Critical Pack2TheRoot Vulnerability Let Attackers Gain Root Access or Compromise the System

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A high-severity privilege escalation vulnerability, dubbed Pack2TheRoot (CVE-2026-41651, CVSS 3.1: 8.8), has been publicly disclosed by Deutsche Telekom’s Red Team, affecting multiple major Linux distributions in their default installations. The flaw allows any local unprivileged user to silently install or …

Apple Fixes Notification Privacy Flaw That Allowed FBI to Access Deleted Signal Messages

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Apple released iOS 26.4.2 and iPadOS 26.4.2 on April 22, 2026, to patch a critical notification privacy vulnerability that allowed law enforcement to extract Signal message content from iPhones — even after the app had been deleted. The flaw, tracked …

Checkmarx KICS Official Docker Repo Compromised to Inject Malicious Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A significant supply chain attack targeting the official checkmarx/kics Docker Hub repository, where threat actors pushed trojanized images capable of harvesting and exfiltrating sensitive developer credentials and infrastructure secrets. Docker’s internal monitoring flagged suspicious activity around KICS image tags on …

109 Fake GitHub Repositories Used to Deliver SmartLoader and StealC Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A large-scale malware distribution campaign has been uncovered involving 109 fake GitHub repositories that were used to trick users into downloading two dangerous malware tools named SmartLoader and StealC. The campaign was carefully built around cloned versions of legitimate open-source …

Malicious Google Ads Target Crypto Users With Wallet Drainers and Seed Phrase Theft

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals are now using Google’s own advertising platform to steal cryptocurrency from unsuspecting users. They place fake ads that look exactly like real links to popular crypto applications, and when users click on them, they land on websites designed to …

Cybercriminals Exploit French Fintech Accounts to Move Stolen Money Before Detection

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Organized fraud networks are now using a new method to move stolen money in France. They create fake business accounts on freelancer fintech platforms and use those accounts as mule accounts to launder funds quickly, often before anyone can trace …

Microsoft Warns Jasper Sleet Uses Fake IT Worker Identities to Infiltrate Cloud Environments

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A North Korea-linked threat group is quietly getting hired by real companies. Jasper Sleet, a threat actor tied to North Korea, has been building fake professional identities and using them to land legitimate remote IT jobs, giving them direct access …

Claude Mythos AI Model Uncovers 271 Zero-Day Vulnerabilities in Firefox

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Anthropic’s latest frontier AI model, Claude Mythos Preview, has identified a staggering 271 zero-day vulnerabilities in Mozilla Firefox marking a seismic shift in AI-powered cybersecurity defense. The findings, addressed in Firefox 150, represent the most significant single batch of security …

New DinDoor Backdoor Abuses Deno Runtime and MSI Installers to Evade Detection

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A newly identified backdoor called DinDoor is using the legitimate Deno JavaScript runtime and MSI installer files to quietly slip past security defenses and compromise targeted systems. The malware, tracked as a variant of the Tsundere Botnet, relies on trusted, …

Compromised Namastex npm Packages Deliver TeamPCP-Style CanisterWorm Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A serious supply chain threat has surfaced in the npm ecosystem. Malicious versions of packages belonging to Namastex.ai have been found carrying CanisterWorm malware, a self-propagating backdoor that mirrors the attack style of the threat actor known as TeamPCP. The …