Surge in AI-Driven Phishing Attacks and QR Code Quishing in 2025 Spam and Phishing Report

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The distribution of malicious software through pirated games and cracked applications continues to be a highly effective strategy for cybercriminals. By exploiting the widespread desire for free access to premium …

Critical Vulnerability in Next-Mdx-Remote Allows Arbitrary Code Execution in React Server-Side Rendering

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Vulnerability in Next-Mdx-Remote Security advisory HCSEC-2026-01 revealed a critical vulnerability in the next-mdx-remote library that allows attackers to execute arbitrary code on servers rendering untrusted MDX content. Tracked as CVE-2026-0969, …

Over 1,800 Windows Servers Compromised by BADIIS Malware in Large-Scale SEO Poisoning Campaign

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated cyber campaign has compromised over 1,800 Windows servers globally, using a potent malware strain known as BADIIS. This operation targets Internet Information Services (IIS) environments, transforming legitimate infrastructure …

CISA Warns of Notepad++ Code Execution Vulnerability Exploited in Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Notepad++ Code Execution Vulnerability CISA has added CVE-2025-15556 to its Known Exploited Vulnerabilities (KEV) catalog, highlighting active exploitation of a critical code execution flaw in Notepad++, a widely used open-source …

Odido Telecom Suffers Cyberattack – 6.2 Million Customer Accounts Affected

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Odido Telecom Suffers Cyberattack Odido Telecom, a leading Dutch telecommunications provider, confirmed on February 12, 2026, that hackers accessed personal data from 6.2 million customer accounts in a major cyberattack. …

DragonForce Ransomware Group Expands Its Influence with Cartel-like Operations and Targeting 363 Companies Since 2023

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

DragonForce has established itself as a formidable entity in the cybercrime landscape, having been active since December 2023. Operating under a sophisticated Ransomware-as-a-Service (RaaS) model, the group aggressively brands itself …

DShield Sensor Captures Self-Propagating SSH Worm Exploit Using Credential Stuffing and Multi-Stage Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated self-spreading worm has emerged that can completely compromise Linux systems through SSH brute-force attacks in just four seconds. This new threat combines traditional credential stuffing techniques with modern …

Rogue VM Linked to Muddled Libra in VMware vSphere Attack, Revealing Key TTPs

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In a September 2025 incident response case, investigators found a rogue virtual machine inside a VMware vSphere environment and tied it with high confidence to Muddled Libra, also tracked as …

WordPress Backup Plugin Vulnerability Exposes 800,000 Sites to Remote Code Execution Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical flaw in the WPvivid Backup & Migration WordPress plugin can let an unauthenticated attacker upload files and run code on the server, a path that often ends in …

Chrome Security Update – Patch for Vulnerabilities that Enables Code Execution Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Chrome Security Update Patch Vulnerabilities Google has released Chrome 145 to the stable channel for Windows, Mac, and Linux, addressing 11 security vulnerabilities that could enable attackers to execute malicious …