New GhostTree Attack Causing EDR Products to Hang and Leave Files Unscanned

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 21, 2026 A novel evasion technique called GhostTree, which exploits NTFS junctions to create recursive directory loops. Uncovered by Varonis Threat Labs, this method traps Endpoint Detection and Response …

Claude Code’s Network Sandbox Vulnerability Exposes User Credentials and Source Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 21, 2026 Anthropic’s Claude Code AI coding assistant harbored a critical network sandbox bypass for over five months, allowing attackers to exfiltrate credentials, source code, and environment variables from …

Gremlin Stealer Stores C2 URLs and Exfiltration Paths in Encrypted Resource Sections

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 21, 2026 A newly analyzed variant of the Gremlin stealer malware has raised alarms by hiding its command-and-control (C2) addresses and data exfiltration paths inside encrypted resource sections of …

Void Botnet Uses Ethereum Smart Contracts for Seizure-Resistant C2 Infrastructure

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 20, 2026 A new botnet called Void has emerged on the cybercrime underground, bringing a troubling twist to how attackers manage their operations remotely. Instead of relying on traditional …

Trapdoor Android Ad Fraud Operation Uses 455 Malicious Apps to Generate Fake Clicks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 20, 2026 A large-scale ad fraud operation called Trapdoor has been discovered targeting Android users through 455 malicious apps, quietly generating fake ad clicks and draining real advertising budgets …

PinTheft Linux Vulnerability Let Attackers Gain Root Access – PoC Released

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 20, 2026 A proof-of-concept (PoC) exploit was published for a new Linux Local Privilege Escalation (LPE) vulnerability dubbed “PinTheft.” Discovered by Aaron Esau of the V12 security team, the …

Microsoft Releases Mitigation for Windows BitLocker Security Bypass 0-Day Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 20, 2026 Microsoft has disclosed a critical zero-day vulnerability in Windows BitLocker, tracked as CVE-2026-45585, that allows threat actors with physical access to bypass full-disk encryption entirely, potentially exposing …