New BPFDoor Variants Use Stateless C2 and ICMP Relays to Evade Detection

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A dangerous Linux backdoor called BPFDoor has returned in a more powerful form, with researchers uncovering new variants built to stay invisible inside critical network infrastructure. Linked to a China-nexus …

Hackers Exploit Kubernetes Misconfigurations to Move From Containers to Cloud Accounts

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Kubernetes has become one of the most widely used platforms for managing containerized applications in enterprise environments. But as its adoption has grown, so has the attention it draws from …

Hackers Use Fake Gemini npm Package to Steal Tokens From Claude, Cursor, and Other AI Tools

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new supply chain attack has surfaced targeting software developers who work with AI coding tools. On March 20, 2026, a threat actor published a malicious npm package named gemini-ai-checker under the …

Hackers Exploit Next.js React2Shell Flaw to Steal Credentials From 766 Hosts in 24 Hours

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A dangerous cyberattack campaign is actively hitting web applications across the internet at a frightening speed. Hackers are exploiting a critical security flaw called React2Shell, targeting websites built on the …

Hackers Use ClickFix Lure to Drop Node.js-Based Windows RAT With Tor-Powered C2

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A fresh wave of cyberattacks is targeting Windows users through a deceptive social engineering technique called ClickFix. Attackers use a fake browser verification page to trick users into running a …

Russia Hacked Routers to Steal Microsoft Office Tokens

Blog WriterCybersecurity News - Original News Source is krebsonsecurity.com

Hackers linked to Russia’s military intelligence units are using known flaws in older Internet routers to mass harvest authentication tokens from Microsoft Office users, security experts warned today. The spying …

Russian Hackers Exploiting Home and Small-office Routers in Massive DNS hijacking Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A large-scale campaign by Forest Blizzard, a Russian military-linked threat actor, targeting home and small-office routers to hijack DNS traffic and intercept encrypted communications with over 200 organizations and 5,000 …

Fake Software Installers Used to Drop RATs and Monero Miners in Long-Running Malware Campaign

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A financially motivated threat actor has been running a quiet malware campaign since at least late 2023, tricking users into downloading fake software installers that secretly deliver remote access trojans …

New GPUBreach Attack Enables System-Wide Compromise Up to a Root Shell

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A severe vulnerability, dubbed GPUBreach, that allows attackers to achieve a full system compromise, including a root shell. Scheduled for presentation at the IEEE Symposium on Security and Privacy, researchers …

From Alert Overload to Rapid Response: Why Threat Intelligence Is a Top Solution for Fast MTTR 

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Threat Intelligence for Faster MTTR and Response Reducing Mean Time to Respond (MTTR) is one of the most persistent challenges for modern SOC teams.  Despite investments in SIEM, EDR, and …