Ollama Vulnerabilities Let Attackers Execute Arbitrary Code by Parsing of Malicious Model Files

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A severe vulnerability in Ollama, one of GitHub’s most popular open-source projects, with over 155,000 stars. The flaw enables attackers to execute arbitrary code on systems running vulnerable versions of …

China-Nexus APT Group Leverages DLL Sideloading Technique to Attack Government and Media Sectors

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A targeted cyber espionage campaign has emerged across Southeast Asia, specifically affecting government and media organizations in countries surrounding the South China Sea. The campaign, which has been actively monitored …

Hackers Can Exploit Default ServiceNow AI Assistants Configurations to Launch Prompt Injection Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A dangerous vulnerability in ServiceNow’s Now Assist AI platform allows attackers to execute second-order prompt injection attacks via default agent configuration settings. The flaw enables unauthorized actions, including data theft, …

Cline AI Coding Agent Vulnerabilities Enables Prompt Injection, Code Execution, and Data Leakage

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cline is an open-source AI coding agent with 3.8 million installs and over 52,000 GitHub stars. Contains four critical security vulnerabilities that enable attackers to execute arbitrary code and exfiltrate …

Hackers Attacking Palo Alto Networks’ GlobalProtect VPN Portals with 2.3 Million Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hackers have unleashed over 2.3 million malicious sessions against Palo Alto Networks’ GlobalProtect VPN portals since November 14, 2025, according to threat intelligence firm GreyNoise. This surge, which intensified dramatically …

How to Solve Alert Overload in Your SOC 

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Your SOC generates thousands of alerts daily. Many of them are low-priority, repetitive, or false positives. On paper, this looks like a technical problem. In reality, it’s a business problem.  Every Alert Costs  When analysts are buried under thousands of notifications, they spend more time triaging noise than responding to real incidents. …

Seraphic Becomes the First and Only Secure Enterprise Browser Solution to Protect Electron-Based Applications

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Tel Aviv, Israel, November 19th, 2025, CyberNewsWire Seraphic, the leader in enterprise browser security (SEB) and AI enablement, today announced native protection for Electron-based applications such as ChatGPT desktop, Teams, …

Hackers Actively Exploiting 7-Zip RCE Vulnerability in the Wild

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hackers have begun actively exploiting a critical remote code execution (RCE) vulnerability in the popular file archiver 7-Zip, putting millions of users at risk of malware infection and system compromise. …

Sysmon – Go-to Tool for IT Admins, Security Pros, and Threat Hunters Coming to Windows

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft is bringing native Sysmon functionality directly into Windows, eliminating the need for manual deployment and separate downloads. Starting next year, Windows 11 and Windows Server 2025 will include System Monitor (Sysmon) …

Chinese PlushDaemon Hackers use EdgeStepper Tool to Hijack Legitimate Updates and Redirect to Malicious Servers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A China-aligned threat group known as PlushDaemon has been weaponizing a sophisticated attack method to infiltrate networks across multiple regions since 2018. The group’s primary strategy involves intercepting legitimate software …