Threat Actors Exploit LANSCOPE Endpoint Manager Zero-Day Vulnerability to Steal Confidential Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In mid-2025, researchers discovered a sophisticated campaign orchestrated by the Chinese state-sponsored threat group BRONZE BUTLER (also known as Tick) targeting organizations relying on Motex LANSCOPE Endpoint Manager. The attackers …

Google Unveils new AI-Protection for Android to Keep You Safe From Mobile Scams

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Google is strengthening its defense against mobile scams with advanced AI-powered protections built directly into Android devices. As cybercriminals become more sophisticated, using AI themselves to create convincing fraud schemes, …

Progress Patches MOVEit Transfer Uncontrolled Resource Consumption Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Progress Software has released critical security patches addressing a high-severity vulnerability affecting MOVEit Transfer, a widely used enterprise file transfer solution. The vulnerability, tracked as CVE-2025-10932, carries a CVSS score …

Microsoft Introduces Researcher in 365 Copilot: Your Secure Virtual Assistant for Enhanced Productivity

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has launched Researcher with Computer Use in Microsoft 365 Copilot, marking a significant advancement in autonomous AI technology. This new feature allows the AI assistant to move beyond simple …

Threat Actors Actively Using Open-Source C2 Framework to Deliver Malicious Payloads

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new wave of cyber threats is emerging as criminals increasingly weaponize AdaptixC2, a free and open-source Command and Control framework originally designed for legitimate penetration testing and red team …

Hackers Weaponizing Windows LNK File UI Misrepresentation Remote Code Execution Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Chinese-affiliated threat actor UNC6384 has been actively leveraging a critical Windows shortcut vulnerability to target European diplomatic entities across Hungary, Belgium, Serbia, Italy, and the Netherlands. Arctic Wolf researchers identified …

Kimsuky and Lazarus Hacker Groups Unveil New Tools That Enable Backdoor and Remote Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Threat actors operating under the control of North Korea’s regime have demonstrated continued technical sophistication by introducing advanced malware toolsets designed to establish persistent backdoor access and remote control over …

Threat Actors Using Multilingual ZIP File to Attack Financial and Government Organizations

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Sophisticated threat actors have orchestrated a coordinated multilingual phishing campaign targeting financial and government organizations across East and Southeast Asia. The campaign leverages carefully crafted ZIP file lures combined with …

AzureHound Penetration Testing Tool Weaponized by Threat Actors to Enumerate Azure and Entra ID

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

AzureHound, an open-source data collection tool designed for legitimate penetration testing and security research, has become a favored weapon in the hands of sophisticated threat actors. The tool, which is …

CISA Warns of XWiki Platform Injection vulnerability Exploited to Execute Remote Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent warning about a severe injection vulnerability in the XWiki Platform, designated as CVE-2025-24893. This flaw allows unauthenticated attackers …