AISURU Botnet With 300,000 Hijacked Routers Behind The Recent Massive 11.5 Tbps DDoS Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Since early 2025, the cybersecurity community has witnessed an unprecedented surge in distributed denial-of-service (DDoS) bandwidth, culminating in a record-shattering 11.5 Tbps assault attributed to a botnet named AISURU. Emerging …

Open Source CyberSOCEval Sets New Standards for AI in Malware Analysis and Threat Intelligence

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A groundbreaking open-source benchmark suite called CyberSOCEval has emerged as the first comprehensive evaluation framework for Large Language Models (LLMs) in Security Operations Center (SOC) environments.  Released as part of …

New Maranhão Stealer Via Pirated Software Leveraging Cloud-Hosted Platforms to Steal Login Credentials

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Since May 2025, a novel credential stealer dubbed Maranhão Stealer has emerged as a significant threat to users of pirated gaming software. Distributed through deceptive websites hosting cracked launchers and …

0-Click Linux Kernel KSMBD RCE Exploit From N-Day Vulnerabilities

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A 0-Click Linux Kernel KSMBD RCE Exploit From N-Day Vulnerabilities, achieving remote code execution on a two-year-out-of-date Linux 6.1.45 instance running the kernelspace SMB3 daemon, ksmbd.  By chaining two authenticated …

New Phoenix Rowhammer Attack Variant Bypasses Protection With DDR5 Chips

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new Rowhammer attack variant named Phoenix can bypass the latest protections in modern DDR5 memory chips, researchers have revealed. The attack is the first to demonstrate a practical privilege …

Massive Supply Chain Attack Hijacks ctrl/tinycolor With 2 Million Downloads and Other 40 NPM Packages

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated and widespread supply chain attack has struck the NPM ecosystem, compromising the popular @ctrl/tinycolor package, which is downloaded over 2 million times per week. The attack also affected …

Sidewinder APT Hackers Leverage Nepal Protests to Push Mobile and Windows Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The eruption of widespread protests across Nepal in early September 2025 provided fertile ground for a sophisticated campaign orchestrated by the Sidewinder APT group. As demonstrators mobilized against government policies …

Threat Actors Leverage Several RMM Tools in Phishing Attack to Maintain Remote Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals are increasingly exploiting legitimate remote monitoring and management (RMM) tools to establish persistent access to compromised systems through sophisticated phishing campaigns. Joint research conducted by Red Canary Intelligence and …

Pro-Russian Hackers Attacking Key Industries in Major Countries Around The World

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated pro-Russian cybercriminal group known as SectorJ149 (also identified as UAC-0050) has emerged as a significant threat to critical infrastructure worldwide, conducting targeted attacks against manufacturing, energy, and semiconductor …

Microsoft Fixes Windows 11 24H2 Audio Issue that Stops Bluetooth Headsets and Speakers Working

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has resolved a significant audio bug in Windows 11 version 24H2 that prevented Bluetooth headsets and speakers from functioning correctly on certain devices. The issue, which first appeared in …