GlassWorm Campaign Uses 72 Malicious Open VSX Extensions to Broaden Reach

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

GlassWorm 72 Malicious Open VSX Extensions In a major escalation of supply chain attacks, the GlassWorm malware campaign has evolved to infect developer environments using transitive dependencies. On March 13, 2026, the Socket Research Team reported identifying at least 72 …

Critical LangSmith Account Takeover Vulnerability Puts Users at Risk

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Critical LangSmith Account Takeover Vulnerability Miggo Security researchers have identified a critical vulnerability in LangSmith, tracked as CVE-2026-25750, that exposes users to potential token theft and complete account takeover. As a central hub for debugging and monitoring large language model …

Authorities Crack Down on 45,000 Malicious IPs Powering Ransomware Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Authorities Crack Down on 45000 Malicious IPs In a massive international crackdown on cybercrime, law enforcement agencies from 72 countries have successfully dismantled over 45,000 malicious IP addresses and servers. Coordinated by INTERPOL, “Operation Synergia III” targeted the critical infrastructure …

Microsoft Confirms Windows 11 24H2/25H2 Bug Blocks Access to the System Drive C

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has officially acknowledged a critical bug affecting Windows 11 users on certain Samsung devices, in which the system drive (C:) becomes completely inaccessible after installing the February 2026 security update. The company is now actively investigating the issue in …

Loblaw Data Breach – Hackers Accessed IT Network and Customer Information

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Loblaw Data Breach Canada’s largest food and pharmacy retailer has announced an ongoing investigation into a recent corporate data breach. On March 10, 2026, the company notified its customers that unauthorized threat actors successfully infiltrated a segment of its IT …

Authorities Dismantle Malicious Proxy Service Used to Deploy Malware Attacking Thousands of Users

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Authorities Dismantle Malicious Proxy Service An international law enforcement operation led by the U.S. Justice Department has successfully dismantled SocksEscort, a massive residential proxy network. The malicious service compromised thousands of home and small business routers worldwide, enabling cybercriminals to …

Apple Released Emergency Updates for iOS 15.8.7 to Thwart ‘Coruna’ Exploit Kit

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Apple Released Emergency Updates iOS 15.8.7 Apple has rolled out an emergency security update, iOS 15.8.7 and iPadOS 15.8.7, to protect older devices from a severe threat known as the ‘Coruna’ exploit kit. Released on March 11, 2026, this critical …

Starbucks Data Breach – Hundreds of Users’ Personal Data Exposed

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Starbucks Data Breach Starbucks Corporation has confirmed a data breach affecting an undisclosed number of its employees, exposing highly sensitive personal and financial information after unauthorized actors gained access to internal partner accounts through a sophisticated phishing scheme. On or …

Veeam Patches Multiple Critical RCE Vulnerabilities on Backup Server

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Veeam Patches Vulnerabilities on Backup Server A critical security update has been released for Backup & Replication software to fix severe vulnerabilities that could allow attackers to execute remote code and escalate privileges. Released on March 12, 2026, the latest …

Metasploit Pro 5.0.0 Released With Powerful New Modules and Critical Enhancements

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Metasploit Pro 5.0.0 Released As cybercriminals continue to weaponize new vulnerabilities, the demand for continuous red-teaming and proactive security assessments has never been higher. Annual penetration tests are no longer enough to secure modern, complex environments. To help security teams …