New Windows Notepad and Paint Update Brings More Useful AI Features

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Artificial intelligence (AI) features have been added to Windows 11 Notepad and Paint for Canary and Dev Channel users, turning them into cloud-connected tools that require sign-in. The Notepad update (version 11.2512.10.0) brings AI-powered text generation, rewriting, and summarization features …

TrustAsia Revoked 143 Certificates Following LiteSSL ACME Service Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

TrustAsia has revoked 143 SSL/TLS certificates following the discovery of a vulnerability in its LiteSSL ACME service. The flaw allowed for the improper reuse of domain validation data across different ACME accounts, prompting an immediate suspension of issuance services and …

HPE Alletra and Nimble Storage Vulnerability Grants Admin Access to Remote Attacker

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical privilege escalation vulnerability affecting multiple storage platforms could allow remote attackers to gain administrative access without physical interaction. The flaw, tracked as CVE-2026-23594, impacts HPE Alletra 6000, Alletra 5000, and Nimble Storage arrays running vulnerable firmware versions. The …

North Korean Hackers Adopted AI to Generate Malware Attacking Developers and Engineering Teams

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

North Korea–aligned hackers have launched a new campaign that turns artificial intelligence into a weapon against software teams. Using AI-written PowerShell code, the group known as KONNI is delivering a stealthy backdoor that blends real project content with malicious scripts. …

Nike Allegedly Hacked by WorldLeaks Ransomware Group

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Athletic footwear and apparel manufacturer Nike has become the latest victim of WorldLeaks, a financially motivated ransomware group known for data extortion attacks. The group announced the breach on its darknet leak site on January 22, claiming responsibility for the …

New Windows 11 KB5074109 Update Breaks Systems – Microsoft Asks Users to Remove Update

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft’s January 2026 Windows 11 security update KB5074109 has triggered multiple system stability issues, including lockups and black screens, prompting users to uninstall it. Reports highlight graphics regressions and app failures affecting both consumer and enterprise setups. KB5074109 targets Windows …

ZAP Releases OWASP PenTest Kit Browser Extension for Application Security Testing

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Zed Attack Proxy (ZAP) team has released the OWASP PTK add-on, version 0.2.0 alpha, integrating the OWASP Penetration Testing Kit (PTK) browser extension directly into ZAP-launched browsers. This streamlines application security testing by embedding DAST, IAST, SAST, SCA, and …

New Osiris Ransomware Using Wide Range of Living off the Land and Dual-use Tools in Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A newly discovered ransomware family called Osiris launched attacks against a major food service company in Southeast Asia during November 2025. Security researchers have identified this threat as a completely new malware variant with no connection to an older ransomware …

Halo Security Achieves SOC 2 Type II Compliance, Demonstrating Sustained Security Excellence Over Time

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Miami, Florida, January 22nd, 2026, CyberNewsWire Halo Security, a leading provider of external attack surface management and penetration testing services, today announced it has successfully achieved SOC 2 Type II compliance following an extensive multi-month audit by Insight Assurance. This …

Proxyware Malware Disguised as Notepad++ Tool Leverages Windows Explorer Process to Hijack Systems

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated malware campaign targeting unsuspecting users has emerged, disguising malicious proxyware as legitimate Notepad++ installations. This attack, orchestrated by the threat actor Larva-25012, exploits users seeking cracked software through deceptive advertisement pages and fake download portals. The malware hijacks …