Cisco Small Business Switches Face Global DNS Crash Outage

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Network administrators worldwide reported widespread crashes in Cisco small business switches on January 8, 2026, triggered by fatal errors in the DNS client service. Devices entered reboot loops every few minutes, disrupting operations until DNS configurations were removed.​ The issue …

Who Benefited from the Aisuru and Kimwolf Botnets?

Blog WriterCybersecurity News - Original News Source is krebsonsecurity.com

January 8, 2026 0 Comments Our first story of 2026 revealed how a destructive new botnet called Kimwolf has infected more than two million devices by mass-compromising a vast number of unofficial Android TV streaming boxes. Today, we’ll dig through …

What tools help reduce fraud or friendly fraud for online businesses? 

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

That’s the part most online businesses learn the hard way: not all fraud is the same. In most cases, you’re dealing with two different threats:  Fraud: someone outside your business uses stolen card details, stolen login credentials, bots, or a …

UAT-7290 Hackers Attacking Critical Infrastructure Entities in South Asia

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A dangerous hacking group known as UAT-7290 has been actively attacking important telecommunications companies and critical infrastructure targets across South Asia since at least 2022. This advanced threat actor operates with clear signs of Chinese government connections and poses a …

ChatGPT Health – A Dedicated Space for Health Queries With Strong Privacy and Security

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

OpenAI has launched ChatGPT Health, a specialized platform that helps users securely manage their health information and receive intelligent support for wellness-related questions. With over 230 million people using ChatGPT weekly for health inquiries, the company recognized the need for a …

Hackers Launched 8.1 Million Attack Sessions to React2Shell Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The React2Shell vulnerability (CVE-2025-55182) continues to face a relentless exploitation campaign, with threat actors launching more than 8.1 million attack sessions since its initial disclosure. According to GreyNoise Observation Grid data, daily attack volumes have stabilized at 300,000–400,000 sessions since …

Microsoft Enforces Mandatory MFA for Microsoft 365 Admin Center Logins

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft is ramping up security measures for its enterprise customers, mandating multi-factor authentication (MFA) for all users accessing the Microsoft 365 admin center. The policy takes full effect on February 9, 2026, building on a softer rollout that began in …

New ChatGPT Flaws Allow Attackers to Exfiltrate Sensitive Data from Gmail, Outlook, and GitHub

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Critical vulnerabilities in ChatGPT allow attackers to exfiltrate sensitive data from connected services like Gmail, Outlook, and GitHub without user interaction. Dubbed ShadowLeak and ZombieAgent, these flaws exploit the AI’s Connectors and Memory features for zero-click attacks, persistence, and even …

Trump Signals U.S. Cyber Role in Caracas Blackout During Maduro Capture

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Caracas went dark just as U.S. forces moved to seize Venezuelan leader Nicolás Maduro on Saturday. The blackout did more than hide troops; it showed how malware can shape modern battles. U.S. Cyber Command and allied units are believed to …

New OAuth-Based Attack Let Hackers Bypass Microsoft Entra Authentication Flows to Steal Keys

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The security landscape faced a significant challenge just before the year’s end with the emergence of ConsentFix, an ingenious OAuth-based attack that exploits legitimate authentication flows to extract authorization codes from Microsoft Entra systems. This attack represents an evolution of …