Cl0p Hackers Exploit Windchill Servers to Steal Companies’ Secret Product Designs

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 24, 2026 Cl0p ransomware affiliates are exploiting exposed PTC Windchill and FlexPLM servers to steal engineering and product-design data. The campaign combines software flaws to gain access without credentials, …

Apache Syncope Release Patches for Multiple RCE and SQL Injection Vulnerabilities

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 24, 2026 Apache has issued critical security updates for its Syncope identity and access management (IAM) platform to address multiple vulnerabilities, including remote code execution (RCE), SQL injection, privilege …

ChonkyChicken Malware Steals Chrome Credentials, Moves Laterally and Spies on Victims

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 24, 2026 ChonkyChicken is a newly identified remote access trojan designed to turn one infected Windows device into a platform for credential theft, network movement, and surveillance. The malware …

Microsoft Confirms No Bloatware Ads in Windows 11; LG Disables McAfee Pop-ups in Monitor App

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 24, 2026 Microsoft has moved quickly to shut down unwanted antivirus advertising after users discovered that connecting an LG monitor could silently install companion software and trigger a McAfee …

SourTrade Malvertising Builds Unique Malware Inside Victims’ Browsers to Evade Detection

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 24, 2026 SourTrade is a long-running malvertising operation that uses fake ads to lure cryptocurrency users toward convincing copies of trading and exchange platforms. The campaign has been active …

Security Flaws Found in Every Script Generated by ChatGPT, Copilot, and Gemini

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new academic study from Beacom College of Computer & Cyber Sciences has revealed that every automation script generated by leading AI models ChatGPT, Microsoft Copilot, and Google Gemini contained …

New HTTP/2 Vulnerability Lets Hackers Crash Servers With Memory Exhaustion Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 24, 2026 A newly disclosed HTTP/2 denial-of-service vulnerability is raising concerns across the cybersecurity community after researchers confirmed that unauthenticated attackers can crash vulnerable servers by triggering memory exhaustion …

One Compromised Wi-Fi Gateway Can Redirect Every Hotel Guest to Attacker Controlled Servers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 24, 2026 One compromised hotel Wi-Fi gateway can silently redirect every guest to attacker controlled servers, putting corporate accounts at risk even when users think they are browsing safely. …

How Infostealer Logs Became the Fuel Behind Massive Cloud Data Breaches

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

How Infostealer Logs Became the Fuel Behind Massive Cloud Data Breaches Infostealer malware has quietly become the single most important initial-access commodity in the cybercrime economy, replacing traditional phishing and …

Google Rolls Out Emergency Chrome Update for Four High-Severity Security Flaws

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Google has released an emergency security update for its Chrome browser, addressing four high-severity vulnerabilities that could expose users to serious risks if left unpatched. The update, now rolling out …