Multiple Apache OpenOffice Vulnerabilities Leads to Memory Corruption and Unauthorized Content Loading

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Apache OpenOffice has released version 4.1.16, addressing seven critical security vulnerabilities that enable unauthorized remote document loading and memory corruption attacks. These flaws represent a significant security risk to users …

GitHub Copilot and Visual Studio Vulnerabilities Allow Attacker to Bypass Security Feature

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has disclosed two critical security vulnerabilities in GitHub Copilot and Visual Studio that could allow attackers to bypass essential security features. Both vulnerabilities were released on November 11, 2025, …

Hackers Actively Exploiting Cisco and Citrix 0-Days in the Wild to Deploy Webshell

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

An advanced hacking group is actively exploiting zero-day vulnerabilities in Cisco Identity Services Engine (ISE) and Citrix systems. These attacks, spotted in real-world operations, allow hackers to deploy custom webshells …

APT-C-08 Hackers Exploiting WinRAR Vulnerability to Attack Government Organizations

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The advanced persistent threat group APT-C-08, also known as Manlinghua or BITTER, has launched a sophisticated campaign targeting government organizations across South Asia by exploiting a critical directory traversal vulnerability …

New Phishing Attack Leverages Popular Brands to Harvest Login Credentials

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated phishing campaign has emerged, targeting organizations across Central and Eastern Europe by impersonating legitimate global brands to deceive users into surrendering their login credentials. The attack utilizes self-contained …

Microsoft Investigating Teams Issue that Disables Users from Opening Apps

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has confirmed it is investigating a significant issue affecting Microsoft Teams for Education, which is particularly impacting users’ ability to access critical features such as assignments and grades. The …

Hackers Weaponize AppleScript to Creatively Deliver macOS Malware Mimic as Zoom/Teams Updates

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Threat actors continue to evolve their techniques for bypassing macOS security controls, shifting away from traditional attack vectors that Apple has systematically patched. Following Apple’s removal of the “right-click and …

Tor Browser 15.0.1 Released With Fix for Multiple Security Vulnerabilities

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Tor Browser 15.0.1 is now available for download, bringing essential security patches and bug fixes to users across all platforms. The latest release includes critical security updates from Firefox 140.5.0esr, …

Authentication Coercion Attack Tricks Windows Machines into Revealing Credentials to Attack-controlled Servers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Authentication coercion represents a sophisticated and evolving threat targeting Windows and Active Directory environments across organizations globally. This attack method exploits the fundamental communication mechanisms embedded within every Windows operating …

ChatGPT Hacked Using Custom GPTs Exploiting SSRF Vulnerability to Expose Secrets

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A Server-Side Request Forgery (SSRF) vulnerability in OpenAI’s ChatGPT. The flaw, lurking in the Custom GPT “Actions” feature, allowed attackers to trick the system into accessing internal cloud metadata, potentially …