Microsoft Exchange Online Flags Customers Legitimate Email as Phishing

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft Exchange Online Flags Legitimate Email Microsoft Exchange Online is experiencing a service degradation that incorrectly flags legitimate customer emails as phishing, quarantining them and disrupting communications. The issue, identified …

Hackers Exploit Legitimate Apple and PayPal Invoice Emails in DKIM Replay Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity threats are swiftly evolving beyond easily spotted, poorly written phishing emails to sophisticated methods that leverage trusted digital infrastructure. Attackers are now exploiting legitimate business workflows within widely used …

Roundcube Webmail Vulnerability Let Attackers Track Email Opens

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Roundcube Webmail Vulnerability Roundcube, one of the world’s most popular open-source webmail solutions, has released critical security updates to address a privacy bypass vulnerability. The flaw detailed by NULL CATHEDRAL …

New Node.js Based LTX Stealer Attack Users to Exfiltrate Login Credentials

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated new malware strain dubbed “LTX Stealer” has emerged in the cyber threat landscape, utilizing a unique Node.js-based architecture to compromise Windows systems. First surfacing in early 2026, this …

European Commission Contains Cyber-Attack Targeting Staff Mobile Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

European Commission Cyber-Attack The European Commission has confirmed the detection and containment of a security incident affecting the central infrastructure that manages staff mobile devices. The breach, identified on January …

Hackers Exploiting ClawHub Skills to Bypass VirusTotal Detections via Social Engineering

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Threat actors have significantly evolved their attack strategies recently observed within the ClawHub ecosystem, moving away from easily detectable methods to more subtle techniques. Rather than embedding malicious payloads directly …

Vortex Werewolf Attacking Organizations to Gain Tor-Enabled Remote Access Over the RDP, SMB, SFTP, and SSH Protocols

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new cyber espionage cluster has recently emerged, focusing its aggressive targeting on Russian government and defense organizations. Active since at least December 2025, the group, designated as Vortex Werewolf, …

New RecoverIt Tool Exploits Windows Service Failure Recovery Functions to Execute Payload

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

RecoverIt Tool A new open-source offensive security tool named “RecoverIt” has been released, offering Red Teamers and penetration testers a novel method for establishing persistence and executing lateral movement on …

Critical FortiClientEMS Vulnerability Let Attackers Execute Malicious Code Remotely

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

FortiClientEMS RCE Vulnerability Fortinet has issued a critical security advisory warning administrators to immediately patch instances of FortiClientEMS, its central management solution for endpoint protection. The vulnerability, tracked as CVE-2026-21643, …

New Telegram Phishing Attack Abuses Authentication Workflows to Obtain Full Authorized User Sessions

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated Telegram phishing campaign has re-emerged, marking a significant evolution in how threat actors compromise user accounts. Unlike traditional credential harvesting, this operation does not rely on cloning login …