Cisco Secure Firewall Vulnerability Allows Hackers to Inject Remote Shell Command Injection

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cisco has disclosed a critical security vulnerability in its Secure Firewall Management Center (FMC) Software that could allow unauthenticated attackers to execute arbitrary shell commands with high-level privileges remotely. The …

Threat Actors Personalize Phishing Attacks With Advanced Tactics for Malware Delivery

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals are increasingly leveraging personalization tactics to enhance the effectiveness of their malware-delivery phishing campaigns, with threat actors customizing subject lines, attachment names, and embedded links to create a false …

Qilin Ransomware Leads The Attack Landscape With 70+ Claimed Victims in July

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The ransomware threat landscape witnessed a concerning surge in July 2025, with the Qilin ransomware group maintaining its dominant position for the third time in four months. The group successfully …

New FireWood Malware Attacking Linux Systems to Execute Commands and Exfiltrate Sensitive Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated new variant of the FireWood backdoor has emerged, targeting Linux systems with enhanced evasion capabilities and streamlined command execution functionality. This latest iteration represents a significant evolution of …

New EncryptHub Campaign Leverages Brave Support Platform to Deliver Malicious Payloads via MMC Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The cyberthreat landscape continues to evolve as malicious actors develop increasingly sophisticated attack methods, with the EncryptHub threat group emerging as a particularly concerning adversary. This emerging threat actor, also …

Threat Actors Weaponizing YouTube Video Download Site to Download Proxyware Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals have escalated their proxyjacking campaigns by exploiting legitimate user behavior around YouTube video downloads, according to a recent security analysis. The attack leverages fake YouTube download sites to distribute …

New Trends in Phishing Attacks Emerges as AI Reshaping the Tool Used by Cybercriminals

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The cybersecurity landscape is witnessing a fundamental transformation as artificial intelligence becomes the newest weapon in cybercriminals’ arsenals, revolutionizing traditional phishing and scam operations. Unlike conventional phishing campaigns that were …

Google Announces That Android’s pKVM Framework Achieves SESIP Level 5 Certification

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Google has achieved a significant milestone in mobile security with the announcement that Android’s protected KVM (pKVM) hypervisor has officially received SESIP Level 5 certification, marking it as the first …

Canada’s House of Commons Hit by Cyberattack Exploiting Recent Microsoft vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A significant cyberattack hit the Canadian House of Commons on August 9, 2025, when threat actors exploited a recently disclosed Microsoft vulnerability to gain unauthorized access to sensitive employee information. …

Apache Tomcat Vulnerabilities Let Attackers Trigger Dos Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security vulnerability in Apache Tomcat’s HTTP/2 implementation has been discovered, enabling attackers to launch devastating denial-of-service (DoS) attacks against web servers.  The vulnerability, designated as CVE-2025-48989 and dubbed …