TaskHound Tool – Detects Windows Scheduled Tasks Running with Elevated Privileges and Stored Credentials

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new open-source security tool, TaskHound, helps penetration testers and security professionals identify high-risk Windows scheduled tasks that could expose systems to attacks. The tool automatically discovers tasks running with privileged …

Hackers Leverages Microsoft Entra Tenant Invitations to Launch TOAD Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new phishing campaign has emerged that weaponizes Microsoft Entra guest user invitations to deceive recipients into making phone calls to attackers posing as Microsoft support. The attack leverages a …

CISA Warns of Fortinet FortiWeb WAF Vulnerability Exploited in the Wild to Gain Admin Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

CISA has issued an urgent alert about a critical vulnerability in Fortinet’s FortiWeb Web Application Firewall (WAF), actively exploited by threat actors to seize administrative control of affected systems. Tracked …

EVALUSION Campaign Using ClickFix Technique to deploy Amatera Stealer and NetSupport RAT

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In November 2025, a new malware campaign emerged that combines social engineering tricks with advanced stealing tools. The attack starts when criminals trick users into running commands through the Windows …

North Korean Hackers Infiltrated 136 U.S. Companies to Generate $2.2 Million in Revenue

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The U.S. Justice Department announced major actions against North Korean cybercrime, including five people admitting guilt and the government taking more than $15 million in property linked to the crimes. …

Hackers Exploiting XWiki Vulnerability in the Wild to Hire the Servers for Botnet

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sharp increase in attacks targeting a critical vulnerability in XWiki servers. Multiple threat actors are actively exploiting CVE-2025-24893 to deploy botnets and coin miners, and to establish unauthorized server access across …

Unremovable Spyware on Samsung Devices Comes Pre-installed on Galaxy Series Devices

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Samsung has been accused of shipping budget Galaxy A and M series smartphones with pre-installed spyware that users can’t easily remove. The software in question, AppCloud, developed by the mobile …

Hackers Allegedly Claim Leak of LG Source Code, SMTP, and Hardcoded Credentials

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A threat actor known as “888” has purportedly dumped sensitive data stolen from electronics giant LG Electronics, raising alarms in the cybersecurity community. The breach, first spotlighted on November 16, …

Alice Blue Partners With AccuKnox For Regulatory Compliance

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

AccuKnox, a global leader in Zero Trust Cloud-Native Application Protection Platforms(CNAPP), today announced its partnership with Alice Blue India, a prominent brokerage andfinancial services firm, to strengthen its security and …

Hackers Use Rogue MCP Server to Inject Malicious Code and Control the Cursor’s Built-in Browser

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability allowing attackers to inject malicious code into Cursor’s embedded browser through compromised MCP (Model Context Protocol) servers. Unlike VS Code, Cursor lacks integrity verification on its proprietary …