Infamous Cybercriminal Forum BreachForums Is Back Again With a New Clear Net Domain

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The notorious cybercrime forum BreachForums has resurfaced online, this time on a clearnet domain accessible without specialized tools like Tor. The platform, long a hub for data leaks, hacking tools, …

Critical Dell Storage Manager Vulnerabilities Let Attackers Compromise System

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Dell Technologies has disclosed three critical vulnerabilities in its Storage Manager software that could allow attackers to bypass authentication, disclose sensitive information, and gain unauthorized access to systems. Announced on …

Hackers Exploiting Microsoft WSUS Vulnerability In The Wild – 2800 Instances Exposed Online

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hackers are actively exploiting a critical flaw in Microsoft’s Windows Server Update Services (WSUS), with security researchers reporting widespread attempts in the wild. The vulnerability, tracked as CVE-2025-59287, allows remote …

Scattered LAPSUS$ Hunters Onion Leak Website Taken Down By Law-enforcement Agencies

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Law enforcement agencies from the United States and France have seized the onion leak website operated by the notorious Scattered LAPSUS$ Hunters collective, displaying a prominent seizure notice featuring logos …

New EDR-Redir Tool Breaks EDR Exploiting Bind Filter and Cloud Filter Driver

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new tool called EDR-Redir has emerged, allowing attackers to redirect or isolate the executable folders of popular Endpoint Detection and Response (EDR) solutions. Demonstrated by cybersecurity researcher TwoSevenOneT, the …

New CoPhish Attack Exploits Copilot Studio to Exfiltrate OAuth Tokens

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated phishing technique called CoPhish exploits Microsoft Copilot Studio to trick users into granting attackers unauthorized access to their Microsoft Entra ID accounts. Dubbed by Datadog Security Labs, this …

Cybersecurity Newsletter Weekly – AWS Outage, WSUS Exploitation, Chrome Flaws, and RDP Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Welcome to this week’s edition of the Cybersecurity Newsletter, where we dissect the latest threats, vulnerabilities, and disruptions shaping the digital landscape. As organizations navigate an increasingly complex threat environment, …

706,000+ BIND 9 Resolver Instances Vulnerable to Cache Poisoning Exposed Online – PoC Released

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A high-severity vulnerability in BIND 9 resolvers has been disclosed, potentially allowing attackers to poison caches and redirect internet traffic to malicious sites. Tracked as CVE-2025-40778, the flaw affects over …

LockBit 5.0 Actively Attacking Windows, Linux, and ESXi Environments

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The notorious LockBit ransomware operation has resurfaced with a vengeance after months of dormancy following Operation Cronos takedown efforts in early 2024. Despite law enforcement disruptions and infrastructure seizures, the …

Hackers Weaponizing Telegram Messenger with Dangerous Android Malware to Gain Full System Control

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated backdoor named Android.Backdoor.Baohuo.1.origin has been discovered in maliciously modified versions of Telegram X messenger, granting attackers complete control over victims’ accounts while operating undetected. The malware infiltrates devices …