Beware of Phishing Email from Kimusky Hackers With Subject Spetember Tax Return Due Date Notice

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new wave of phishing attacks purporting to originate from South Korea’s National Tax Service has emerged, leveraging familiar electronic document notifications to trick recipients into divulging their Naver credentials. …

Magento and Adobe SessionReaper Vulnerability Exposes Thousands of Online Stores to Automated Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The U.S. Department of the Treasury has unveiled a sweeping sanctions campaign against a network of cyber scam centers across Southeast Asia that collectively stole more than ten billion dollars …

Zoom Security Update – Patch for Multiple Vulnerabilities in Clients for Windows and macOS

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Zoom released a security update addressing multiple vulnerabilities in its software, including Zoom Workplace and various clients for Windows and macOS. The patches cover one high-severity flaw and several medium-severity …

How a Faulty Windows Driver Can Cause a System Crash and Blue Screen of Death

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A recent analysis of a Windows kernel-memory dump has provided a detailed look into a DRIVER_POWER_STATE_FAILURE, a critical error that results in a Blue Screen of Death (BSOD). The investigation …

New Cyber Attack Weaponizes DeskSoft to Deploy Malware Leveraging RDP Access to Execute Commands

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated cyber attack has emerged targeting organizations through a malicious impersonation of DeskSoft’s legitimate EarthTime application, deploying multiple malware families in a coordinated ransomware operation. The attack represents a …

Top 10 Best External Penetration Testing Companies in 2025

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

External penetration testing is a crucial practice for any organization aiming to validate its security posture against real-world threats. In 2025, with the proliferation of cloud services, SaaS applications, and …

New Malware Attack Leveraging Exposed Docker APIs to Maintain Persistent SSH Root Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated malware strain targeting exposed Docker APIs has emerged with enhanced infection capabilities that go beyond traditional cryptomining operations. The threat, discovered in August 2025, demonstrates evolved tactics designed …

SAP Security Patch Day September 2025 – 21 Vulnerabilities and 4 Critical One’s Patched

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

As part of its scheduled security maintenance, SAP released its September 2025 Patch Day notes, addressing a total of 21 new vulnerabilities and providing updates to four previously released security …

MostereRAT Attacking Windows Systems With AnyDesk/TightVNC to Enable Remote Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Security researchers have uncovered a sophisticated campaign in recent weeks leveraging a novel Remote Access Trojan (RAT) dubbed MostereRAT that targets Windows systems by deploying legitimate remote access tools such …