Sandworm Hackers Attacking Ukranian Organizations with Data Wiper Malwares

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Russia-aligned Sandworm threat group has intensified its destructive cyberattacks against Ukrainian organizations, deploying sophisticated data wiper malware designed to cripple critical infrastructure and economic operations. Unlike traditional cyberespionage campaigns, …

AI Browsers Bypass Content PayWall Mimicking as a Human-User

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The emergence of advanced AI browsing platforms such as OpenAI’s Atlas and Perplexity’s Comet has created a sophisticated challenge for digital publishers worldwide. These tools leverage agentic capabilities designed to …

Midnight Ransomware Decrypter Flaws Opens the Door to File Recovery

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The cybersecurity landscape continues to evolve as new ransomware variants emerge from the remnants of previous campaigns. Midnight ransomware represents one such development, drawing substantial inspiration from the notorious Babuk …

Iranian Hackers Targeting Academics and Foreign Policy Experts Using RMM Tools

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A previously unidentified Iranian threat actor has emerged with sophisticated social engineering tactics aimed at academics and foreign policy experts across the United States. Operating between June and August 2025, …

Threat Actors May Abuse VS Code Extensions to Deploy Ransomware and Use GitHub as C2 Server

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

North Korean threat actors are evolving their attack strategies by leveraging developer-focused tools as infection vectors. Recent security discoveries reveal that Kimsuky, a nation-state group operating since 2012, has been …

List of AI Tools Promoted by Threat Actors in Underground Forums and Their Capabilities

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The cybercrime landscape has undergone a dramatic transformation in 2025, with artificial intelligence emerging as a cornerstone technology for malicious actors operating in underground forums. According to Google’s Threat Intelligence …

Airstalk Malware Leverages AirWatch API MDM Platform to Establish Covert C2 Communication

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Security researchers have uncovered a sophisticated new malware family targeting enterprise environments through a supply chain compromise. The malware, tracked as Airstalk, represents a significant shift in how attackers exploit …

Gootloader is Back with New ZIP File Trickery that Decive the Malicious Payload

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Gootloader malware campaign has resurfaced with sophisticated evasion techniques that allow it to bypass automated security analysis. This persistent threat has been targeting victims for over five years using …

SonicWall Confirms State-Sponsored Hackers Behind the Massive Firewall Backup Breach

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

SonicWall, a global cybersecurity company, confirmed that state-sponsored hackers were behind a recent incident involving unauthorized access to firewall backup files. The breach began in early September, when the company …

Critical RCE Vulnerabilities in Claude Desktop Let Attackers Execute Malicious Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical remote code execution (RCE) flaw in three official extensions for Anthropic’s Claude Desktop. These vulnerabilities, affecting the Chrome, iMessage, and Apple Notes connectors, stem from unsanitized command injection …