Threat Actors Leveraging RDP Credentials to Deploy Cephalus Ransomware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A newly identified ransomware group, Cephalus, has emerged as a significant threat to organizations worldwide, exploiting stolen Remote Desktop Protocol (RDP) credentials to gain access to networks and deploy powerful …

German ISP Aurologic GmbH has Become a Central Nexus for Hosting Malicious Infrastructure

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

German hosting provider aurologic GmbH has emerged as a central facilitator within the global malicious infrastructure ecosystem, providing upstream transit and data center services to numerous high-risk hosting networks. Operating …

ClickFix Attacks Evolved With Weaponized Videos That Tricks Users via Self-infection Process

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

ClickFix attacks have experienced a dramatic surge over the past year, establishing themselves as a cornerstone of modern social engineering tactics. These sophisticated attacks manipulate victims into executing malicious code …

Herodotus Android Banking Malware Takes Full Control Of Device Evading Antivirus

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated banking trojan named Herodotus has emerged as a significant threat to Android users worldwide. Operating as Malware-as-a-Service, this malicious application disguises itself as a legitimate tool to trick …

Hackers Can Attack Active Directory Sites to Escalate Privileges and Compromise the Domain

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Active Directory sites are designed to optimize network performance across geographically separated organizations by managing replication and authentication across multiple locations. The Synacktiv security researchers have demonstrated that these supposedly …

New Analysis Uncovers LockBit 5.0 Key Capabilities and Two-Stage Execution Model

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

LockBit 5.0 made its debut in late September 2025, marking a significant upgrade for one of the most notorious ransomware-as-a-service (RaaS) groups. With roots tracing back to the ABCD ransomware …

New Android Malware ‘Fantasy Hub’ Intercepts SMS Messages, Contacts and Call Logs

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Russian-based threat actors are distributing a sophisticated Android Remote Access Trojan through underground channels, offering it as a subscription service to other criminals. The malware, identified as Fantasy Hub, enables …

Microsoft Teams’ New “Chat with Anyone” Feature Exposes Users to Phishing and Malware Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft’s upcoming Teams update, set for targeted releases in early November 2025 and worldwide by January 2026, will allow users to initiate chats with only an email address, even if …

15+ Weaponized npm Packages Attacking Windows Systems to Deliver Vidar Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated supply-chain attack has emerged targeting Windows systems through compromised npm packages, marking a critical vulnerability in open-source software distribution. Between October 21 and 26, 2025, threat actors published …

New Phising Attack Targeting Travellers from Hotel’s Compromised Booking.com Account

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated phishing campaign is actively targeting hotel establishments and their guests through compromised Booking.com accounts, according to research uncovered by security experts. The campaign, dubbed “I Paid Twice” due …