Threat Actors Using AI Generated Malicious Job Offers to Deploy PureRAT

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A Vietnamese cybercrime group is using artificial intelligence to write malicious code in an ongoing phishing campaign that distributes the PureRAT malware through fake job opportunities. The campaign, initially detected …

BlackIce – A Container Based Red Teaming Toolkit for AI Security Testing

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Databricks has officially announced the release of BlackIce, an open-source, containerized toolkit designed to streamline AI security testing and Red Teaming. Originally introduced at CAMLIS Red 2025, BlackIce addresses the …

Critical IDIS IP Cameras One-Click Vulnerability Leads to full Compromise of Victim’s Computer

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A severe security flaw in IDIS IP cameras has emerged, allowing attackers to gain complete control over a victim’s computer with just one click. The vulnerability, tracked as CVE-2025-12556, targets …

eScan Antivirus Update Server Hacked to Push Malicious Update packages

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical supply chain compromise affecting MicroWorld Technologies’ eScan antivirus product, wherein threat actors successfully hijacked the vendor’s legitimate update infrastructure to distribute malware. Discovered on January 20, 2026, by …

Microsoft Exchange Online to Deprecate SMTP AUTH Basic Authentication for Tenants

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft is preparing a major security shift for cloud email customers as Exchange Online moves toward deprecating SMTP AUTH Basic Authentication for all tenants. The change targets one of the …

Critical Solarwinds Web Vulnerability Allows Remote Code Execution and Security Bypass

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Multiple critical vulnerabilities in SolarWinds Web Help Desk (WHD), culminating in unauthenticated remote code execution (RCE) via Java deserialization in CVE-2025-40551, were uncovered by Horizon3.ai researchers. These flaws chain static …

Attackers Targeting Canadian Citizens by Exploiting Their Reliance on Digital Services

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Attackers are increasingly targeting Canadian citizens by abusing their heavy dependence on online government and commercial services. From paying traffic fines and renewing licenses to tracking parcels and booking flights, …

Swarmer Tool Evading EDR With a Stealthy Modification on Windows Registry for Persistence

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Praetorian Inc. has publicly released Swarmer, a tool enabling low-privilege attackers to achieve stealthy Windows registry persistence by sidestepping Endpoint Detection and Response (EDR) monitoring. Deployed operationally since February 2025, …

New Semantic Chaining Jailbreak Attack Bypasses Grok 4 and Gemini Nano Security Filters

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Following the recent Echo Chamber Multi-Turn Jailbreak, NeuralTrust researchers have disclosed Semantic Chaining, a potent vulnerability in the safety mechanisms of multimodal AI models like Grok 4 and Gemini Nano …

Top 10 Best Data Removal Services In 2026

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In 2026, personal data is no longer just a privacy concern, it is a security vector. With the rise of AI-driven scraping and synthetic identity theft, your digital footprint is being harvested at an unprecedented scale.  …