15,200 OpenClaw Control Panels with Full System Access Exposed to the Internet

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

OpenClaw Control Panels Exposed A critical security failure in the rapidly adopting “agentic AI” ecosystem has left tens of thousands of personal and corporate AI assistants fully exposed to the …

DPRK IT Workers Impersonating Individuals Using Real LinkedIn Accounts to Apply for Remote Roles

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The landscape of remote employment faces a persistent and evolving challenge as North Korean operatives refine their strategies to infiltrate global organizations. For years, these actors have sought remote information …

Hackers Exploiting Ivanti EPMM Devices to Deploy Dormant Backdoors

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Ivanti EPMM Devices Exploited Hackers are actively exploiting Ivanti Endpoint Manager Mobile (EPMM) appliances to plant “dormant” backdoors that can sit unused for days or weeks. Ivanti recently disclosed two …

Criminal IP Integrates with IBM QRadar to Deliver Real-Time Threat Intelligence Across SIEM and SOAR

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Torrance, United States / California, February 9th, 2026, CyberNewswire Criminal IP (criminalip.io), the AI-powered threat intelligence and attack surface intelligence platform, is now integrated with IBM QRadar SIEM and QRadar …

Discord to Age-Restrict User Access to Key Features Starting Next Month

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Discord Age-Restrict User Access Discord announced it will begin globally rolling out “teen-by-default” safety controls and an expanded “age assurance” system in early March, introducing clearer boundaries around age-restricted experiences …

Critical 0-Click RCE Vulnerability in Claude Desktop Extensions Exposes 10,000+ Users to Remote Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Claude Desktop Extensions 0-Click Vulnerability A new critical vulnerability discovered by security research firm LayerX has exposed a fundamental architectural flaw in how Large Language Models (LLMs) handle trust boundaries. …

Microsoft Exchange Online Flags Customers Legitimate Email as Phishing

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft Exchange Online Flags Legitimate Email Microsoft Exchange Online is experiencing a service degradation that incorrectly flags legitimate customer emails as phishing, quarantining them and disrupting communications. The issue, identified …

Hackers Exploit Legitimate Apple and PayPal Invoice Emails in DKIM Replay Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity threats are swiftly evolving beyond easily spotted, poorly written phishing emails to sophisticated methods that leverage trusted digital infrastructure. Attackers are now exploiting legitimate business workflows within widely used …

Roundcube Webmail Vulnerability Let Attackers Track Email Opens

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Roundcube Webmail Vulnerability Roundcube, one of the world’s most popular open-source webmail solutions, has released critical security updates to address a privacy bypass vulnerability. The flaw detailed by NULL CATHEDRAL …

New Node.js Based LTX Stealer Attack Users to Exfiltrate Login Credentials

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated new malware strain dubbed “LTX Stealer” has emerged in the cyber threat landscape, utilizing a unique Node.js-based architecture to compromise Windows systems. First surfacing in early 2026, this …