Nimbus Manticore Attacking Defense and Telecom Sectors With New Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Iranian threat actor known as Nimbus Manticore has intensified its campaign targeting defense manufacturing, telecommunications, and aviation sectors across Western Europe with sophisticated new malware variants. This mature advanced …

Hackers Weaponizing SVG Files to Stealthily Deliver Malicious Payloads

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals have embraced a new deceptive technique that transforms seemingly harmless vector graphics into dangerous malware delivery systems. A recent campaign targeting Latin America demonstrates how attackers are exploiting oversized …

Tata-Owned Jaguar Land Rover Delays Factory Reopening Following Major Cyber Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Jaguar Land Rover (JLR), the United Kingdom’s largest automotive manufacturer, has announced an additional delay in resuming production at its factories following a significant cyber-attack that occurred earlier this month. …

SonicWall Releases Urgent Update to Remove Rootkit Malware ‘OVERSTEP’ from SMA Devices

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

SonicWall has issued an urgent firmware update, version 10.2.2.2-92sv, for its Secure Mobile Access (SMA) 100 series appliances to detect and remove known rootkit malware. The advisory, SNWLID-2025-0015, published on …

Threat Actors with Fake Job Lures Attacking Job Seekers to Deploy Advanced Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In recent months, a sophisticated campaign has emerged in which state-linked threat actors are leveraging fake job offers to ensnare unsuspecting job seekers and deliver advanced malware. These attackers craft …

U.S. Secret Service Dismantles 300 SIM Servers and 100,000 SIM Cards Disabling Cell Phone Towers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The U.S. Secret Service has dismantled a massive, sophisticated network of electronic devices in the New York tristate area, thwarting what it described as an “imminent threat” to senior U.S. …

SpyCloud Report: 2/3 Orgs Extremely Concerned About Identity Attacks Yet Major Blind Spots Persist

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Austin, Texas, USA, September 23rd, 2025, CyberNewsWire New SpyCloud 2025 Identity Threat Report reveals dangerous disconnect between perceived security readiness and operational reality. SpyCloud, the leader in identity threat protection, …

SolarWinds Web Help Desk Vulnerability Enables Unauthenticated RCE

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

SolarWinds has released an urgent security advisory for a critical vulnerability in its Web Help Desk software that could allow an unauthenticated attacker to achieve remote code execution (RCE). The …

Hackers Exploits IMDS Service to Gain Initial Access to a Cloud Environment

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Threat actors were manipulating the Instance Metadata Service (IMDS), a core component designed to securely furnish compute instances with temporary credentials to infiltrate and navigate cloud infrastructures.  By compelling unsuspecting …

GitHub Enhances NPM’s Security with Strict Authentication, Granular Tokens, and  Trusted Publishing

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Recent High-profile supply‐chain attacks have exposed critical weaknesses in package registry security, prompting GitHub to roll out a suite of defenses designed to harden the npm ecosystem.  “GitHub Enhances npm’s …