SonicWall SMA 100 Vulnerabilities Let Attackers Execute Arbitrary JavaScript Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Critical security vulnerabilities affecting SonicWall SMA 100 series SSL-VPN appliances that could allow remote attackers to execute arbitrary JavaScript code and potentially achieve code execution without authentication.  The vulnerabilities affect …

Google Launches OSS Rebuild to Strengthen Security of The Open-Source Package Ecosystems

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Modern software supply-chains rely on millions of third-party components, making package repositories a lucrative for attackers. Over the past year, a string of high-profile compromises—from the xz-utils backdoor to the …

AWS Client VPN for Windows Vulnerability Let Attackers Escalate Privileges

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Amazon Web Services has disclosed a critical security vulnerability in its Client VPN software for Windows that could allow attackers to escalate privileges and execute malicious code with administrative rights.  …

Stealthy Backdoor in WordPress Plugins Gives Attackers Persistent Access to Websites

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated WordPress malware campaign has been discovered operating through the rarely monitored mu-plugins directory, giving attackers persistent access to compromised websites while evading traditional security measures. The malicious code, …

New ACRStealer Abuses Google Docs and Steam for C2 Server Via DDR Technique

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated new variant of the ACRStealer information-stealing malware has emerged, demonstrating advanced evasion techniques and leveraging legitimate platforms for covert command-and-control operations. The malware, which has been actively distributed …

Operation CargoTalon Attacking Russian Aerospace & Defense to Deploy EAGLET Implant

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated cyber espionage campaign dubbed “Operation CargoTalon” has emerged, specifically targeting Russia’s aerospace and defense sectors through carefully crafted spear-phishing attacks. The operation, which surfaced in late June 2025, …

CISA warns of Google Chromium 0-Day Input Validation Vulnerability Exploited in Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

CISA has issued an urgent warning about a critical vulnerability in Google Chromium that threat actors are actively exploiting.  The vulnerability, designated as CVE-2025-6558, poses a significant security risk to …

UNC3944 Attacking VMware vSphere and Enabling SSH on ESXi Hosts to Reset ‘root’ Passwords

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

UNC3944, a financially driven threat organization associated with “0ktapus,” “Octo Tempest,” and “Scattered Spider,” launched a sophisticated cyber campaign that used social engineering and hypervisor-level attacks to target VMware vSphere …

Threat Actor Mimo Attacking Magento CMS to Steal Card Details and Bandwidth Monetization

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The cybersecurity landscape faces a new threat as the notorious Mimo threat actor, previously known for targeting Craft content management systems, has significantly evolved its operations to compromise Magento ecommerce …

Weaponized LNK File Disguised as Credit Card Security Email Steals User Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals have evolved their social engineering tactics with a sophisticated malware campaign that exploits users’ trust in financial institutions. The latest threat involves a malicious LNK file masquerading as a …