Criminal IP to Host Webinar: Beyond CVEs – From Visibility to Action with ASM

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Torrance, California, USA, December 5th, 2025, CyberNewsWire Criminal IP will host a live webinar on December 16 at 11:00 AM Pacific Time (PT), focusing on the shift in cyberattack strategies. …

Netflix Acquires Warner Bros. Studios and HBO in Landmark $82.7 Billion Megadeal

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Netflix has struck a transformative deal to acquire Warner Bros. studios, HBO, and HBO Max from Warner Bros. Discovery (WBD) in a cash-and-stock transaction valued at $82.7 billion. The move …

Threat Actors Deploying CoinMiner Malware via USB Drives Infecting Workstations

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals are actively spreading CoinMiner malware through USB drives, targeting workstations across South Korea to mine Monero cryptocurrency. This ongoing campaign uses deceptive shortcut files and hidden folders to trick …

MuddyWater Hackers Using UDPGangster Backdoor to Attack Windows Systems Evading Network Defenses

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated cyber threat has emerged targeting Windows systems across multiple countries in the Middle East. UDPGangster, a UDP-based backdoor, represents a dangerous new weapon in the arsenal of the …

Cloudflare Outage Traced to Emergency React2Shell Patch Deployment

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cloudflare’s global network suffered a brief but widespread disruption this morning, lasting approximately 25 minutes, due to an internal change in its Web Application Firewall (WAF) designed to counter a …

AWS Execution Roles Enable Subtle Privilege Escalation in SageMaker and EC2

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A persistent privilege escalation technique in AWS that allows attackers with limited permissions to execute code under higher-privileged execution roles on EC2 instances and SageMaker notebook instances. First documented by …

Russian Hackers Spoof European Events in Targeted Phishing Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Russian threat actors are running a new wave of phishing campaigns that spoof major European security events to quietly steal cloud credentials. Invitations that look legitimate, often tied to conferences …

Critical Apache Tika Core Vulnerability Exploited by Uploading Malicious PDF

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security vulnerability in Apache Tika has been discovered that allows attackers to compromise systems by uploading specially crafted PDF files. Organizations worldwide are urged to patch immediately. Apache …

NCSC New Proactive Notifications Service Reports Vulnerabilities to System Owners

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The National Cyber Security Centre (NCSC) has unveiled a new pilot program designed to help organizations identify and fix security weaknesses before malicious actors can exploit them. Known as the Proactive …

Hackers Exploiting Microsoft Teams Notifications to Deliver CallBack Phishing Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity researchers have identified a sophisticated phishing campaign that exploits Microsoft Teams notifications to deceive users into calling fraudulent support numbers. The attack demonstrates how legitimate communication platforms can be …