European Space Agency Confirms Breach of Servers Outside the Corporate Network

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The European Space Agency (ESA) has confirmed a cybersecurity breach affecting a limited number of external servers, marking a rare public admission of vulnerability in the continent’s premier space organization. …

Hackers Infiltrated Maven Central Masquerading as a Legitimate Jackson JSON Library

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new malware campaign has successfully infiltrated Maven Central, one of the most trusted repositories for Java developers, by masquerading as a legitimate Jackson JSON library extension. The malicious package, …

Critical Vulnerability in SmarterMail Let Attackers Execute Remote Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

SmarterTools has issued an urgent security advisory addressing a critical vulnerability in SmarterMail that could allow attackers to execute remote code on mail servers. The flaw, tracked as CVE-2025-52691, poses …

CISA Warns of MongoDB Server Vulnerability(CVE-2025-14847) Exploited in Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

CISA has added a critical MongoDB Server vulnerability to its Known Exploited Vulnerabilities (KEV) catalog, warning that the flaw is being actively exploited in cyberattacks. CVE-2025-14847 affects MongoDB Server and …

70,000+ MongoDB Servers Vulnerable to MongoBleed Exploit – PoC Released

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability in MongoDB Server is putting tens of thousands of databases worldwide at risk. Dubbed MongoBleed and tracked as CVE-2025-14847, this high-severity flaw allows unauthenticated attackers to remotely extract sensitive data …

Critical 0-Day RCE Vulnerability in Networking Devices Exposes 70,000+ Hosts

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical zero-day vulnerability has been discovered in XSpeeder’s SXZOS firmware, affecting tens of thousands of SD-WAN appliances, edge routers, and smart TV controllers deployed globally. The vulnerability, designated PWN-25-01, …

Hackers Exploit Copilot Studio’s New Connected Agents Feature to Gain Backdoor Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft’s newly unveiled “Connected Agents” feature in Copilot Studio, announced at Build 2025, is creating a significant security vulnerability. Attackers are already exploiting to gain unauthorized backdoor access to critical …

EmEditor Editor Website Hacked to Deliver Infostealer Malware in Supply Chain Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A major supply chain attack targeting EmEditor, a widely used text editor software, has exposed millions of users to sophisticated infostealer malware. Between December 19 and December 22, 2025, the …