Scaling SOC Team Expertise With AI-powered Insights for Faster, Easier Understanding of Threats

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Building analyst expertise is a race against time that many Security Operations Centers (SOCs) are losing. New hires often require over six months to handle complex incidents with confidence, creating …

Malicious Prettier Extension on VSCode Marketplace Delivers Anivia Stealer Malware to Exfiltrate Login Credentials

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A dangerous malware campaign has targeted thousands of developers through a fake extension on the Visual Studio Code Marketplace. On November 21, 2025, security researchers discovered a malicious extension named …

FBI Warns of Fake Internet Crime Complaint Center (IC3) Website Used for Phishing Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Federal Bureau of Investigation (FBI) has issued urgent warnings about cybercriminals spoofing the official Internet Crime Complaint Center (IC3) website to conduct phishing attacks and steal sensitive personal information. …

Akira Ransomware Uses SonicWall VPN Exploit to Exfiltrate Sensitive Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Akira ransomware group has begun weaponizing vulnerabilities in SonicWall SSL VPN devices, turning merger-and-acquisition (M&A) processes into high-speed launchpads for cyberattacks. This trend exposes dangerous blind spots for businesses …

New “JackFix” Attack Leverages Windows Updates into Executing Malicious Commands

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated ClickFix campaign dubbed “JackFix” that uses fake adult websites to hijack screens with realistic Windows Update prompts, tricking users into running multistage malware payloads. Attackers mimic popular adult …

Hackers Exploit NTLM Authentication Flaws to Target Windows Systems

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

More than two decades after its initial discovery, the NTLM authentication protocol continues to plague Windows systems worldwide. What started in 2001 as a theoretical vulnerability has evolved into a …

Hackers Sell Lifetime Access to WormGPT and KawaiiGPT for Just $220

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals are now selling lifetime access to malicious AI chatbots WormGPT and KawaiiGPT for as little as $220, marking a dangerous new chapter in AI-powered cybercrime. These tools remove all …

Indirect-Shellcode-Executor Tool Exploits Windows API Vulnerability to Evade AV and EDR

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new offensive security tool developed in Rust is demonstrating a novel method for bypassing modern Endpoint Detection and Response (EDR) systems by exploiting an overlooked behavior in the Windows …

Microsoft Details Security Risks of New Agentic AI Feature

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In recent weeks, discussions have centered on Microsoft’s experimental agentic AI feature, which has introduced both advanced task automation and significant security concerns. This agentic capability, available to Windows insiders …

Developers Expose Passwords and API Keys via Online Tools like JSONFormatter

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Developers are unintentionally exposing passwords, API keys, and sensitive data in production information into online formatting tools such as JSONFormatter and CodeBeautify. New research from watchTowr shows that thousands of …