PHANTOMPULSE RAT Uses Process Injection and UAC Bypass to Compromise Windows Systems

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 2, 2026 A newly analyzed remote access trojan called PHANTOMPULSE has drawn serious attention for its advanced approach to compromising Windows systems. The malware is the final-stage payload in …

Nimbus Manticore APT Abuses Fake Recruitment Portal to Deliver Custom Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 2, 2026 A state-linked hacking group has been caught running a carefully crafted fake recruitment operation to push custom malware onto unsuspecting victims. The group, known as Nimbus Manticore …

Android 0-Day Vulnerability Exploited in Attacks to Gain Complete Device Control

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 2, 2026 A critical Android zero-day vulnerability is being actively exploited in targeted attacks, allowing threat actors to gain near-complete control over affected devices without any user interaction. The …

Critical StrongDM Vulnerability Allows Attackers to Steal and Reuse Authentication

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 2, 2026 A critical authentication flaw in StrongDM’s desktop application has been identified that allows attackers to hijack user sessions by reusing locally stored authentication material, potentially exposing sensitive …

Hackers Use Meta’s AI Bot to Reset Passwords and Hijack Instagram Accounts

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 2, 2026 A critical logic flaw in Meta’s AI-powered Instagram support chatbot allowed attackers to bypass two-factor authentication entirely, not by cracking codes, but by simply asking the bot …

IBM WebSphere Server Vulnerable to Remote Code Execution Attack Via Crafted Request

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 1, 2026 IBM has disclosed a critical security vulnerability in its WebSphere Application Server ecosystem that could allow attackers to execute arbitrary code through specially crafted HTTP requests. The …

Critical Magento Cache Plugin Vulnerability Enables Remote Code Execution Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 1, 2026 A critical security vulnerability has been discovered in a widely used Magento caching plugin that allows attackers to remotely execute malicious code with no login, configuration changes, …

Iranian Hackers Abuse AppDomainManager Hijacking to Evade EDR Detection

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 1, 2026 Iranian hackers have taken their cyberespionage playbook to a new level, deploying a sophisticated .NET hijacking technique to slip past endpoint defenses and target organizations across the …

SideCopy Hackers Deploy Persistent XenoRAT Malware to Target Afghanistan Finance Ministry

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 1, 2026 A Pakistan-linked threat group known as SideCopy has launched a focused cyberattack against Afghanistan’s Ministry of Finance, deploying a persistent remote access tool called XenoRAT. The campaign, …