Critical Check Point VPN Vulnerabilities Enable Remote Code Execution Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Check Point Software has disclosed and patched two critical VPN-related vulnerabilities, CVE-2026-85102 and CVE-2026-85103, both carrying a maximum CVSS score of 9.8 and both capable of allowing unauthenticated remote code …

LiteLLM Flaws Let Attackers Execute Code as Root and Steal Cloud Credentials

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

LiteLLM deployments can expose far more than an organization’s AI spending. Newly disclosed weaknesses in the open-source gateway could let attackers run code as root inside a container, reach connected …

Hackers Pose as Domain Controllers to Steal Active Directory Password Hashes

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Threat actors are increasingly abusing Active Directory replication to impersonate domain controllers and steal password hashes from enterprise networks. This technique, known as a DCSync attack, can let attackers obtain …

CISA Warns of Fortinet Heap-based Buffer Overflow Flaw Exploited in Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The U.S. Cybersecurity and Infrastructure Security Agency has added a critical Fortinet vulnerability, tracked as CVE-2025-25249, to its Known Exploited Vulnerabilities catalog after confirming evidence of active exploitation. The flaw …

OpenSSL 4.1.0 Alpha1 Released With DTLS 1.3 and Faster Post-Quantum Cryptography

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The OpenSSL Project has released OpenSSL 4.1.0 Alpha1, an early preview of its forthcoming feature release. This update adds support for Datagram Transport Layer Security (DTLS) 1.3, GREASE for more …

Palo Alto PAN-OS Vulnerability Enables Arbitrary Code Execution as Root User

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Palo Alto Networks has disclosed a high-severity PAN-OS vulnerability that could allow an unauthenticated remote attacker to execute arbitrary code with root privileges on affected PA-Series hardware firewalls. Tracked as …

OpenAI Builds ‘Defense Factory’ Where AI Agents Continuously Find and Fix Vulnerabilities

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

OpenAI has introduced a “Defense Factory,” an automated, agent-first cybersecurity operation that continuously discovers, validates, and remediates vulnerabilities. The company says traditional defenses may no longer be sufficient as long-running …

Hackers Use Fake Claude and ChatGPT Installers to Infect Mac Users With Password-Stealing Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Mac users seeking AI tools face a malware trap. Attackers are using fake Claude and ChatGPT installers and sponsored search results to push MacSync, a macOS password stealer. The campaign …

Top 10 Best Ransomware Protection Solutions in 2026

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Bottom line up front: no single product “stops ransomware.” Modern attacks are staged intrusions initial access, credential theft, lateral movement, exfiltration, then encryption — and each stage has different controls. …