Windows Active Directory Vulnerability Allow Attackers to Execute Malicious Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has released urgent security updates to address a critical vulnerability in Windows Active Directory that allows attackers to execute malicious code. Disclosed on April 14, 2026, the vulnerability poses …

New PHP Composer Vulnerability Let Attackers Execute Arbitrary Commands

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

PHP Composer released urgent security updates to address two critical command injection vulnerabilities. PHP Composer is an essential dependency management tool used globally by developers, making any code execution flaws …

MuddyWater-Style Hackers Scan 12,000+ Systems Before Hitting Middle East Critical Sectors

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated cyber campaign bearing strong operational similarities to the MuddyWater threat group has been caught sweeping more than 12,000 internet-exposed systems across multiple regions before launching focused attacks on …

Hackers Using Google Cloud Storage to Bypass Email Filters and Deliver Remcos RAT

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals are always looking for smarter ways to bypass security, and their latest method is both simple and effective. Instead of building suspicious new websites, attackers now use Google Cloud …

Hackers Hide Backdoor in Trusted WordPress Plugins for 8 Months Before Activating Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A group of trusted WordPress plugins quietly carried a hidden backdoor for eight full months, and nobody noticed until the damage had already been done. The attack, uncovered in April …

Hackers Create Hidden Mailbox Rules in Microsoft 365 to Intercept Sensitive Business Emails

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals have found a quiet way to sit inside a corporate email account and read everything being sent and received — without the account owner ever knowing. Attackers are now …

Agentic LLM Browsers Expose New Attack Surface for Prompt Injection and Data Theft

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Artificial intelligence is changing how people browse the internet. AI-powered browsers no longer just show web pages — they read content, take actions, and complete tasks for the user. These …

FUNNULL-Linked Triad Nexus Resurfaces With 175+ Rotating CNAME Domains and Global Scam Portals

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A cybercriminal group tied to the FUNNULL Content Delivery Network has made a calculated return with a far more sophisticated and evasive infrastructure. Known as Triad Nexus, the group has …

Windows BitLocker Vulnerability Allows Attacker to Bypass Security Feature

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft officially released security updates to address a significant vulnerability in Windows BitLocker. Tracked as CVE-2026-27913, this security feature bypass vulnerability was discovered by security researcher Alon Leviev in collaboration …