Crypto Scanner – New Tool to Find Quantum-Vulnerable Cryptography in your Codebase

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Crypto Scanner Tool Find Quantum Vulnerable Cryptography As the timeline for powerful quantum computing accelerates, a new open-source tool has emerged to help developers secure their data against future threats. Crypto Scanner, developed by Quantum Shield Labs, is a command-line …

Fancy Bear Hackers Exploiting Microsoft Zero-Day Vulnerability to Deploy Backdoors and Email Stealers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Russia-linked cyber espionage group known as Fancy Bear has launched Operation Neusploit. The group is also known as APT28. This marks a significant escalation, leveraging a zero-day vulnerability, CVE-2026-21509, in Microsoft RTF files. By exploiting this flaw, attackers execute …

Axios Vulnerability Let Attackers Triggers DoS Condition and Crash Node.js Servers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A high-severity security flaw has been discovered in Axios, one of the most popular HTTP client libraries used in the JavaScript ecosystem. The vulnerability, tracked as CVE-2026-25639, allows remote attackers to trigger a Denial-of-Service (DoS) condition, effectively crashing Node.js servers with a …

30-Year-Old Libpng Vulnerability Exposes Millions of Systems to Code Execution Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

libpng Vulnerability Exposes Millions Apps A critical vulnerability has been uncovered in libpng, the official PNG reference library used by practically every operating system and web browser in existence. The flaw, assigned CVE-2026-25646, is a heap buffer overflow in the …

Threat Actor Claims Leak of Cybercrime-Focused AI Platform WormGPT Database

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

WormGPT Database Leak A threat actor operating under the alias Sythe has claimed responsibility for leaking the complete WormGPT database, a notorious cybercrime-focused artificial intelligence platform that has been sold on dark web forums since 2023. Hackmanac observed that the …

Microsoft Teams New Option Enables Users to Flag Malicious Messages

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Teams Malicious Messages Flag Microsoft is significantly expanding the threat detection capabilities within Microsoft Teams by granting Defender for Office 365 Plan 1 users the ability to report suspicious messages directly. This update, tracked under Roadmap ID 531760, marks a …

GuLoader Uses Polymorphic Code and Trusted Cloud Hosting to Evade Reputation-Based Defenses

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

GuLoader, also known as CloudEyE, has solidified its position as a persistent threat in the cybersecurity landscape since its emergence. Primarily functioning as a sophisticated downloader, it is designed to retrieve and execute secondary malware payloads, such as the Remcos …

AI Chat App Exposes 300 Million Messages from 25 Million Users

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

AI Chat App Exposes Messages The popular mobile application “Chat & Ask AI” has inadvertently exposed hundreds of millions of private user conversations. The app, which boasts over 50 million users across the Google Play and Apple App stores, failed …

Bloody Wolf Hackers Attacking Organizations to Deploy NetSupport RAT and Gain Remote Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Stan Ghouls, a cybercriminal group also known as Bloody Wolf, has launched a sophisticated wave of targeted attacks against organizations across Russia and Uzbekistan. Active since at least 2023, the group focuses heavily on the manufacturing, finance, and IT sectors. …

Augustus – Open-source LLM Vulnerability Scanner With 210+ Attacks Across 28 LLM Providers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Augustus LLM Vulnerability Scanner Augustus is a new open-source vulnerability scanner designed to secure Large Language Models (LLMs) against an evolving landscape of adversarial threats. Built by Praetorian, Augustus aims to bridge the gap between academic research tools and production-grade …