Windows Packer pkr_mtsi Powers Widespread Malvertising Campaigns Delivering Multiple Malware Families

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated Windows packer known as pkr_mtsi has emerged as a powerful tool for delivering multiple malware families through widespread malvertising campaigns. First detected on April 24, 2025, this malicious …

ownCloud Urges Users to Enable Multi-Factor Authentication Following Credential Theft

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

ownCloud has urgently urged users of its Community Edition to enable multi-factor authentication (MFA). A threat intelligence report from Hudson Rock highlighted incidents in which attackers compromised self-hosted file-sharing platforms, …

GoBruteforcer Botnet brute-forces Passwords for FTP, MySQL, and phpMyAdmin on Linux Servers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated Go-based botnet dubbed GoBruteforcer is aggressively targeting Linux servers worldwide, brute-forcing weak passwords on internet-exposed services including FTP, MySQL, PostgreSQL, and phpMyAdmin. Check Point Research recently documented a …

From Tycoon2FA to Lazarus Group – Inside ANY.RUN’s Biggest Discoveries of 2025

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

ANY.RUN, the interactive malware analysis platform, has wrapped up 2025 with impressive growth figures and significant contributions to the cybersecurity community. The company’s annual report reveals how its global user …

Researchers Manipulate Stolen Data to Corrupt AI Models and Generate Inaccurate Outputs

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Researchers from the Chinese Academy of Sciences and Nanyang Technological University have introduced AURA, a novel framework to safeguard proprietary knowledge graphs in GraphRAG systems against theft and private exploitation. …

Chinese Hackers Deploy NFC-enabled Android Malware to Steal Payment Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Chinese threat actors have launched a sophisticated campaign using NFC-enabled Android malware called Ghost Tap to intercept and steal financial information from victims worldwide. The malware operates through a deceptive …

Threat Actors Leversges Google Cloud Services to Steal Microsoft 365 Logins

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated new phishing campaign has emerged, leveraging the trusted infrastructure of Google Cloud services to bypass security filters and steal sensitive Microsoft 365 login credentials. By abusing legitimate workflow …

Microsoft to Cancel Plans Imposing Daily Limit For Exchange Online Bulk E-mails

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has announced the indefinite cancellation of its Mailbox External Recipient Rate Limit in Exchange Online, reversing a previously planned restriction on bulk email sending. The decision comes after significant …

ToddyCat Malware Compromises Microsoft Exchange Servers using ProxyLogon Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

ToddyCat, a sophisticated cyber espionage group, has emerged as a persistent threat targeting high-profile organizations across multiple continents. The group began operations in December 2020 by compromising Microsoft Exchange servers …

TOTOLINK EX200 Extender Vulnerability Allow Attacker to Gain Full System Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A severe vulnerability in the TOTOLINK EX200 Wi-Fi extender could allow attackers to gain full system access via an unauthenticated telnet root service, researchers warned. The flaw, tracked as CVE-2025-65606 and assigned …