MuddyWater Attacks Critical Infrastructure With Custom Malware and Improved Tactics

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

MuddyWater, an Iran-aligned cyberespionage group also known as Mango Sandstorm, has launched a new, highly targeted campaign against critical infrastructure in Israel and Egypt. Active from September 2024 through March 2025, the group zeroed in on diverse sectors including engineering, …

Microsoft Confirms Windows 11 25H2 UI Features Broken Along With 24H2 Following Update

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has officially confirmed a critical issue affecting enterprise and managed environments running Windows 11 versions 24H2 and 25H2. The bug, first triggered by cumulative updates released in July 2025, causes widespread failures in essential UI components, rendering the desktop …

Beware of the New ‘Executive Award’ Campaign That Uses ClickFix to Deliver Stealerium Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new and dangerous phishing campaign is targeting organizations with a deceptive “Executive Award” theme that combines social engineering with advanced malware delivery. This two-stage attack first tricks users into sharing their login credentials through a fake HTML form, then …

Critical Elementor Plugin Vulnerability Let Attackers Takeover WordPress Site Admin Control

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security flaw in the popular “King Addons for Elementor” WordPress plugin has left thousands of websites at risk of complete takeover, security researchers have warned. The vulnerability, tracked as CVE-2025-8489, allows unauthenticated attackers to register new accounts with …

Angular Platform Vulnerability Allows Malicious Code Execution Via Weaponized SVG Animation Files

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical Stored XSS vulnerability in Angular’s template compiler (CVE-2025-66412) allows attackers to execute arbitrary code by weaponizing SVG animation attributes. Bypassing Angular’s built-in security sanitization mechanisms and affecting applications using versions below 19.2.17, 20.3.15, or 21.0.2. The Angular template …

CISA Warns of Iskra iHUB Vulnerability Allowing Remote Device Reconfiguration

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical warning regarding a severe authentication vulnerability affecting Iskra’s iHUB and iHUB Lite intelligent metering gateways used in energy infrastructure worldwide. The flaw, tracked as CVE-2025-13510, carries a CVSS v4 severity score of 9.3, indicating an exploit that requires …

Threat Actors Allegedly Promoting Fully Undetectable K.G.B RAT on Hacker Forums

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A concerning development has emerged within the cybercriminal ecosystem as threat actors continue distributing K.G.B RAT, a remote access trojan bundled with advanced detection evasion capabilities. According to recent reports, this tool combination surfaced on underground forums and has caught …

BPFDoor and Symbiote Rootkits Attacking Linux Systems Exploiting eBPF Filters

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Two sophisticated Linux rootkits are posing increasingly serious threats to network security by exploiting eBPF technology to hide their presence from traditional detection systems. BPFDoor and Symbiote, both originating from 2021, represent a dangerous class of malware that combines advanced …

Threat Actors Leveraging Matanbuchus Malicious Downloader to Ransomware and Establish Persistence

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Matanbuchus represents a significant threat in the cybercriminal landscape as a dangerous malware downloader written in C++. Since 2020, this tool has been sold as Malware-as-a-Service, allowing threat actors to rent access and deploy it against targeted organizations. In July …

Let’s Encrypt to Reduce Certificate Validity from 90 Days to 45 Days

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Let’s Encrypt has officially announced plans to reduce the maximum validity period of its SSL/TLS certificates from 90 days to 45 days. The transition, which will be completed by 2028, aligns with broader industry shifts mandated by the CA/Browser Forum …