Microsoft to Stop Force Installation of 365 Copilot App on Windows Devices

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has temporarily halted the automatic installation of the Microsoft 365 Copilot app on Windows devices. According to a recent update in the Microsoft 365 Message Center on March 16, …

Researchers Reveal ‘RegPwn,’ a Windows Registry Vulnerability That Granted SYSTEM Privileges

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

RegPwn Windows Registry Vulnerability A high-severity Windows vulnerability dubbed “RegPwn” (CVE-2026-24291) is an elevation-of-privilege flaw that allows low-privileged users to gain full SYSTEM access. The MDSec red team discovered the …

Critical FortiClient SQL Injection Vulnerability Enables Arbitrary Database Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

FortiClient SQL Injection vulnerability A critical SQL injection vulnerability in Fortinet’s FortiClient Endpoint Management Server (EMS). Tracked as CVE-2026-21643, this severe flaw carries a CVSS score of 9.1. It allows …

Ubuntu Desktop Systems Vulnerability Enables Attackers to Gain Full Root Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A Local Privilege Escalation (LPE) vulnerability in default installations of Ubuntu Desktop 24.04 and later allows an unprivileged local attacker to gain full root access. Tracked as CVE-2026-3888, uncovered by …

Microsoft Teams Support Call Leads to Quick Assist Compromise in New Vishing Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft Detection and Response Team details a sophisticated voice phishing (vishing) campaign that successfully compromised a corporate environment in November 2025. Unlike conventional intrusions that rely on software exploits, this …

Iranian Cyber Ops Maintain US Network Footholds, Target Cameras for Regional Surveillance

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Iran’s cyber operations took a sharp turn in early 2026, with state-linked threat actors quietly embedding themselves inside US and Canadian networks while also targeting internet-connected surveillance cameras across the …

Google Warns Ransomware Actors Are Shifting Tactics as Profits Fall and Data Theft Rises

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The ransomware threat landscape entered a new phase in 2025. Once a highly reliable criminal business model built on encrypting victim files and collecting ransom payments, it is now under …

Glassworm Hits Popular React Native Packages With Credential-Stealing npm Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A coordinated supply chain attack struck the developer community on March 16, 2026, when a threat actor known as Glassworm backdoored two widely used React Native npm packages, turning them …

AWS Bedrock AgentCore Sandbox Bypass Allows Covert C2 Channels and Data Exfiltration

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A significant security flaw in AWS Bedrock AgentCore Code Interpreter’s “Sandbox” network mode, a feature advertised by AWS as providing complete network isolation that allows outbound DNS queries, enabling threat …

To Beat Alert Overload, Stop Wasting Time on False Positives 

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

To Beat Alert Overload, Stop Wasting Time on False Positives  At first glance, false positives in cybersecurity seem almost comforting.  An alert fires. A SOC analyst investigates. It turns out to be nothing malicious. Case closed. Systems are safe, detection works, and the organization moves on.  In theory, …