New DefenderWrite Tool Let Attackers Inject Malicious DLLs into AV Executable Folders

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new tool called DefenderWrite exploits whitelisted Windows programs to bypass protections and write arbitrary files into antivirus executable folders, potentially enabling malware persistence and evasion. Developed by cybersecurity expert …

PoC Exploit Released for Linux-PAM Vulnerability Allowing Root Privilege Escalation

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A high-severity vulnerability in the Pluggable Authentication Modules (PAM) framework was assigned the identifier CVE-2025-8941. This vulnerability stems from the heart of Linux operating systems, enabling attackers with local access …

WatchGuard VPN Vulnerability Let Remote Attacker Execute Arbitrary Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

WatchGuard has disclosed a critical out-of-bounds write vulnerability in its Fireware OS, enabling remote unauthenticated attackers to execute arbitrary code via IKEv2 VPN connections. Designated CVE-2025-9242 under advisory WGSA-2025-00015, the …

Volkswagen Allegedly Hit by Ransomware Attack as 8Base Claims Sensitive Data Theft

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Volkswagen Group has issued a statement addressing claims by the ransomware group 8Base, which alleges it has stolen and leaked sensitive data from the automaker. The German carmaker maintains that …

Windows 11 24H2/25H2 Update Blocks Mouse and Keyboard in Recovery Mode

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft’s latest security update has rendered USB keyboards and mice inoperable within the Windows Recovery Environment (WinRE). Released on October 14, 2025, as KB5066835 for OS Build 26100.6899, the patch …

American Airlines Subsidiary Envoy Compromised in Oracle Hacking Campaign

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Envoy Air, a wholly owned subsidiary of American Airlines, has confirmed it fell victim to a hacking campaign exploiting vulnerabilities in Oracle’s E-Business Suite (EBS). The breach, first highlighted by …

New Phishing Attack Leverages Azure Blob Storage to Impersonate Microsoft

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Threat actors are leveraging Microsoft Azure Blob Storage to craft highly convincing phishing sites that mimic legitimate Office 365 login portals, putting Microsoft 365 users at severe risk of credential …

PoC Exploit Released for 7-Zip Vulnerabilities that Let Attackers Execute Arbitrary Code Remotely

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A proof-of-concept exploit for two critical vulnerabilities in the popular file archiver 7-Zip, potentially allowing attackers to execute arbitrary code remotely through malicious ZIP files. The flaws, tracked as CVE-2025-11001 …

Authorities Dismantle Cybercrime-as-a-Service Platform, Seize 40,000 Active SIM Cards

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

An international law enforcement operation has dismantled a large-scale cybercrime-as-a-service network responsible for fueling thousands of online fraud cases across Europe. The operation, known as SIMCARTEL, took place on 10 …

Critical Zimbra SSRF Vulnerability Let Attackers Access Sensitive Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A newly disclosed Server-Side Request Forgery (SSRF) flaw in Zimbra Collaboration Suite has raised major security concerns, prompting administrators to patch systems immediately. The issue, identified in the chat proxy …