Ivanti Neurons for ITSM Vulnerabilities Allow Remote Attacker to Obtain User Sessions

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Ivanti has released security updates addressing two medium-severity vulnerabilities in Ivanti Neurons for ITSM (N-ITSM), its on-premise IT service management platform. The flaws, if exploited, could allow remote authenticated attackers …

CISA Warns of Microsoft Exchange and Windows CLFS Vulnerabilities Exploited in Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent warning to organizations regarding two severe Microsoft vulnerabilities. On April 13, 2026, the agency officially added flaws affecting Microsoft …

New Mirax Android RAT Turns Infected Phones Into Residential Proxy Nodes

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A newly discovered Android malware called Mirax has been quietly circulating in underground criminal forums since late 2025, posing a growing threat to mobile users across Europe and beyond. What …

Hackers Leave Credential Stuffing Botnet Wide Open With Full Worker Access and Root Passwords

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A live credential stuffing botnet targeting Twitter/X accounts has been found completely exposed to the internet, with no password required to access its control panel, worker server credentials, or real-time …

Codex Hacks Samsung TV to Root by Exploiting World-Writable Driver Interfaces

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

OpenAI’s Codex AI model successfully escalated privileges to root on a real Samsung Smart TV by exploiting world-writable kernel driver interfaces — a finding that raises serious questions about how …

CISA Warns of Fortinet SQL Injection Vulnerability Actively Exploited in Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent warning regarding a critical security flaw in Fortinet products. On April 13, 2026, the agency added a severe SQL …

Hackers Weaponize Obsidian Shell Commands Plugin to Launch Cross-Platform Malware Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Threat actors have found a clever way to abuse a trusted productivity tool to deliver malware. By weaponizing Obsidian’s Shell Commands community plugin, attackers are quietly executing malicious code on …

Booking.com Confirms Data Breach — Hackers Accessed Customers’ Personal Information

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Global travel booking giant Booking.com has confirmed a cyberattack in which unauthorized third parties gained access to customers’ personal data, including names, email addresses, phone numbers, and reservation details, raising …