Threat Actors Actively Using Open-Source C2 Framework to Deliver Malicious Payloads

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new wave of cyber threats is emerging as criminals increasingly weaponize AdaptixC2, a free and open-source Command and Control framework originally designed for legitimate penetration testing and red team …

Hackers Weaponizing Windows LNK File UI Misrepresentation Remote Code Execution Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Chinese-affiliated threat actor UNC6384 has been actively leveraging a critical Windows shortcut vulnerability to target European diplomatic entities across Hungary, Belgium, Serbia, Italy, and the Netherlands. Arctic Wolf researchers identified …

Kimsuky and Lazarus Hacker Groups Unveil New Tools That Enable Backdoor and Remote Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Threat actors operating under the control of North Korea’s regime have demonstrated continued technical sophistication by introducing advanced malware toolsets designed to establish persistent backdoor access and remote control over …

Threat Actors Using Multilingual ZIP File to Attack Financial and Government Organizations

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Sophisticated threat actors have orchestrated a coordinated multilingual phishing campaign targeting financial and government organizations across East and Southeast Asia. The campaign leverages carefully crafted ZIP file lures combined with …

AzureHound Penetration Testing Tool Weaponized by Threat Actors to Enumerate Azure and Entra ID

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

AzureHound, an open-source data collection tool designed for legitimate penetration testing and security research, has become a favored weapon in the hands of sophisticated threat actors. The tool, which is …

CISA Warns of XWiki Platform Injection vulnerability Exploited to Execute Remote Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent warning about a severe injection vulnerability in the XWiki Platform, designated as CVE-2025-24893. This flaw allows unauthenticated attackers …

Historic Great Firewall Breach – 500GB+ Censorship Data Exposed

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In an unprecedented cybersecurity incident that occurred in September 2025, over 500 gigabytes of internal data from China’s Great Firewall infrastructure were exposed in what security experts are calling one …

WhatsApp Introduces Passkey Encryption for Enhanced Chat Message Backup Security

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

WhatsApp has unveiled passkey-encrypted backups, simplifying the protection of cherished chat histories without the burden of memorizing complex passwords. This feature allows users to secure their end-to-end encrypted backups using …

Researchers Created a Linux Rootkit that Evades Elastic Security EDR Detection

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated Linux kernel rootkit designed to slip past the defenses of Elastic Security, a leading endpoint detection and response (EDR) platform. Released on GitHub by researcher 0xMatheuZ, the rootkit …

CISA Warns of VMware Tools and Aria Operations 0-Day Vulnerability Exploited in Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Cybersecurity and Infrastructure Security Agency (CISA) has added CVE-2025-41244 to its Known Exploited Vulnerabilities catalog. This local privilege escalation flaw affects Broadcom’s VMware Aria Operations and VMware Tools, with …