North Korean Hackers Adopted AI to Generate Malware Attacking Developers and Engineering Teams

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

North Korea–aligned hackers have launched a new campaign that turns artificial intelligence into a weapon against software teams. Using AI-written PowerShell code, the group known as KONNI is delivering a …

New Windows 11 KB5074109 Update Breaks Systems – Microsoft Asks Users to Remove Update

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft’s January 2026 Windows 11 security update KB5074109 has triggered multiple system stability issues, including lockups and black screens, prompting users to uninstall it. Reports highlight graphics regressions and app …

ZAP Releases OWASP PenTest Kit Browser Extension for Application Security Testing

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Zed Attack Proxy (ZAP) team has released the OWASP PTK add-on, version 0.2.0 alpha, integrating the OWASP Penetration Testing Kit (PTK) browser extension directly into ZAP-launched browsers. This streamlines …

New Osiris Ransomware Using Wide Range of Living off the Land and Dual-use Tools in Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A newly discovered ransomware family called Osiris launched attacks against a major food service company in Southeast Asia during November 2025. Security researchers have identified this threat as a completely …

Halo Security Achieves SOC 2 Type II Compliance, Demonstrating Sustained Security Excellence Over Time

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Miami, Florida, January 22nd, 2026, CyberNewsWire Halo Security, a leading provider of external attack surface management and penetration testing services, today announced it has successfully achieved SOC 2 Type II …

Proxyware Malware Disguised as Notepad++ Tool Leverages Windows Explorer Process to Hijack Systems

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated malware campaign targeting unsuspecting users has emerged, disguising malicious proxyware as legitimate Notepad++ installations. This attack, orchestrated by the threat actor Larva-25012, exploits users seeking cracked software through …

Attackers Infrastructure Exposed Using JA3 Fingerprinting Tool

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new powerful method to detect and trace attacker infrastructure using JA3 fingerprinting, a technique that identifies malicious tools through network communication patterns. While many security teams considered JA3 fingerprints …

Researchers Detailed r1z Initial Access Broker OPSEC Failures

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

U.S. authorities have pulled back the curtain on “r1z,” an initial access broker who quietly sold gateways into corporate networks around the world. Operating across popular cybercrime forums, he offered …

Hackers Earned $516,500 for 37 Unique 0-day Vulnerabilities – Pwn2Own Automotive 2026

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Day One of Pwn2Own Automotive 2026, which delivered $516,500 USD for 37 zero-days, the event has now accumulated $955,750 USD across 66 unique vulnerabilities, demonstrating the automotive sector’s substantial attack …