Chrome Type Confusion 0-Day Vulnerability Code Analysis Released

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Google Chrome’s V8 JavaScript engine has been compromised by a critical type confusion zero-day vulnerability, designated CVE-2025-10585, marking the sixth actively exploited Chrome zero-day discovered in 2025.  This high-severity flaw, …

Canada Police Dismantles TradeOgre Platform That Stolen 56 Million Dollars in Cryptocurrency

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Canada’s law enforcement community has achieved a landmark victory in the fight against illicit finance with the dismantling of TradeOgre, a Tor-based cryptocurrency exchange that facilitated the theft and laundering …

Threat Actors Impersonate FBI IC3 Website to Steal The Visitors’ Personal Information

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated spoofing campaign has emerged targeting the Federal Bureau of Investigation’s Internet Crime Complaint Center (IC3). Beginning in mid-September 2025, victims attempting to access IC3’s official portal were redirected …

Threat Actors Attacking ICS Computers With Malicious Scripts and Phishing Pages

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Industrial automation systems have become the latest battleground for sophisticated cybercriminals who are deploying cleverly crafted malicious scripts and phishing pages to compromise ICS computers. Over the first half of …

New Botnet Leverages DNS Misconfiguration to Launch Massive Cyber Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A previously unseen botnet campaign emerged in late November, using a novel combination of DNS misconfiguration and hijacked networking devices to propel a global malspam operation. Initial reports surfaced when …

Hackers Bypassing Windows Mark of the Web Files Using LNK Stomping Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated attack technique called LNK Stomping has emerged as a critical threat to Windows security, exploiting a fundamental flaw in how the operating system handles shortcut files to bypass …

Massive Cyber-Attack Attacking macOS Users via GitHub Pages to Deliver Stealer Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated cyber-attack campaign exploiting GitHub Pages to distribute the notorious Atomic stealer malware to macOS users.  The threat actors behind this operation are leveraging Search Engine Optimization (SEO) techniques …

BlackLock Ransomware Attacking Windows, Linux, and VMware ESXi Environments

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated new ransomware operation dubbed BlackLock has emerged as a significant threat to organizations worldwide, demonstrating advanced cross-platform capabilities and targeting diverse computing environments.  Originally operating under the name …

Cybersecurity Newsletter Weekly – Shai Halud Attack, Ivanti Exploits, FinWise, BMW Data Leak, and More

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

This week in cybersecurity, researchers exposed hidden alliances between ransomware groups, the rise of AI-powered phishing platforms, and large-scale vulnerabilities affecting telecom and enterprise systems. Major data breaches at financial …

New EDR-Freeze Tool That Puts EDRs and Antivirus Into A Coma State

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new proof-of-concept tool named EDR-Freeze has been developed, capable of placing Endpoint Detection and Response (EDR) and antivirus solutions into a suspended “coma” state. According to Zero Salarium, the …