Critical Anthropic’s MCP Vulnerability Enables Remote Code Execution Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical flaw in Anthropic’s Model Context Protocol (MCP) exposes over 150 million downloads to potential compromise. The vulnerability could enable full system takeover across up to 200,000 servers. The OX …

Gh0st RAT and CloverPlus Adware Delivered Together in New Dual-Payload Malware Campaign

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A newly identified malware campaign is raising serious concerns across the cybersecurity community by delivering two very different threats at the same time. Attackers are now using a single, obfuscated …

Hackers Use AppDomain Hijacking to Turn Trusted Intel Utility Into Malware Launcher

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Security researchers have uncovered a highly sophisticated attack campaign that weaponizes a legitimate, digitally signed Intel utility to secretly deploy malware, all without touching a single line of the original …

North Korea-Linked UNC1069 Uses Fake Zoom and Teams Meetings to Hack Crypto Professionals

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A North Korean threat group known as UNC1069 has been running a sophisticated campaign that tricks cryptocurrency and Web3 professionals into joining fake online meetings, only to infect their computers …

Researchers Say Iranian MOIS Uses Multiple Hacker Personas for One Coordinated Cyber Campaign

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Iran’s Ministry of Intelligence and Security (MOIS) has been running a long and carefully organized cyber campaign using three separate hacker identities. These identities, known as Homeland Justice, Karma/KarmaBelow80, and …

Lovable AI App Builder Reportedly Exposes Thousands of Projects Data via API Flaw

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical Broken Object Level Authorization (BOLA) vulnerability in Lovable, the popular AI-powered app builder platform, is reportedly allowing unauthorized users to access sensitive project data, including source code, database …

Attackers Turn QEMU Into a Stealth Backdoor for Credential Theft and Ransomware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Threat actors are now weaponizing QEMU, a legitimate open-source machine emulator and virtualizer, as a covert backdoor to steal credentials and deliver ransomware without triggering endpoint security alerts. This alarming …

Hackers Use MiningDropper to Deliver Infostealers, RATs, and Banking Malware on Android

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A fast growing Android malware campaign is using a framework called MiningDropper to push far more dangerous threats onto phones disguised as normal apps. Researchers describe it as a multi …

New RDP Alert After April 2026 Security Update Warns of Unknown Connections

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has rolled out a significant behavioral change to the Windows Remote Desktop Connection application (MSTSC) as part of its April 2026 Patch Tuesday security update, introducing new warning dialogs …

Hackers Use FUD Crypt to Generate Microsoft-Signed Malware With Built-In Persistence and C2

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A newly uncovered malware-as-a-service platform called FUD Crypt is giving cybercriminals an easy way to build sophisticated Windows malware without writing a single line of code. The platform, operating from …