Hackers Sabotage Iranian Ships Using Maritime Communications Terminals in Its MySQL Database

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated campaign of cyber sabotage unfolded against Iran’s maritime communications infrastructure in late August 2025, cutting off dozens of vessels from vital satellite links and navigation aids. Rather than …

Proxyware Malware Mimic as YouTube Video Download Site Delivers Malicious Javascripts

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity researchers have observed a surge in deceptive sites masquerading as YouTube video download services to deliver Proxyware malware in recent weeks. Victims seeking to grab videos in MP4 format …

Hackers Using PUP Advertisements to Silently Drop Windows Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In recent weeks, cybersecurity investigators have uncovered a novel campaign in which hackers leverage seemingly benign potentially unwanted program (PUP) advertisements to deliver stealthy Windows malware. The lure typically begins …

Chinese APT Hackers Using Proxy and VPN Service to Anonymize Infrastructure

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In recent months, cybersecurity researchers have observed a surge in targeted campaigns by a sophisticated Chinese APT group leveraging commercial proxy and VPN services to mask their attack infrastructure. The …

New Android Spyware Disguised as an Antivirus Attacking Business Executives

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In recent months, security teams have observed the emergence of a highly versatile Android backdoor, Android.Backdoor.916.origin, masquerading as a legitimate antivirus application. Distributed via private messaging services under the guise …

Kimsuky APT Data Leak – GPKI Certificates, Rootkits and Cobalt Strike Personal Uncovered

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In late June 2025, a significant operational dump from North Korea’s Kimsuky APT group surfaced on a dark-web forum, exposing virtual machine images, VPS infrastructure, customized malware and thousands of …

Beware of Website Mimicking Google Play Store Pages to Deliver Android Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated Android malware campaign has resurfaced, exploiting deceptive websites that perfectly mimic legitimate Google Play Store application pages to distribute the notorious SpyNote Remote Access Trojan (RAT). This malicious …

5 Common Back-to-School Online Scams Powered Using AI and How to Avoid Them

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

As students return to campus and online learning platforms, cybercriminals are increasingly leveraging artificial intelligence to create sophisticated scams targeting the education sector. These AI-enhanced attacks have become more convincing …

Threat Actors Weaponizes AI Generated Summaries With Malicious Payload to Execute Ransomware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A novel adaptation of the ClickFix social engineering technique has been identified, leveraging invisible prompt injection to weaponize AI summarization systems in email clients, browser extensions, and productivity platforms.  By …

0-Click Zendesk Account Takeover Vulnerability Enables Access to all Zendesk Tickets

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security vulnerability has been discovered in Zendesk’s Android SDK implementation that allows attackers to perform mass account takeovers without any user interaction.  The flaw, which earned a $3,000 …