security Feature Denies Unauthorized Access to System Files

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has introduced a significant security control in the latest Windows 11 preview update designed to restrict unauthorized interaction with critical system files. Released as part of the January 2026 …