Linux Ransomware Pay2Key Attacking Organizations Ervers, Virtualization Hosts, and Cloud Workloads

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Linux has long been considered a more secure operating system than Windows, but that reputation is being tested. A ransomware group known as Pay2Key, attributed to Iranian threat actors, has …

macOS Threats Are the Biggest Security Gap in 2026: How SOC Teams Close It 

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

macOS Threats: Closing Security Gaps in 2026 macOS has become a standard part of modern business environments, especially across engineering, product, and leadership teams. That makes it a growing security …

SmartApeSG ClickFix Campaign Delivers Remcos, NetSupport RAT, StealC and Sectop RAT

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A threat campaign known as SmartApeSG — also tracked under the names ZPHP and HANEYMANEY — has been observed pushing multiple strains of malware through a social engineering technique called …

Firefox 149.0 Released With Free Built-in VPN With 50 GB Monthly Data Limit

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Mozilla has officially rolled out Firefox 149.0 to the Release channel on March 24, 2026, delivering a massive update focused heavily on user privacy and security hardening. The standout addition …

New Research Maps How Infostealer Infections Turn Into Dark Web Exposure in 48 Hours

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The digital threat landscape has reached a point where a single careless download by one employee can hand criminal groups direct access to an entire corporate network in under two …

AI-Assisted ‘OpenClaw Trap’ Campaign Uses Trojanized GitHub Repos to Target Developers and Gamers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A newly discovered malware campaign has been quietly spreading through fake GitHub repositories, targeting software developers, gamers, Roblox players, and crypto users at the same time. Tracked internally as TroyDen’s …

F5 NGINX Plus and Open Source Vulnerability Allow Attackers to Execute Code Using MP4 file

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A high-severity vulnerability has been disclosed affecting both NGINX Open Source and NGINX Plus. Tracked formally as CVE-2026-32647, this security flaw carries a CVSS v4.0 base score of 8.5 and …

Firefox 149 Released With Patch for 37 Vulnerabilities that Enables Remote Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Mozilla released Firefox 149 on March 24, 2026, delivering one of the largest security advisories in the browser’s recent history, addressing 37 vulnerabilities spanning memory corruption, sandbox escapes, use-after-free flaws, …

OpenAI to Shut Down Sora Video Platform, Pivots to Enterprise and Developer Tools

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

OpenAI is pulling the plug on its Sora video generation platform, a high-profile product launched to widespread attention last year that has since quietly faded from the spotlight. The shutdown …

Hackers Exploiting Magento to Execute Remote Code and Gain Complete Account Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical unrestricted file upload vulnerability, dubbed “PolyShell,” is actively being exploited in Magento and Adobe Commerce stores. Discovered by the Sansec Forensics Team, this flaw allows unauthenticated attackers to …