NCSC New Proactive Notifications Service Reports Vulnerabilities to System Owners

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The National Cyber Security Centre (NCSC) has unveiled a new pilot program designed to help organizations identify and fix security weaknesses before malicious actors can exploit them. Known as the Proactive …

Hackers Exploiting Microsoft Teams Notifications to Deliver CallBack Phishing Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity researchers have identified a sophisticated phishing campaign that exploits Microsoft Teams notifications to deceive users into calling fraudulent support numbers. The attack demonstrates how legitimate communication platforms can be …

Russian Calisto Hackers Target NATO Research Sectors with ClickFix Malicious Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Russian-backed threat actors continue their sophisticated cyber espionage operations against Western institutions through advanced phishing tactics. Calisto, a Russia-nexus intrusion set attributed to the Russian FSB’s Center 18 for Information …

China-Nexus Hackers Exploiting VMware vCenter Environments to Deploy Web Shells and Malware Implants

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new sophisticated threat actor has emerged in the cybersecurity landscape, targeting critical infrastructure across the United States. The adversary, operating under the name WARP PANDA, has demonstrated remarkable technical …

NVIDIA Triton Vulnerability Let Attackers Trigger DoS Attack Using Malicious Payload

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Critical security updates have been released to fix two high-severity flaws in the Triton Inference Server that let attackers crash systems remotely from NVIDIA. Both flaws received a CVSS score …

Hackers Actively Exploiting ArrayOS AG VPN Vulnerability to Deploy Webshells

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Attackers are actively exploiting a serious vulnerability in Array Networks’ ArrayOS AG series to gain unauthorized access to enterprise networks. The flaw exists in the DesktopDirect function, a feature designed …

Cloudflare Outage Hits Internet with 500 Internal Server Error

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A major disruption swept across the internet today as Cloudflare, a critical backbone for millions of websites, reported widespread issues with its Dashboard and APIs, triggering 500 Internal Server Errors …

ClayRat Android Malware Steals SMS Messages, Call Logs and Capture Victim Photos

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A dangerous new Android spyware variant called ClayRat has emerged as a significant threat to mobile device security worldwide. First identified in October by the zLabs team, this malware represents …

Beware of Solana Phishing Attacks That Let Hackers Initiate Unauthorized Account Transfer

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A dangerous new wave of phishing attacks is targeting Solana users by changing wallet ownership permissions rather than stealing private keys. A victim lost more than USD 3 million in …

Cacti Command Injection Vulnerability Let Attackers Execute Malicious Code Remotely

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical command injection vulnerability in the open-source network monitoring tool Cacti allows authenticated attackers to execute arbitrary code remotely, potentially compromising the entire monitoring infrastructure. The flaw, tracked as …