Microsoft Enhances Windows Security by Turning Off File Previews for Downloads

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In a move to tighten defenses against credential theft, Microsoft has rolled out a significant change to Windows File Explorer starting with security updates released on and after October 14, …

Hackers Exploited Samsung Galaxy S25 0-Day Vulnerability to Enable Camera and Track Location

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

At Pwn2Own Ireland 2025, cybersecurity researchers Ben R. and Georgi G. from Interrupt Labs showcased an impressive achievement by successfully exploiting a zero-day vulnerability in the Samsung Galaxy S25. This …

SpaceX Disabled 2,500+ Starlink Terminals Tied to Scam Centers in Myanmar

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

SpaceX has disabled over 2,500 Starlink satellite internet terminals linked to notorious scam centers in Myanmar. The action underscores the company’s commitment to denying the misuse of its technology amid …

Perplexity’s Comet Browser Screenshot Feature Vulnerability Let Attackers Inject Malicious Prompts

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new vulnerability in Perplexity’s Comet AI browser allows attackers to inject malicious prompts through seemingly innocuous screenshots. Disclosed on October 21, 2025, this flaw builds on earlier concerns about …

Hackers Exploiting Adobe Magento RCE Vulnerability Exploited in the Wild – 3 in 5 Stores Vulnerable

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hackers have begun actively targeting a critical remote code execution flaw in Adobe’s Magento e-commerce platform, putting thousands of online stores at immediate risk just six weeks after Adobe issued …

CISA Warns of Motex LANSCOPE Endpoint Manager Vulnerability Exploited in Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

CISA has issued a critical alert regarding a severe vulnerability in Motex LANSCOPE Endpoint Manager, a popular tool for managing IT assets across networks. Dubbed an improper verification of the …

Jira Software Vulnerability Let Attacker Modify Any Filesystem Path Writable By JVM process

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Atlassian has disclosed a high-severity path traversal vulnerability in Jira Software Data Center and Server that enables authenticated attackers to arbitrarily write files to any path accessible by the Java …

Impacket Tool in Kali Repo Upgraded With New Attack Paths and Relay Tricks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The popular Impacket toolkit, a staple in penetration testing and now integrated into the Kali Linux repository, is set for a major upgrade. Maintained by Fortra’s cybersecurity team, the forthcoming …

DHS Asks OpenAI To Share Information on ChatGPT Prompts Used By Users

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Department of Homeland Security (DHS) has issued the first known federal search warrant compelling OpenAI to disclose user data tied to ChatGPT prompts. The warrant, unsealed last week in …

TARmageddon Vulnerability In Rust Library Let Attackers Replace Config Files And Execute Remote Codes

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A severe vulnerability in the async-tar Rust library and its popular forks, including the widely used tokio-tar. Dubbed TARmageddon and tracked as CVE-2025-62518, the bug carries a CVSS score of …