APT Hackers Exploit ChatGPT to Create Sophisticated Malware and Phishing Emails

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A China-aligned advanced persistent threat (APT) group is actively leveraging OpenAI’s ChatGPT platform to develop malware and craft sophisticated spear-phishing emails for its global campaigns. Security firm Volexity tracks the …

New Fully Undetectable FUD Android RAT Hosted on GitHub

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated Android remote access trojan (RAT) has emerged on GitHub, presenting significant security concerns for mobile device users worldwide. The malware, publicly available under the repository “Android-RAT” by user …

TamperedChef Malware as PDF Editor Harvest Browser Credentials and Allows Backdoor Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In recent weeks, security teams have observed a surge in malvertising campaigns distributing what appears to be a fully functional PDF editor. Dubbed TamperedChef, this malware masquerades as a legitimate …

Google’s New AI Agent, CodeMender, Automatically Rewrites Vulnerable Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Google has introduced CodeMender, a new artificial intelligence-powered agent that automatically enhances software security by identifying and fixing vulnerabilities. This initiative addresses the growing gap between the rapid, AI-assisted discovery …

Yurei Ransomware Leverages SMB Shares and Removable Drives to Encrypt Files

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Yurei ransomware first emerged in early September 2025, targeting Windows environments with a sophisticated Go-based payload designed for rapid, large-scale encryption. Once executed, the malware enumerates all accessible local and …

ClamAV 1.5.0 Released with New MS Office and PDF Verification Features

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cisco has announced the release of ClamAV 1.5.0, a significant update to the open-source antivirus engine that introduces major security enhancements, new document scanning capabilities, and extensive API improvements. This …

Critical AWS ClientVPN for macOS Vulnerability Let Attackers Escalate Privileges

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical flaw in the AWS Client VPN for macOS has been disclosed, presenting a local privilege escalation risk to non-administrator users.  The vulnerability tracked as CVE-2025-11462 allows attackers to …

ASCII Smuggling Attack Lets Hackers Manipulate Gemini to Deliver Smuggled Data to Users

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Researchers set out to test leading large language models (LLMs) for resilience against the long-standing ASCII Smuggling technique.  By embedding invisible control characters within seemingly harmless text, ASCII Smuggling abuses …

PoC Exploit Released for Critical Lua Engine Vulnerabilities

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Three newly disclosed vulnerabilities have been identified in the Lua scripting engine of Redis 7.4.5, each presenting severe risks of remote code execution and privilege escalation.  Redrays has released a …