Hackers Turn More Than 3,500 Redis Servers Into Cryptocurrency Miners

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A large cryptomining operation has compromised 3,562 Redis servers and turned their processing power into a source of Monero revenue. The campaign did not rely on a newly discovered software …

Chrome 153 Fixes 230 Vulnerabilities, Including One 0-Day Exploited in the Wild

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Google has rolled out Chrome 153 to the stable channel for Windows, Mac, and Linux, shipping as version 153.0.8010.36 on Linux and 153.0.8010.36/.37 on Windows and Mac. The update will …

FortiSandbox Vulnerability Allows Attackers to Access Sensitive Information via Crafted HTTP Requests

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Fortinet has disclosed a new high-severity vulnerability affecting its FortiSandbox platform, warning that unauthenticated attackers could exploit weaknesses in the product’s web interface to siphon off sensitive information without ever …

Phishing Powers 80% of Attacks on US Companies: How SOCs Can Detect It Early 

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Phishing remains one of the most effective ways for attackers to gain access to corporate environments. From 2013-2023, the FBI recorded 158,436 US victims of Business Email Compromise (BEC), with over $20 billion in reported …

Microsoft Patch Tuesday September 2026 – 973 Vulnerabilities Fixed, Including 2 Zero-Days

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft released its September 2026 Patch Tuesday security updates on September 8, addressing 973 vulnerabilities, including two zero-days already exploited in attacks. The release spans Windows, Microsoft Office, SQL Server, …

FortiOS and FortiProxy ZTNA Validation Vulnerability Allows Attacker to Perform a Man-in-the-Middle Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Fortinet has disclosed a high-severity certificate validation flaw in the Agentless ZTNA portal of FortiOS and FortiProxy that could let an unauthenticated remote attacker intercept traffic flowing between the ZTNA …

Hackers Actively Exploiting FortiGate Firewalls to Deploy Custom Node.js Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

An active exploitation campaign targeting FortiGate firewalls, in which attackers weaponize a critical vulnerability to plant a custom-built Node.js remote access trojan (RAT) that turns compromised perimeter devices into long-term …