Attackers Abuse Amazon SES to Send Authenticated Phishing Emails That Bypass Security

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 5, 2026 Threat actors are increasingly turning to Amazon’s own cloud email infrastructure to deliver phishing messages that look completely genuine, passing every standard security check along the way. Phishing has always been about deception. Attackers craft emails designed …

New Attribution Framework Connects APT Campaigns Through Strategic, Operational, and Technical Layers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 5, 2026 Tracking Advanced Persistent Threat (APT) groups has never been a simple task. For years, security organizations have relied on identifying consistent behaviors, tools, and infrastructure to pin activity to a known threat actor. But that approach is …

Beware of Fake ‘Notepad++ for Mac’ Website, Possibly Could Harm your Machine

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 5, 2026 A fake website claiming to offer an official macOS version of the popular text editor Notepad++ has been making rounds online, raising serious cybersecurity concerns across the tech community. The site, operating under the domain notepad-plus-plus-mac.org, falsely …

Critical Android Zero-Click Vulnerability Grants Remote Shell Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 5, 2026 Google has published the May 2026 Android Security Bulletin, alerting the ecosystem to a highly severe remote code execution (RCE) flaw. Tracked as CVE-2026-0073, this critical vulnerability resides deep within the core Android System component. It allows …

pnpm 11 Turns On Minimum Release Age by Default to Reduce npm Supply Chain Risk

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 5, 2026 The npm ecosystem has long been a target for supply chain attacks, where threat actors exploit the open nature of public package registries to push malicious code into developer environments. With pnpm 11, the package manager takes …

Microsoft Edge Stores All Saved Passwords in Cleartext Process Memory at Launch

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 5, 2026 A security researcher has discovered that Microsoft Edge decrypts every stored password into process memory the moment the browser launches and keeps them there as cleartext, regardless of whether the user ever visits those sites. The finding, …

Apache HTTP Server Exposes Millions of Servers to Remote Code Execution Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Apache Software Foundation has released a critical security update for Apache HTTP Server, patching five vulnerabilities, including a dangerous double-free flaw capable of enabling Remote Code Execution (RCE) in version 2.4.67, released on May 4, 2026. All users running …

New MicroStealer Malware Actively Attacking Telecom & Education Sectors

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 4, 2026 A new infostealer malware called MicroStealer has quietly entered the threat landscape and is already showing a worrying reach. First spotted in December 2025, the malware has picked up speed fast, showing up across sandbox environments within …

New xlabs_v1 Botnet Targets Minecraft Servers Through ADB-Exposed Android Devices

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 4, 2026 A newly identified botnet called xlabs_v1 has been found targeting Minecraft game servers by exploiting Android devices with the Android Debug Bridge (ADB) port left open and exposed to the internet. The botnet is a modified version …

CISA Warns of Linux Kernel 0-Day Vulnerability Exploited in Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 4, 2026 The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical Linux kernel zero-day vulnerability to its Known Exploited Vulnerabilities (KEV) catalog, warning federal agencies and organizations worldwide to patch immediately or discontinue use of affected …