Check Point Vulnerability Lets Remote Hackers Gain Root Access Without Authentication

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Check Point has released an urgent security fix for CVE-2026-91843, a critical stack-based buffer overflow that could let an unauthenticated remote attacker execute arbitrary code with root privileges on vulnerable …

CenterPoint Energy Data Breach – Hackers Stolen Customer’s Personal Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

CenterPoint Energy disclosed a data breach after an unauthorized third party obtained personal information from some of its customers through an internet-facing company system. The Houston-based utility company revealed the …

CISA Warns of Critical ScreenConnect Vulnerability Actively Exploited in Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical ConnectWise ScreenConnect vulnerability, tracked as CVE-2026-84869, to its Known Exploited Vulnerabilities (KEV) Catalog after confirming that threat actors …

German Manufacturer Shrinks Security Alert Response While Protecting 10,000 Endpoints

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A five-person security team at an unnamed German manufacturer has cut a reported 15 minutes from each alert investigation after replacing an air-gapped forensic laptop with ANY.RUN’s cloud-managed Interactive Sandbox. …

Critical WSO2 Vulnerability Allow Hackers to Gain Full Admin Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

WSO2 has disclosed a critical authentication bypass vulnerability that could allow remote attackers to take over accounts, including administrative accounts, in affected API management products. Tracked as CVE-2026-5430, the flaw …

GhostCode Phishing Kit Bypasses Microsoft 365 MFA to Hijack Accounts in 78 Seconds

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

GhostCode is a newly identified phishing kit that turns a normal Microsoft 365 sign-in into an account takeover. It does not need to steal a password. Instead, it persuades people …

Microsoft 365 Hit by New Outage as Users Report Widespread 502 and 503 Errors

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has confirmed a fresh service degradation affecting its Microsoft 365 suite, with users worldwide reporting an inability to access core applications since the evening of September 16, 2026. The …

Hackers Can Rent VectraRAT for $250 a Month to Take Control of Windows PCs

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hackers can now rent a Windows-focused remote access tool called VectraRAT for $250 a month, lowering the barrier to deep and persistent compromise. The malware gives paying operators a way …

Hackers Use Cross-Platform Noodle RAT to Secretly Control Windows and Linux Systems

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Noodle RAT is a remote-access trojan that gives attackers control of compromised computers and servers. Its renewed visibility matters because it runs on both Windows and Linux, allowing one malware …

Smishing Hackers Can Watch Every Keystroke as Victims Enter Card Details and OTPs

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new SMS phishing campaign turns a routine payment check into a live fraud session. Victims who tap a link reach convincing pages seeking card details, passwords, and one-time passcodes, …