Chrome 0-Day Vulnerability Actively Exploited in Attacks by Notorious Hacker Group

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The notorious Mem3nt0 mori hacker group has been actively exploiting a zero-day vulnerability in Google Chrome, compromising high-profile targets across Russia and Belarus. Dubbed CVE-2025-2783, this flaw allowed attackers to …

HashiCorp Vault Vulnerabilities Let Attack Bypass Authentication And Trigger DoS Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

HashiCorp has disclosed two critical vulnerabilities in its Vault software that could allow attackers to bypass authentication controls and launch denial-of-service (DoS) attacks. Published on October 23, 2025, these flaws …

Hackers Leveraging ClickFix Technique to Deploy NetSupport RAT Loaders

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals continue to evolve their tactics for compromising systems, with recent campaigns demonstrating a significant shift from traditional fake update methods to more sophisticated social engineering approaches. Throughout 2025, threat …

Infamous Cybercriminal Forum BreachForums Is Back Again With a New Clear Net Domain

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The notorious cybercrime forum BreachForums has resurfaced online, this time on a clearnet domain accessible without specialized tools like Tor. The platform, long a hub for data leaks, hacking tools, …

Critical Dell Storage Manager Vulnerabilities Let Attackers Compromise System

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Dell Technologies has disclosed three critical vulnerabilities in its Storage Manager software that could allow attackers to bypass authentication, disclose sensitive information, and gain unauthorized access to systems. Announced on …

Hackers Exploiting Microsoft WSUS Vulnerability In The Wild – 2800 Instances Exposed Online

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hackers are actively exploiting a critical flaw in Microsoft’s Windows Server Update Services (WSUS), with security researchers reporting widespread attempts in the wild. The vulnerability, tracked as CVE-2025-59287, allows remote …

Scattered LAPSUS$ Hunters Onion Leak Website Taken Down By Law-enforcement Agencies

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Law enforcement agencies from the United States and France have seized the onion leak website operated by the notorious Scattered LAPSUS$ Hunters collective, displaying a prominent seizure notice featuring logos …

New EDR-Redir Tool Breaks EDR Exploiting Bind Filter and Cloud Filter Driver

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new tool called EDR-Redir has emerged, allowing attackers to redirect or isolate the executable folders of popular Endpoint Detection and Response (EDR) solutions. Demonstrated by cybersecurity researcher TwoSevenOneT, the …

New CoPhish Attack Exploits Copilot Studio to Exfiltrate OAuth Tokens

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated phishing technique called CoPhish exploits Microsoft Copilot Studio to trick users into granting attackers unauthorized access to their Microsoft Entra ID accounts. Dubbed by Datadog Security Labs, this …

Cybersecurity Newsletter Weekly – AWS Outage, WSUS Exploitation, Chrome Flaws, and RDP Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Welcome to this week’s edition of the Cybersecurity Newsletter, where we dissect the latest threats, vulnerabilities, and disruptions shaping the digital landscape. As organizations navigate an increasingly complex threat environment, …