Akira Ransomware Allegedly Claims Theft of 23GB in Apache OpenOffice Breach

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The notorious Akira ransomware group announced on October 29, 2025, that it successfully breached the systems of Apache OpenOffice, exfiltrating a staggering 23 gigabytes of sensitive corporate data. The group, …

CISA Warns of Linux Kernel Use-After-Free Vulnerability Exploited in Attacks to Deploy Ransomware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent alert about a critical use-after-free vulnerability in the Linux kernel, tracked as CVE-2024-1086. This vulnerability, hidden within the …

Hackers Exploiting Cisco IOS XE Vulnerability in the Wild to Deploy BADCANDY Web Shell

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals and state-sponsored actors are ramping up attacks on unpatched Cisco IOS XE devices across Australia, deploying a persistent Lua-based web shell known as BADCANDY to maintain unauthorized access. This …

Hackers Exploiting Windows Server Update Services Flaw to Steal Sensitive Data from Organizations

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Windows Server Update Services (WSUS) vulnerability actively exploited in the wild. Criminals are using this vulnerability to steal sensitive data from organizations in various industries. The vulnerability, tracked as CVE-2025-59287, …

Stolen Credentials and Valid Account Abuse Fuel the Financially Motivated Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Throughout the first half of 2025, financially motivated threat actors have shifted their approach to intrusions, abandoning traditional implant-heavy methods in favor of a more cost-effective strategy. Rather than deploying …

Beware of Malicious ChatGPT Apps That Records Users Action and Steals Sensitive Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The explosive growth of artificial intelligence has created an unexpected security threat as cybercriminals exploit ChatGPT’s popularity through counterfeit mobile applications. Recent security research uncovered sophisticated malicious apps masquerading as …

Threat Actors Exploit LANSCOPE Endpoint Manager Zero-Day Vulnerability to Steal Confidential Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In mid-2025, researchers discovered a sophisticated campaign orchestrated by the Chinese state-sponsored threat group BRONZE BUTLER (also known as Tick) targeting organizations relying on Motex LANSCOPE Endpoint Manager. The attackers …

Google Unveils new AI-Protection for Android to Keep You Safe From Mobile Scams

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Google is strengthening its defense against mobile scams with advanced AI-powered protections built directly into Android devices. As cybercriminals become more sophisticated, using AI themselves to create convincing fraud schemes, …

Progress Patches MOVEit Transfer Uncontrolled Resource Consumption Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Progress Software has released critical security patches addressing a high-severity vulnerability affecting MOVEit Transfer, a widely used enterprise file transfer solution. The vulnerability, tracked as CVE-2025-10932, carries a CVSS score …

Microsoft Introduces Researcher in 365 Copilot: Your Secure Virtual Assistant for Enhanced Productivity

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has launched Researcher with Computer Use in Microsoft 365 Copilot, marking a significant advancement in autonomous AI technology. This new feature allows the AI assistant to move beyond simple …