Microsoft Edge, Windows 11 and LiteLLM Hacked in Pwn2Own Berlin 2026

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 15, 2026 Pwn2Own Berlin 2026 opened with a surge of zero-day exploits targeting modern browsers, operating systems, and emerging AI platforms. On Day One alone, security researchers successfully hacked …

Tycoon 2FA Operators Adopt OAuth Device Code Phishing to Bypass MFA

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals behind the Tycoon 2FA phishing kit have added a powerful new weapon to their playbook. By combining their well-known phishing infrastructure with OAuth Device Code abuse, they can now …

PraisonAI Vulnerability Exploited Within Hours of Public Disclosure

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 15, 2026 As artificial intelligence frameworks become central to enterprise operations, a critical flaw in a popular AI platform has exposed organizations to serious security risks from threat actors. …

Amazon Redshift JDBC Driver Vulnerabilities Enables Remote Code Execution Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 15, 2026 A critical vulnerability in the Amazon Redshift JDBC driver has put enterprise applications at severe risk of Remote Code Execution (RCE). Threat actors can exploit this newly …

Microsoft Details Kazuar Malware’s Modular Architecture and P2P Botnet Operations

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 15, 2026 A nation-state malware known as Kazuar has resurfaced with a far more dangerous design than anyone expected. What once started as a relatively standard backdoor has now …

VMware Fusion Vulnerability Let Attackers Escalate Privilege to Root

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 15, 2026 A high-severity privilege escalation vulnerability has been discovered in VMware Fusion, Broadcom’s popular macOS virtualization software, allowing local attackers to gain root-level access on affected systems. Tracked …

Hackers Abuse Scheduled Tasks to Maintain Persistence in FrostyNeighbor Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 15, 2026 A state-aligned hacking group known as FrostyNeighbor has resurfaced with a fresh wave of cyberattacks targeting government organizations in Ukraine, using a carefully designed infection chain that …

Cisco Catalyst SD-WAN Controller 0-Day Actively Exploited to Gain Admin Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

May 15, 2026 A maximum-severity zero-day vulnerability in Cisco Catalyst SD-WAN Controller is being actively exploited in the wild, allowing unauthenticated remote attackers to fully bypass authentication and seize administrative …