Hackers Exploiting Windows Server Update Services Flaw to Steal Sensitive Data from Organizations

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Windows Server Update Services (WSUS) vulnerability actively exploited in the wild. Criminals are using this vulnerability to steal sensitive data from organizations in various industries. The vulnerability, tracked as CVE-2025-59287, …

Stolen Credentials and Valid Account Abuse Fuel the Financially Motivated Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Throughout the first half of 2025, financially motivated threat actors have shifted their approach to intrusions, abandoning traditional implant-heavy methods in favor of a more cost-effective strategy. Rather than deploying …

Beware of Malicious ChatGPT Apps That Records Users Action and Steals Sensitive Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The explosive growth of artificial intelligence has created an unexpected security threat as cybercriminals exploit ChatGPT’s popularity through counterfeit mobile applications. Recent security research uncovered sophisticated malicious apps masquerading as …

Threat Actors Exploit LANSCOPE Endpoint Manager Zero-Day Vulnerability to Steal Confidential Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In mid-2025, researchers discovered a sophisticated campaign orchestrated by the Chinese state-sponsored threat group BRONZE BUTLER (also known as Tick) targeting organizations relying on Motex LANSCOPE Endpoint Manager. The attackers …

Google Unveils new AI-Protection for Android to Keep You Safe From Mobile Scams

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Google is strengthening its defense against mobile scams with advanced AI-powered protections built directly into Android devices. As cybercriminals become more sophisticated, using AI themselves to create convincing fraud schemes, …

Progress Patches MOVEit Transfer Uncontrolled Resource Consumption Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Progress Software has released critical security patches addressing a high-severity vulnerability affecting MOVEit Transfer, a widely used enterprise file transfer solution. The vulnerability, tracked as CVE-2025-10932, carries a CVSS score …

Microsoft Introduces Researcher in 365 Copilot: Your Secure Virtual Assistant for Enhanced Productivity

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has launched Researcher with Computer Use in Microsoft 365 Copilot, marking a significant advancement in autonomous AI technology. This new feature allows the AI assistant to move beyond simple …

Threat Actors Actively Using Open-Source C2 Framework to Deliver Malicious Payloads

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new wave of cyber threats is emerging as criminals increasingly weaponize AdaptixC2, a free and open-source Command and Control framework originally designed for legitimate penetration testing and red team …

Hackers Weaponizing Windows LNK File UI Misrepresentation Remote Code Execution Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Chinese-affiliated threat actor UNC6384 has been actively leveraging a critical Windows shortcut vulnerability to target European diplomatic entities across Hungary, Belgium, Serbia, Italy, and the Netherlands. Arctic Wolf researchers identified …

Kimsuky and Lazarus Hacker Groups Unveil New Tools That Enable Backdoor and Remote Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Threat actors operating under the control of North Korea’s regime have demonstrated continued technical sophistication by introducing advanced malware toolsets designed to establish persistent backdoor access and remote control over …