Lite XL Text editor Vulnerability Let Attackers Execute Arbitrary Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A vulnerability has been discovered in Lite XL, a lightweight text editor, that could allow attackers to execute arbitrary code on affected systems. Carnegie Mellon University experts identified CVE-2025-12120, which …

ThreatBook Peer-Recognized as a Strong Performer in the 2025 Gartner® Peer Insights™ Voice of the Customer for Network Detection and Response — for the Third Consecutive Year

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Recognition we believe underscores global customer trust and proven product excellence for security teams evaluating NDR solutions. ThreatBook, a global leader in threat intelligence-based cybersecurity solutions, today announced that for …

Massive Phishing Attack Impersonate as Travel Brands Attacking Users with 4,300 Malicious Domains

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A large phishing campaign has been targeting travelers worldwide, using more than 4,300 fake domains to steal payment card information. The operation focuses on people planning vacations or about to …

Citrix NetScaler ADC and Gateway Vulnerability Enables Cross-Site Scripting Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cloud Software Group has disclosed a cross-site scripting (XSS) vulnerability affecting NetScaler ADC and NetScaler Gateway products. Tracked as CVE-2025-12101, the flaw allows attackers to inject malicious scripts into web …

Why your Business Need Live Threat Intel from 15k SOCs

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity leaders now face an impossible equation: you need intelligence that’s comprehensive enough to protect your organisation, fresh enough to stop emerging threats, and manageable enough that your team doesn’t drown in false positives. Most …

Beware of Malicious Steam Cleanup Tool Attack Windows Machines to Deploy Backdoor Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated backdoor malware campaign has emerged targeting Windows users through a weaponized version of SteamCleaner, a legitimate open-source utility designed to clean junk files from the Steam gaming platform. …

Multiple Apache OpenOffice Vulnerabilities Leads to Memory Corruption and Unauthorized Content Loading

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Apache OpenOffice has released version 4.1.16, addressing seven critical security vulnerabilities that enable unauthorized remote document loading and memory corruption attacks. These flaws represent a significant security risk to users …

GitHub Copilot and Visual Studio Vulnerabilities Allow Attacker to Bypass Security Feature

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has disclosed two critical security vulnerabilities in GitHub Copilot and Visual Studio that could allow attackers to bypass essential security features. Both vulnerabilities were released on November 11, 2025, …

Hackers Actively Exploiting Cisco and Citrix 0-Days in the Wild to Deploy Webshell

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

An advanced hacking group is actively exploiting zero-day vulnerabilities in Cisco Identity Services Engine (ISE) and Citrix systems. These attacks, spotted in real-world operations, allow hackers to deploy custom webshells …

APT-C-08 Hackers Exploiting WinRAR Vulnerability to Attack Government Organizations

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The advanced persistent threat group APT-C-08, also known as Manlinghua or BITTER, has launched a sophisticated campaign targeting government organizations across South Asia by exploiting a critical directory traversal vulnerability …