PoC Exploit Released for Remotely Exploitable Oracle E-Business Suite 0-Day Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical zero-day vulnerability in Oracle E-Business Suite has emerged as a significant threat to enterprise environments, with proof-of-concept (PoC) exploit code now publicly available.  CVE-2025-61882 presents a severe security …

Hackers Exploit Zimbra Vulnerability as 0-Day with Weaponized iCalendar Files

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A zero-day vulnerability in the Zimbra Collaboration Suite (ZCS) was actively exploited in targeted attacks earlier in 2025. The flaw, identified as CVE-2025-27915, is a stored cross-site scripting (XSS) vulnerability …

New WireTap Attack Break Server SGX To Exfiltrate Sensitive Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A newly disclosed vulnerability, named the WireTap attack, allows attackers with physical access to break the security of Intel’s Software Guard eXtensions (SGX) on modern server processors and steal sensitive …

Unity Real-Time Development Platform Vulnerability Let Attackers Execute Arbitrary Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Unity Technologies has issued a critical security advisory warning developers about a high-severity vulnerability affecting its widely used game development platform.  The flaw, designated CVE-2025-59489, exposes applications built with vulnerable …

Microsoft to Disable Inline SVG Images Display to Outlook for Web and Windows Users

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has announced a significant security enhancement for Outlook users, implementing the retirement of inline SVG image support across Outlook for Web and the new Outlook for Windows platforms.  This …

New CometJacking Attack Let Attackers Turn Perplexity Browser Against You in One Click

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A groundbreaking cybersecurity vulnerability has emerged that transforms Perplexity’s AI-powered Comet browser into an unintentional collaborator for data theft.  Security researchers at LayerX have discovered a sophisticated attack vector dubbed …

Discord Data Breach – Customers Personal Data and Scanned Photo IDs leaked

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A data breach at a third-party customer service provider has exposed the personal data of some Discord users, including names, email addresses, and a small number of scanned government-issued photo …

Top 10 Best Supply Chain Intelligence Security Companies in 2025

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The digital world continues to face growing threats around software vulnerabilities, data breaches, and cyber supply chain attacks. As companies rely more heavily on open-source software, third-party code, and cloud-native …

Scattered LAPSUS$ Hunters Announced Salesforce Breach List On New Onion Site

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A cybercrime collective known as Scattered LAPSUS$ Hunters has launched a new data leak site on the dark web, claiming it holds nearly one billion records from Salesforce customers. The …

Renault UK Suffers Cyberattack – Hackers Stolen Users Customers Personal Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Renault UK has notified customers of a data breach after a cyberattack on one of its third-party service providers resulted in the theft of personal information. The company has assured …