WhatsApp Developers Under Attack From Weaponized npm Packages with Remote Kill Switch

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Two malicious npm packages have emerged as sophisticated weapons targeting WhatsApp developers through a remote-controlled destruction mechanism that can completely wipe development systems. The packages, identified as naya-flore and nvlore-hsc, …

SonicWall Confirms No New SSLVPN 0-Day – Ransomware Attack Linked to Old Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity firm SonicWall has officially addressed recent concerns about a potential new zero-day vulnerability in its Secure Sockets Layer Virtual Private Network (SSLVPN) products. In a statement to Cybersecurity News, …

ScarCruft Hacker Group Launched a New Malware Attack Using Rust and PubNub

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The North Korean state-sponsored Advanced Persistent Threat (APT) group ScarCruft has launched a sophisticated new malware campaign targeting South Korean users through a deceptive postal-code update notice. This latest attack …

Microsoft 365 Direct Send Weaponized to Bypass Email Security Defenses

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity researchers have uncovered a sophisticated spear phishing campaign that weaponizes Microsoft 365’s Direct Send feature to bypass traditional email security defenses and conduct hyper-personalized credential theft attacks. The campaign …

New Ghost Calls Attack Abuses Web Conferencing for Covert Command & Control

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated new attack technique called “Ghost Calls” exploits web conferencing platforms to establish covert command and control (C2) channels.  Presented by Adam Crosser from Praetorian at Black Hat USA …

CISA Warns of ‘ToolShell’ Exploits Chain Attacks SharePoint Servers – Discloses IOCs and detection signatures

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) released an urgent analysis in early July 2025, detailing a sophisticated exploit chain targeting on-premises Microsoft SharePoint servers. Dubbed “ToolShell,” the campaign …

WhatsApp Has Taken Down 6.8 Million Accounts Linked to Malicious Activities

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

WhatsApp has successfully dismantled 6.8 million accounts linked to fraudulent activities during the first half of 2024, representing a significant escalation in the platform’s fight against organized cybercrime.  The takedown …

New Active Directory Lateral Movement Techniques that Bypasses Authentication and Exfiltrate Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Sophisticated attack vectors unveiled that exploit hybrid Active Directory and Microsoft Entra ID environments, demonstrating how attackers can achieve complete tenant compromise through previously unknown lateral movement techniques. These methods, …

HeartCrypt-Packed EDR Killer Tools ‘AVKiller’ Actively Used in Ransomware Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity teams have confronted a rising threat from a novel “EDR killer” payload in recent months, commonly referred to as AVKiller, which has been observed disabling endpoint defenses to facilitate …