Kevin Lancaster Joins the usecure Board to Accelerate North American Channel Growth

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Claymont, Delaware, December 1st, 2025, CyberNewsWire Lancaster’s arrival brings significant North American channel experience and expertise, supporting usecure’s ambition to cement its position as the market-leading human risk management solution for MSPs. usecure today announced the appointment of Kevin Lancaster …

Critical Apache bRPC Framework Vulnerability Let Attackers Crash the Server

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security vulnerability has been discovered in the Apache bRPC framework that could allow remote attackers to crash servers by sending specially crafted JSON data. The flaw, tracked as CVE-2025-59789, affects all versions of Apache bRPC before 1.15.0 across all …

Linux 6.18 Released With Enhanced Hardware Support, Updated Drivers and File Systems

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Linus Torvalds has officially announced the release of Linux kernel 6.18 on November 30, 2025, marking another significant milestone in the open-source operating system’s development. The new kernel version brings numerous improvements across hardware support, driver updates, and file system …

Windows 11 24H2 Update Hides the Password Icon in the Sign-in Options on the Lock Screen

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has confirmed a bizarre user interface bug affecting Windows 11 version 24H2 devices that renders the password sign-in icon invisible on the lock screen. The issue, stemming from the August 2025 non-security preview update (KB5064081) and persisting in subsequent …

PoC Exploit Released for Critical Outlook 0-Click Remote Code Execution Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A Proof-of-Concept (PoC) exploit code has been released for a critical remote code execution (RCE) vulnerability in Microsoft Outlook, identified as CVE-2024-21413. Dubbed “MonikerLink,” this flaw allows attackers to bypass Outlook’s security mechanisms, specifically the “Protected View,” to execute malicious …

Hackers Allegedly Claim Breach of Mercedes-Benz USA Legal and Customer Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A threat actor known as “zestix” has claimed responsibility for a significant data breach affecting Mercedes-Benz USA (MBUSA), allegedly exfiltrating 18.3 GB of sensitive legal and customer information. The threat actor posted the dataset for sale on a dark web …

CISA Warns of OpenPLC ScadaBR cross-site scripting vulnerability Exploited in Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Cybersecurity and Infrastructure Security Agency (CISA) has officially updated its Known Exploited Vulnerabilities (KEV) catalog to include a critical flaw in OpenPLC ScadaBR, confirming that threat actors are actively weaponizing it in the wild. The security defect, identified as …

New Albiriox Malware Attacking Android Users to Take Complete Control of their Device

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated new Android malware family dubbed “Albiriox” has emerged on the cybercrime landscape, offering advanced remote access capabilities as a Malware-as-a-Service (MaaS). Identified by researchers at Cleafy, the malware is designed to execute On-Device Fraud (ODF) by granting attackers …

Beware of Weaponized Google Meet Page uses ClickFix Technique to Deliver Malicious Payload

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new, highly sophisticated malware campaign has been identified targeting remote workers and organizations through a fake Google Meet landing page. Hosted on the deceptive domain gogl-meet[.]com, this attack leverages the “ClickFix” social engineering technique to bypass traditional browser security …

French Football Federation Reports Data Breach – Hackers Access Club Software Admin Controls

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The French Football Federation (FFF) has confirmed a significant cybersecurity incident resulting in the theft of personal data belonging to members and licensees. The federation revealed that cybercriminals had infiltrated the centralized administrative software used by football clubs across the …