AI-Powered Exploitation May Collapse the Patch Window for Defenders

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Artificial intelligence is reshaping cybercrime in ways that defenders can no longer treat as distant or theoretical. New frontier AI models are showing a growing ability to find software flaws, …

Claude Code, Gemini CLI, and GitHub Copilot Vulnerable to Prompt Injection via GitHub Comments

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical cross-vendor vulnerability class dubbed “Comment and Control” is a new category of prompt injection attacks that weaponizes GitHub pull request titles, issue bodies, and issue comments to hijack AI coding …

SideWinder Uses Fake Chrome PDF Viewer and Zimbra Clone to Steal Government Webmail Credentials

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A well-known advanced persistent threat group called SideWinder has launched a highly targeted phishing campaign against South Asian government organizations, using a fake Chrome PDF viewer and a pixel-perfect clone …

PoC Exploit Released for Windows Snipping Tool NTLM Hash Leak Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A proof-of-concept (PoC) exploit has been publicly released for a newly disclosed vulnerability in Microsoft’s Snipping Tool that allows attackers to silently steal users’ Net-NTLM credential hashes by luring them …

iTerm2 Flaw Abuses SSH Integration Escape Sequences to Turn Text Into Code Execution

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity researchers, working in partnership with OpenAI, have uncovered a fascinating and severe vulnerability in iTerm2, a widely used macOS terminal emulator. According to Califio, the flaw abuses the application’s …

Critical Anthropic’s MCP Vulnerability Enables Remote Code Execution Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical flaw in Anthropic’s Model Context Protocol (MCP) exposes over 150 million downloads to potential compromise. The vulnerability could enable full system takeover across up to 200,000 servers. The OX …

Gh0st RAT and CloverPlus Adware Delivered Together in New Dual-Payload Malware Campaign

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A newly identified malware campaign is raising serious concerns across the cybersecurity community by delivering two very different threats at the same time. Attackers are now using a single, obfuscated …

Hackers Use AppDomain Hijacking to Turn Trusted Intel Utility Into Malware Launcher

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Security researchers have uncovered a highly sophisticated attack campaign that weaponizes a legitimate, digitally signed Intel utility to secretly deploy malware, all without touching a single line of the original …

North Korea-Linked UNC1069 Uses Fake Zoom and Teams Meetings to Hack Crypto Professionals

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A North Korean threat group known as UNC1069 has been running a sophisticated campaign that tricks cryptocurrency and Web3 professionals into joining fake online meetings, only to infect their computers …

Researchers Say Iranian MOIS Uses Multiple Hacker Personas for One Coordinated Cyber Campaign

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Iran’s Ministry of Intelligence and Security (MOIS) has been running a long and carefully organized cyber campaign using three separate hacker identities. These identities, known as Homeland Justice, Karma/KarmaBelow80, and …