Hackers Abuse DOCX, RTF, JS, and Python in Stealthy Boeing RFQ Malware Campaign

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A seemingly routine procurement email has become the entry point for a sophisticated six-stage malware attack targeting industrial suppliers and procurement teams. The campaign, tracked as NKFZ5966PURCHASE, disguises itself as …

CISA Warns of Chrome 0-Day Vulnerability Actively Exploited in Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical warning has been issued over a newly discovered zero-day vulnerability in Google Chrome, raising serious concerns for users worldwide. This flaw is actively exploited in the wild, allowing …

NoVoice on Google Play with 22 Exploits Attacks Millions of Android Users

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A dangerous Android rootkit named NoVoice has been hiding inside over 50 apps on Google Play, compromising more than 2.3 million devices worldwide. Tracked as Operation NoVoice, the malware uses …

New ZAP PTK Add-On Maps Browser-Based Security Findings as Native Alert Into ZAP

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The OWASP Zed Attack Proxy (ZAP) team has rolled out version 0.3.0 of the OWASP PenTest Kit (PTK) add-on, introducing a transformative workflow upgrade for application security testing. This new …

New ZAP PTK Add-On Maps Browser-Based Security Findings as Native Alert Into ZAP

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The OWASP Zed Attack Proxy (ZAP) team has rolled out version 0.3.0 of the OWASP PenTest Kit (PTK) add-on, introducing a transformative workflow upgrade for application security testing. This new …

WhatsApp Warns Users Targeted by Spyware Attack via Weaponized Version of the App

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Meta has officially alerted approximately 200 WhatsApp users, primarily located in Italy, that their devices were compromised by a weaponized, fraudulent version of the messaging application. This malicious software was …

Cisco Smart Software Manager Vulnerability Let Attackers Execute Arbitrary Commands

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cisco has issued an urgent security warning regarding a critical vulnerability in its Smart Software Manager On-Prem (SSM On-Prem) platform. Enterprise organizations widely use this tool to manage their Cisco …