Proton Exposes 300 Million Stolen Credentials Available for Sale on Dark Web Cybercrime Markets

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Proton has launched a new initiative called the Data Breach Observatory. This program reveals serious problems that exist on the internet. The cybersecurity company revealed that over 300 million stolen …

Windows 11 24H2/25H2 Update Causes Task Manager to be Active After Closure

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has released a non-security update for Windows 11 versions 24H2 and 25H2 that introduces an unusual bug affecting one of the operating system’s most essential utilities. The update, designated …

New Operation SkyCloak Uses Powershell Tools and Hidden SSH Service to Unblock Traffic

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated campaign targeting military personnel across Russia and Belarus has emerged, deploying a complex multi-stage infection chain that establishes covert remote access through Tor-based infrastructure. Operation SkyCloak represents a …

Windows Graphics Vulnerabilities Allow Remote Attackers to Execute Arbitrary Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Multiple vulnerabilities in Microsoft’s Graphics Device Interface (GDI), a core component of the Windows operating system responsible for rendering graphics. These flaws, discovered by Check Point through an intensive fuzzing …

New BOF Tool Exploits Microsoft Teams’ Cookie Encryption allowing Attackers to Access User Chats

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A specialized Beacon Object File (BOF) designed to extract authentication cookies from Microsoft Teams without disrupting the application. This development builds on recent findings that expose how Teams stores sensitive …

Cybersecurity News Weekly Newsletter – EY Data Leak, Bind 9, Chrome Vulnerability, and Aardvar ChatGPT Agent

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

This week’s cybersecurity roundup highlights escalating threats from misconfigurations, software flaws, and advanced malware. Key incidents demand immediate attention from IT teams and executives. ISC patched CVE-2025-5470 in BIND 9 …

New EDR-Redir V2 Blinds Windows Defender on Windows 11 With Fake Program Files

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

An upgraded release of tool EDR-Redir V2, designed to evade Endpoint Detection and Response (EDR) systems by exploiting Windows bind link technology in a novel way. According to the researcher …

OpenAI’s New Aardvark GPT-5 Agent that Detects and Fixes Vulnerabilities Automatically

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

OpenAI has unveiled Aardvark, an autonomous AI agent powered by its cutting-edge GPT-5 model, designed to detect software vulnerabilities and automatically propose fixes. This tool aims to entrust developers and …

Agent Session Smuggling: How Malicious AI Hijacks Victim Agents

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Security researchers have uncovered a sophisticated attack technique that exploits the trust relationships built into AI agent communication systems. The attack, termed agent session smuggling, allows a malicious AI agent …