Iranian Hackers Abuse AppDomainManager Hijacking to Evade EDR Detection

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 1, 2026 Iranian hackers have taken their cyberespionage playbook to a new level, deploying a sophisticated .NET hijacking technique to slip past endpoint defenses and target organizations across the …

SideCopy Hackers Deploy Persistent XenoRAT Malware to Target Afghanistan Finance Ministry

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 1, 2026 A Pakistan-linked threat group known as SideCopy has launched a focused cyberattack against Afghanistan’s Ministry of Finance, deploying a persistent remote access tool called XenoRAT. The campaign, …

Critical Plesk Vulnerability Let Users Execute Arbitrary Commands on the Server

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 1, 2026 A newly disclosed critical vulnerability in Plesk, tracked as CVE-2026-44962, is raising serious security concerns after researchers confirmed it can allow authenticated users to execute arbitrary operating …

Iran-Linked Hackers Destroy IT, Backups, and Recovery Systems in Cyberattack targeting Middle East

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 1, 2026 Iran-linked hackers have launched a sweeping campaign of digital destruction across the United States and the Middle East, wiping IT systems, erasing backups, and dismantling recovery infrastructure …

New DriveSurge Threat Actor Uses ClickFix and Fake Updates to Infect Website Visitors

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 1, 2026 A newly identified threat actor named DriveSurge has been quietly compromising thousands of legitimate websites to push malware onto unsuspecting visitors. Using a combination of fake browser …

Microsoft Investigates MFA Setup Failure and MySigns-In Portal Outage

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft is currently investigating a service disruption affecting users attempting to set up multi-factor authentication (MFA) or access the self-service sign-in portal at mysignins.microsoft.com. The issue was officially acknowledged by …

Microsoft Tightens Entra ID Password Resets With New Authentication Change

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 1, 2026 Microsoft has announced a significant security update to its Entra ID Self-Service Password Reset (SSPR) feature, introducing stricter authentication requirements designed to reduce identity-based attacks. The update …

Famous Chollima Hackers Target PHP Developers Using Compromised Packagist Package

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 1, 2026 A well-known North Korean threat actor has been caught hiding malware inside a legitimate PHP package available through Packagist, the main package repository for PHP projects. The …

Hackers Attacking Signal Users to Steal Backups in New Wave of Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 1, 2026 A new wave of phishing attacks is targeting users of Signal, the encrypted messaging app trusted by journalists, activists, and privacy-conscious individuals worldwide. Hackers are impersonating Signal’s …

Microsoft Clarifies It Won’t Sue Security Researchers Amid Nightmare-Eclipse Controversy

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has clarified its stance, reducing perceived legal threats and reaffirming its commitment to coordinated vulnerability disclosure, following significant backlash from the security research community. In a carefully worded statement released in …