APT37 Abuses Facebook, Telegram, and Tampered Installer in New Targeted Intrusion Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A North Korean state-sponsored threat group known as APT37 has launched a new targeted intrusion campaign using social media platforms, encrypted messaging apps, and a carefully tampered software installer to …

Basic-Fit Data Breach Exposes Millions of Users Across Multiple Countries

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Europe’s largest budget fitness chain by club count, Basic-Fit, has confirmed a significant data breach affecting approximately 1 million members across multiple countries, with around 200,000 members in the Netherlands …

Adobe Patches Acrobat Reader 0-Day Vulnerability Exploited in the Wild

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Adobe has issued an emergency security patch to neutralize a critical zero-day vulnerability in Acrobat Reader that is currently being exploited in the wild. Tracked as CVE-2026-34621, this severe flaw enables …

Elon Musk Announces to Launch XChat With Self-Destruct Message Features

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Elon Musk has officially rolled out XChat, a major security overhaul to the direct messaging infrastructure on the X platform. Designed to rival secure messengers like Signal and Telegram, XChat …

Microsoft Confirms Recent Windows 11 Updates Break Push Button Reset

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has officially acknowledged that recent security updates for Windows 11 are causing the “Reset this PC” (Push-button reset) recovery feature to fail. The issue was confirmed in the release …

Critical WordPress Plugin Flaw Lets Attackers Bypass Authentication and Gain Admin Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security flaw found in a widely used WordPress plugin is putting thousands of websites at serious risk worldwide. Tracked as CVE-2026-1492, this vulnerability affects the User Registration & …

WhatsApp’s ‘End-to-End Encryption by Default’ Claim Called Major Consumer Fraud by Pavel Durov

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Telegram founder Pavel Durov has accused WhatsApp of perpetrating what he calls “the biggest consumer fraud in history,” alleging that the platform’s widely marketed end-to-end encryption (E2EE) claims are fundamentally …

Google Launches Gmail End-to-End Encryption for Android and iOS

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Google has officially rolled out End-to-End Encryption (E2EE) for the Gmail application on Android and iOS devices. This major update targets users utilizing Gmail client-side encryption. It allows organisations to …

Google Unveils Device-Bound Chrome Sessions in Anti-Cookie-Theft Move

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Google officially announced the public rollout of Device Bound Session Credentials (DBSC) for Windows users on Chrome 146. According to the Google Account Security and Chrome teams, this major security …