Beware of New Phishing Attack that Abuses Cloudflare and ZenDesk Pages to Steal Logins

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated phishing campaign has emerged, exploiting the trust placed in legitimate cloud hosting services. Threat actors are leveraging Cloudflare Pages and ZenDesk platforms to conduct large-scale credential theft operations …

New Business Email Protection Technique Blocks the Phishing Email Behind NPM Breach

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Supply chain attacks targeting the JavaScript ecosystem have evolved into sophisticated operations combining domain manipulation with social engineering. On September 8, 2025, threat actors launched a coordinated phishing campaign aimed …

Conti Group Member Responsible for Deploying Ransomware Extradited to USA

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A Ukrainian national accused of playing a key role in the notorious Conti ransomware operation has been extradited from Ireland to face federal charges in the United States. Oleksii Oleksiyovych …

Hackers Deliver SSH-Tor Backdoor Via Weaponized Military Documents in ZIP Files

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In October 2025, threat researchers at Cyble Research and Intelligence Labs uncovered a sophisticated cyber attack leveraging weaponized military documents to distribute an advanced SSH-Tor backdoor targeting defense sector personnel. …

Proton Exposes 300 Million Stolen Credentials Available for Sale on Dark Web Cybercrime Markets

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Proton has launched a new initiative called the Data Breach Observatory. This program reveals serious problems that exist on the internet. The cybersecurity company revealed that over 300 million stolen …

Windows 11 24H2/25H2 Update Causes Task Manager to be Active After Closure

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has released a non-security update for Windows 11 versions 24H2 and 25H2 that introduces an unusual bug affecting one of the operating system’s most essential utilities. The update, designated …

New Operation SkyCloak Uses Powershell Tools and Hidden SSH Service to Unblock Traffic

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated campaign targeting military personnel across Russia and Belarus has emerged, deploying a complex multi-stage infection chain that establishes covert remote access through Tor-based infrastructure. Operation SkyCloak represents a …

Windows Graphics Vulnerabilities Allow Remote Attackers to Execute Arbitrary Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Multiple vulnerabilities in Microsoft’s Graphics Device Interface (GDI), a core component of the Windows operating system responsible for rendering graphics. These flaws, discovered by Check Point through an intensive fuzzing …

New BOF Tool Exploits Microsoft Teams’ Cookie Encryption allowing Attackers to Access User Chats

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A specialized Beacon Object File (BOF) designed to extract authentication cookies from Microsoft Teams without disrupting the application. This development builds on recent findings that expose how Teams stores sensitive …