Adobe Patches Acrobat Reader 0-Day Vulnerability Exploited in the Wild

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Adobe has issued an emergency security patch to neutralize a critical zero-day vulnerability in Acrobat Reader that is currently being exploited in the wild. Tracked as CVE-2026-34621, this severe flaw enables threat actors to achieve arbitrary code execution on compromised machines. …

Elon Musk Announces to Launch XChat With Self-Destruct Message Features

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Elon Musk has officially rolled out XChat, a major security overhaul to the direct messaging infrastructure on the X platform. Designed to rival secure messengers like Signal and Telegram, XChat integrates strong privacy controls directly into the X ecosystem. The …

Microsoft Confirms Recent Windows 11 Updates Break Push Button Reset

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has officially acknowledged that recent security updates for Windows 11 are causing the “Reset this PC” (Push-button reset) recovery feature to fail. The issue was confirmed in the release notes for the March 2026 hotpatch updates, affecting systems running …

Critical WordPress Plugin Flaw Lets Attackers Bypass Authentication and Gain Admin Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security flaw found in a widely used WordPress plugin is putting thousands of websites at serious risk worldwide. Tracked as CVE-2026-1492, this vulnerability affects the User Registration & Membership plugin for WordPress and lets attackers completely bypass the …

WhatsApp’s ‘End-to-End Encryption by Default’ Claim Called Major Consumer Fraud by Pavel Durov

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Telegram founder Pavel Durov has accused WhatsApp of perpetrating what he calls “the biggest consumer fraud in history,” alleging that the platform’s widely marketed end-to-end encryption (E2EE) claims are fundamentally misleading, leaving the private messages of billions of users exposed …

OpenAI Warns macOS Users to Update ChatGPT and Codex Immediately

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

OpenAI has disclosed a security incident tied to the compromise of Axios, a widely used third-party JavaScript developer library, as part of a broader software supply chain attack detected on March 31, 2026. While the company confirmed no user data, …

Google Launches Gmail End-to-End Encryption for Android and iOS

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Google has officially rolled out End-to-End Encryption (E2EE) for the Gmail application on Android and iOS devices. This major update targets users utilizing Gmail client-side encryption. It allows organisations to handle sensitive data confidentially directly from their smartphones or tablets. …

Google Unveils Device-Bound Chrome Sessions in Anti-Cookie-Theft Move

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Google officially announced the public rollout of Device Bound Session Credentials (DBSC) for Windows users on Chrome 146. According to the Google Account Security and Chrome teams, this major security update aims to eliminate session hijacking, a primary method for …

Ransomware Gangs Expand Use of EDR Killers Beyond Vulnerable Drivers, ESET Warns

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In recent years, Endpoint Detection and Response (EDR) killers have become a standard, highly effective weapon in modern ransomware intrusions. Before launching their file-encrypting malware, cybercriminals routinely deploy specialized tools to bypass security software. According to a comprehensive new report …

Hacker Uses Claude and ChatGPT to Breach Multiple Government Agencies

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A single threat actor compromised nine Mexican government agencies and stole hundreds of millions of citizen records in a highly sophisticated cyberattack. The campaign, which ran from late December 2025 through mid-February 2026, highlights a dangerous shift in the modern …