How Adversary-In-The-Middle (AiTM) Attack Bypasses MFA and EDR?

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Adversary-in-the-Middle (AiTM) attacks are among the most sophisticated and dangerous phishing techniques in the modern cybersecurity landscape. Unlike traditional phishing attacks that merely collect static credentials, AiTM attacks actively intercept …

PhpSpreadsheet Library Vulnerability Enables Attackers to Feed Malicious HTML Input

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A high-severity Server-Side Request Forgery (SSRF) vulnerability has been identified in the widely used PhpSpreadsheet library, potentially allowing attackers to exploit internal network resources and compromise server security.  The vulnerability, …

Nagios XSS Vulnerability Let Remote Attackers to Execute Arbitrary JavaScript

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Nagios XI, a widely-deployed network monitoring solution, has addressed a critical cross-site scripting (XSS) vulnerability in its Graph Explorer feature that could enable remote attackers to execute malicious JavaScript code …

New Mac Malware Dubbed ‘JSCoreRunner’ Weaponizing PDF Conversion Site to Deliver Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated new Mac malware campaign has emerged, targeting users through a deceptive PDF conversion website that conceals a dangerous two-stage payload. The malware, dubbed “JSCoreRunner,” represents a significant evolution …

TransUnion Hack Exposes 4M+ Customers Personal Information

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

TransUnion, one of the nation’s three major credit reporting agencies, has disclosed a significant data breach that exposed the personal information of more than four million U.S. customers. The company …

Nx Packages With Millions of Weekly Downloads Hacked With Credential Stealer Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated supply chain attack has compromised the popular Nx build platform, affecting millions of weekly downloads and resulting in widespread credential theft.  The attack, dubbed “s1ngularity,” represents one of …

Hackers Exploit Microsoft Teams, Mimick as IT Help Desk for Screen Sharing and Remote Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated phishing campaign has been identified, where threat actors impersonate IT helpdesk personnel through Teams’ external communication features, exploiting the platform’s default configuration to bypass traditional email security measures …

Threat Actors Breach High Value Targets like Google in Salesforce Attacks – What Organizations Need to Know

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The escalation of sophisticated cyberattacks targeting Salesforce environments has emerged as one of the most concerning trends in enterprise cybersecurity. As organizations increasingly rely on customer relationship management (CRM) platforms …

Weaponized ScreenConnect RMM Tool Tricks Users into Downloading Xworm RAT

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In a sophisticated campaign uncovered during a recent Advanced Continual Threat Hunt (ACTH) by Trustwave’s SpiderLabs team, threat actors weaponized a legitimate remote management tool, ScreenConnect, to deploy the Xworm …

South Korea Arrests Suspected Chinese Hacker Stolen Tens of Millions of Dollars from Victims

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

South Korean authorities have successfully extradited a Chinese national suspected of orchestrating one of the most sophisticated hacking operations targeting high-profile individuals and financial institutions. The 34-year-old suspect, identified only …