New Android Spyware Attacking Android Users Mimic as Signal and ToTok Apps

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In recent months, security teams have observed a surge in Android spyware campaigns that prey on privacy-conscious users by masquerading as trusted messaging apps. These malicious payloads exploit users’ trust …

Threat Actors Pose as Government Officials to Attack Organizations with StallionRAT

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In recent months, a sophisticated campaign dubbed Cavalry Werewolf has emerged, targeting government and critical infrastructure organizations across Russia and neighboring regions. Adversaries initiated these attacks by sending meticulously crafted …

New GhostSocks Malware-as-a-Service Enables Threat Actors to Convert Compromised Devices into Proxies

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

An operator known as GhostSocks advertised a novel Malware-as-a-Service (MaaS) on the Russian cybercrime forum XSS.is on October 15, 2023, promising to transform compromised devices into residential SOCKS5 proxies. The …

Top 10 Best Digital Footprint Monitoring Tools For Organizations in 2025

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In today’s hyperconnected digital environment, organizations face increasing threats to their online presence and reputations. From cyberattacks and phishing campaigns to data breaches and brand impersonation, businesses must actively safeguard …

Hackers Attempting to Exploit Grafana Vulnerability that Enables Arbitrary File Reads

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Grafana, the popular open-source analytics and visualization platform, has once again become the target of a large‐scale, coordinated exploitation effort.  On 28 September, security researchers at GreyNoise detected a sudden …

TOTOLINK X6000R Router Vulnerabilities Let Remote Attackers Execute Arbitrary Commands

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Critical security flaws have been discovered in the TOTOLINK X6000R wireless router, exposing users to severe risks of remote code execution and unauthorized system access. These vulnerabilities affect the router’s …

DrayOS Routers Vulnerability Let Attackers Execute Malicious Code Remotely

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability has been discovered in DrayTek’s DrayOS routers, which could allow unauthenticated remote attackers to execute malicious code. The flaw, tracked as CVE-2025-10547, affects a wide range of …

SideWinder Hacker Group Hosting Fake Outlook/Zimbra Portals to Steal Login Credentials

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

APT SideWinder, a state-sponsored threat actor long associated with espionage across South Asia, has recently launched a campaign deploying phishing portals that mimic legitimate Outlook and Zimbra webmail services. Emerging …

Threat Actors Leveraging WhatsApp Messages to Attack Windows Systems With SORVEPOTEL Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Enterprise networks worldwide are facing an aggressive, self-propagating malware campaign that exploits WhatsApp as its primary delivery mechanism. First observed in early September 2025 targeting Brazilian organizations, SORVEPOTEL spreads through …