Helix Data Extortion Group Uses Vishing and Device Code Phishing to Steal SharePoint Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 9, 2026 Helix has surfaced as a fast-moving data extortion group that targets Microsoft 365 users through phone scams and cloud-focused phishing instead of traditional malware drops. Attackers are …

Microsoft Released Patches for RoguePlanet Defender Zero-Day Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 9, 2026 Microsoft has released security updates to address a newly disclosed zero-day vulnerability in Microsoft Defender, publicly referred to as “RoguePlanet.” The flaw, tracked as CVE-2026-50656, affects the …

New GhostApproval Vulnerability Affects Amazon Q, Claude Code, Cursor, and Other AI Agents

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 9, 2026 A newly disclosed vulnerability pattern dubbed “GhostApproval” has exposed a critical security flaw in six of the most widely used AI coding assistants: Amazon Q Developer, Anthropic …

Palo Alto PAN-OS Vulnerability Allows Arbitrary Code Execution Through Malicious Network Traffic

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 9, 2026 Palo Alto Networks has disclosed a high-severity vulnerability in PAN-OS that could allow unauthenticated attackers to execute arbitrary code or trigger a denial-of-service (DoS) condition by sending …

Claude, Cursor, and Codex Trigger Endpoint Security Rules Used to Catch Hackers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 9, 2026 AI coding agents such as Claude Code, Cursor, and OpenAI Codex are increasingly appearing in enterprise environments, and new telemetry shows they are unintentionally triggering security detections …

Lurking Lizard Uses Fake 7-Zip Installers to Turn Victim Devices Into Proxy Nodes

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A newly uncovered cybercriminal operation has been quietly turning ordinary computers into paid proxy servers for years, hiding behind a fake version of the popular 7-Zip file compression tool. Victims …