Microsoft Teams New feature Allows Users to Flag Malicious Calls

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft is set to introduce a significant security enhancement to its Teams platform that will empower users to flag potentially malicious or unsolicited calls. This upcoming feature, “Report a Suspicious …

Critical Emby Server Vulnerability Let Attackers Gain Admin Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability has been discovered in Emby Server that allows unauthenticated attackers to gain full administrative access to affected systems. Tracked as CVE-2025-64113 with a severity score of 9.3 out of …

New Vishing Attack Leverages Microsoft Teams Call and QuickAssist to Deploy .NET Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated new vishing campaign has emerged, blending traditional voice phishing with modern collaboration tools to deploy stealthy malware. Attackers are leveraging Microsoft Teams calls and the remote support tool …

Ruby SAML Library Vulnerability Let Attackers Bypass Authentication

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability has been discovered in the Ruby SAML library that could allow attackers to bypass authentication mechanisms in affected applications completely. The flaw, tracked as CVE-2025-66567, impacts all …

New Prompt Injection Attack via Malicious MCP Servers Let Attackers Drain Resources

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Security researchers have uncovered critical vulnerabilities in the Model Context Protocol (MCP) sampling feature. Revealing how malicious servers can exploit LLM-integrated applications to conduct resource theft, conversation hijacking, and unauthorized …

Proofpoint Acquires Hornetsecurity in $1.8 Billion Deal to Strengthen SMB Cybersecurity

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Proofpoint, Inc., a pioneer in human-centric cybersecurity, has finalized its $1.8 billion acquisition of Hornetsecurity Group, a dominant European provider of AI-driven Microsoft 365 security solutions. The deal, announced today, …

Malicious VS Code on Microsoft Registry Captures Your Screen and Steals Your WiFi Passwords

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals are increasingly weaponizing developer environments, as seen in a newly discovered malware campaign infiltrating the Visual Studio Code Marketplace. Unlike typical extensions that simply harvest credentials or mine cryptocurrency, …

GhostPenguin Backdoor With Zero-Detection Attacking Linux Servers Uncovered Using AI-Automated Tools

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A previously undocumented Linux backdoor named GhostPenguin has been discovered evading detection for over four months. This multi-threaded C++ malware establishes remote shell access and file-system operations via encrypted UDP, …

Hackers Exploiting Vulnerabilities in Ivanti Connect Secure to Deploy MetaRAT Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A China-based attack group has launched a targeted campaign against Japanese shipping and transportation companies by exploiting critical vulnerabilities in Ivanti Connect Secure (ICS). The campaign, uncovered in April 2025, …

New Mirai Botnet Variant ‘Broadside’ Actively Attacking Users in the Wild

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated new variant of the Mirai botnet, named “Broadside,” has emerged as an active threat targeting maritime shipping companies and vessel operators. The malware exploits a critical vulnerability in …