Multiple TP-Link OS Command Injection Vulnerabilities Let Attackers Gain Admin Control of the Device

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

TP-Link OS Command Injection Vulnerabilities TP-Link has released urgent firmware updates for its Archer BE230 Wi-Fi 7 routers to address multiple high-severity security flaws. These vulnerabilities could allow authenticated attackers …

SystemBC Botnet Hijacked 10,000 Devices Worldwide to Use for DDoS Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The SystemBC malware family, a persistent threat first documented in 2019, has evolved into a massive botnet infrastructure controlling over 10,000 hijacked devices globally. Functioning primarily as a SOCKS5 proxy …

PhantomVAI Custom Loader Uses RunPE Utility to Attack Users

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated custom loader named PhantomVAI has emerged in global phishing campaigns, delivering various stealers and remote access trojans (RATs) to compromised systems. This malware loader operates by masquerading as …

Interlock Ransomware Actors New Tool Exploiting Gaming Anti-Cheat Driver 0-Day to Disable EDR and AV

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Interlock ransomware group has emerged as a distinct threat in the cybersecurity landscape, particularly targeting the education sector in the United States and United Kingdom. Unlike many contemporary ransomware …

False Negatives Are a New SOC Headache. Here’s the Fast Way to Fix It 

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

False negatives are becoming the most expensive “quiet” failure in SOCs. In 2026, AI-generated phishing and multi-stage malware chains are built to look clean on the outside, behave normally at …

MomentProof Deploys Patented Digital Asset Protection

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Washington, DC, February 4th, 2026, CyberNewsWire MomentProof, Inc., a provider of AI-resilient digital asset certification and verification technology, today announced the successful deployment of MomentProof Enterprise for AXA, enabling cryptographically …

Supply Chain Attack Abused Notepad++ Update Infrastructure to Deliver Targeted Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The developers of Notepad++ disclosed a critical security breach on February 2, 2026, affecting their update infrastructure. The popular text editor, widely used by developers worldwide, became the target of …

ValleyRAT Mimic as LINE Installer Attacking Users to Steal Login Details

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated malware campaign has surfaced where threat actors are distributing the ValleyRAT backdoor disguised as a legitimate installer for the popular messaging application, LINE. This targeted attack primarily focuses …

Threat Actors Abuse Microsoft & Google Platforms to Attack Enterprise Users

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Enterprise security teams are facing a sophisticated new challenge as cybercriminals increasingly exploit trusted cloud platforms to launch phishing attacks. Instead of relying on suspicious newly registered domains, threat actors …

CISA Warns of GitLab Community and Enterprise Editions SSRF Vulnerability Exploited in Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

CISA Warns GitLab SSRF Vulnerability Exploit A critical GitLab vulnerability has been added to the Known Exploited Vulnerabilities (KEV) catalog. Threat actors are actively exploiting a server-side request forgery (SSRF) …