TangleCrypt Windows Packer with Ransomware Payloads Evades EDR Using ABYSSWORKER Driver

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A newly discovered Windows malware packer named TangleCrypt has emerged as a serious threat in ransomware attacks, specifically designed to evade endpoint detection and response (EDR) solutions. The packer was …

Microsoft Confirms New Outlook Bug Blocking Excel Attachments

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has acknowledged a frustrating new issue affecting users of the “new Outlook” for Windows, where Excel attachments fail to open if their filenames contain non-ASCII characters. The technical glitch, …

Bloody Wolf Hackers Mimic as Government Agencies to Deploy NetSupport RAT via Weaponized PDF’s

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated Advanced Persistent Threat group known as Bloody Wolf has intensified its cyber espionage operations across Central Asia, targeting government and private sectors. Since late June 2025, the group …

Coupang Data Breach Exposed Personal Data of 33.7 Million Customers Personal Records

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

South Korean e-commerce giant Coupang has confirmed a massive security incident affecting approximately 33.7 million customers, nearly the company’s entire user base. The breach, which exposed names, phone numbers, email …

4.3 Million Chrome and Edge Users Hacked in 7-Year ShadyPanda Malware Campaign

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

“ShadyPanda,” a sophisticated threat actor responsible for a seven-year campaign that has successfully infected 4.3 million Chrome and Edge users. By exploiting the inherent trust in browser marketplaces, ShadyPanda weaponized …

Hackers are Moving to “Living Off the Land” Techniques to Attack Windows Systems Bypassing EDR

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals have found a more effective method to compromise Windows computers while evading detection by security software. Ivan Spiridonov observed that uploading malicious tools, hackers are now using legitimate Windows …

OpenAI Codex CLI Command Injection Vulnerability Let Attackers Execute Arbitrary Commands

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

OpenAI has patched a command injection flaw in its Codex CLI tool that allowed attackers to execute arbitrary commands on developers’ machines simply by getting a malicious configuration file into …

Microsoft Azure API Management Flaw Enables Cross-Tenant Account Creation, Bypassing Admin Restrictions

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security vulnerability in Microsoft Azure API Management (APIM) Developer Portal enables attackers to register accounts across different tenant instances, even when administrators have explicitly disabled user signup through …

Tomiris Hacker Group Added New Tools and Techniques to Attack Organizations Globally

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Tomiris hacker group has resurfaced with a sophisticated campaign targeting foreign ministries and government entities worldwide. Beginning in early 2025, this advanced persistent threat (APT) actor shifted its operational …

Mystery OAST With Exploit for 200 CVEs Leveraging Google Cloud to Launch Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new threat has emerged in the cybersecurity landscape as security experts discover a private Out-of-Band Application Security Testing (OAST) service operating on Google Cloud infrastructure. This mystery operation stands …