Xillen Stealer With New Advanced Features Evade AI Detection and Steal Sensitive Data from Password Managers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Xillen Stealer, a sophisticated Python-based information stealer, has emerged as a significant threat in the cybercriminal landscape. Originally identified by Cyfirma in September 2025, this cross-platform malware has recently evolved into versions 4 and 5, introducing a dangerous arsenal of …

Dark Web Job Market Evolved – Prioritizes Practical Skills Over Formal Education

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The dark web has transformed into a functioning parallel labor market where cyber specialists find employment through unconventional channels. Unlike traditional job boards, this shadow economy operates with distinct recruitment norms and salary expectations that differ significantly from legitimate hiring …

North Korean Kimsuky and Lazarus Join Forces to Exploit Zero-Day Vulnerabilities Targeting Critical Sectors Worldwide

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Two of North Korea’s most dangerous hacking groups have joined forces to launch a coordinated attack campaign that threatens organizations worldwide. The Kimsuky and Lazarus groups are working together to steal sensitive intelligence and cryptocurrencies through a systematic approach that …

Hackers Using New Matrix Push C2 to Deliver Malware and Phishing Attacks via Web Browser

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new command-and-control platform called Matrix Push C2 has emerged as a serious threat to web users across all operating systems. This browser-based attack framework turns legitimate web browser features into a weapon for delivering malware and phishing attacks. Unlike …

Operation DreamJob Attacking Manufacturing Industries Using Job-related WhatsApp Web Message

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In August 2025, a sophisticated cyber attack targeted an Asian subsidiary of a large European manufacturing organization through a deceptive job offer scheme. The intrusion campaign, identified as Operation DreamJob, demonstrates how threat actors continue to refine social engineering techniques …

Chinese Hackers Exploiting WSUS Remote Code Execution Vulnerability to Deploy ShadowPad Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Chinese-backed attackers have begun weaponizing a critical vulnerability in Microsoft Windows Server Update Services (WSUS) to distribute ShadowPad, a sophisticated backdoor malware linked to multiple state-sponsored groups. The attack chain exploits CVE-2025-59287, a remote code execution flaw that grants system-level …

Ransomware Actors Primarily Targeting Retailers This Holiday Season to Deploy Malicious Payloads

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Retailers are facing a sharp rise in targeted ransomware activity as the holiday shopping season begins. Threat groups are timing their attacks to peak sales periods, when downtime is most painful and the pressure to pay is highest. This campaign …

China-linked APT24 Hackers New BadAudio Compromised Legitimate Public Websites to Attack Users

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

APT24, a sophisticated cyber espionage group linked to China’s People’s Republic, has launched a relentless three-year campaign delivering BadAudio, a highly obfuscated first-stage downloader that enables persistent network access to targeted organizations. The threat actor has demonstrated remarkable adaptability by …

Broadcom Allegedly Breached by Clop Ransomware via E-Business Suite 0-Day Hack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Cl0p ransomware group has claimed responsibility for infiltrating Broadcom’s internal systems as part of an ongoing exploitation campaign targeting Oracle E-Business Suite vulnerabilities. The hack uses a critical zero-day vulnerability (CVE-2025-61882) rated 9.8 on the CVSS scale, allowing attackers …

Windows 11 to Hide BSOD Crash Errors on Public Displays

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has introduced a practical new feature in Windows 11 designed specifically for public-facing monitors and signage. This new mode ensures that the dreaded Blue Screen of Death (BSOD) and other disruptive error dialogs are hidden from view on non-interactive …