PoC Exploit Unveiled for Lenovo Code Execution Vulnerability Enabling Privilege Escalation

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability in Lenovo’s Dispatcher drivers has come under the spotlight after researchers released a proof-of-concept exploit that demonstrates privilege escalation on affected Windows systems. Identified as CVE-2025-8061, this …

Linux Kernel 6.18-rc1 Released With Extensive Updates Following a Steady Merge Window

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Linus Torvalds has announced the release of Linux 6.18-rc1, marking the start of the release candidate phase for the upcoming kernel version. In his typical straightforward style, Torvalds noted that …

Scattered Lapsus$ Hunters Claim to Have Stolen More Than 1 Billion Salesforce Records

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Scattered Lapsus$ Hunters, a threat group previously associated with high-profile data thefts, recently claimed responsibility for exfiltrating over one billion records from Salesforce environments worldwide. Emerging in mid-2025, the group …

Microsoft Intune MDM and Entra ID Leveraged to Elevate your Trust in Device Identity

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

New research uncovers valuable insights hidden within Microsoft Intune’s Mobile Device Management (MDM) certificates, offering a more reliable way to verify device and tenant identities compared to traditional methods like …

Astaroth Banking Malware Leveraging GitHub to Host Malware Configurations

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new wave of the Astaroth banking trojan has emerged, leveraging a novel approach to distribute its malicious configuration files. First detected in late 2025, this latest campaign employs GitHub’s …

New RMPocalypse Attack Let Hackers Break AMD SEV-SNP To Exfiltrate Confidential Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability in AMD’s Secure Encrypted Virtualization with Secure Nested Paging (SEV-SNP), a cornerstone of confidential computing deployed by major cloud providers like AWS, Azure, and Google Cloud. Dubbed …

Threat Actors Weaponize Discord Webhooks for Command and Control with npm, PyPI, and Ruby Packages

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals have discovered a novel way to co-opt Discord webhooks as surrogate command-and-control (C2) channels across popular language ecosystems. Unlike traditional C2 servers, webhooks offer free, low-profile exfiltration that blends …

EDR-Freeze Tool Technical Workings Along With Forensic Artifacts Revealed

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A recent analysis from researcher Itamar Hällström has revealed the technical workings and forensic trail of “EDR-Freeze,” a proof-of-concept technique that temporarily disables security software. By abusing legitimate Windows components, …

Happy DOM Vulnerability Exposes 2.7 Million Users To Remote Code Execution Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A significant security flaw has been discovered in Happy DOM, a popular JavaScript DOM implementation, affecting versions up to v19. This vulnerability places systems at risk of Remote Code Execution …

New Stealit Malware Attacking Windows Systems Abuses Node.js Extensions

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated new malware campaign targeting Windows systems has emerged, leveraging Node.js Single Executable Application (SEA) features to distribute malicious payloads while evading traditional detection mechanisms. The Stealit malware represents …