Hackers Leverage Built-in MacOS Protection Features to Deploy Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

macOS has long been recognized for its robust, integrated security stack, but cybercriminals are finding ways to weaponize these very defenses.  Recent incidents show attackers exploit Keychain, SIP, TCC, Gatekeeper, …

Hackers Abuse Legitimate Email Marketing Platforms to Disguise Malicious Links

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals are increasingly exploiting legitimate email marketing platforms to launch sophisticated phishing campaigns, leveraging the trusted reputation of these services to bypass security filters and deceive victims. This emerging threat …

Food Delivery Robots Can Be Hacked to Deliver Meals to Your Table Instead of the Intended Customers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

You may have seen them in restaurants, cat-faced robots gliding between tables, delivering plates of food. These robots, many of them made by Pudu Robotics, the world’s largest commercial service …

Hackers Registering Domains to Launch Cyberattack Targeting 2026 FIFA World Cup Tournament

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Security researchers have observed an unprecedented surge in domain registrations in recent months, closely tied to the upcoming 2026 FIFA World Cup tournament. These domains, often masquerading as legitimate ticketing …

Beware of Fraudulent Scholarship Apps Attacking Students in Defarud Campaign

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated Android malware campaign has emerged in recent months, targeting students in Bangladesh by masquerading as legitimate scholarship applications. Disguised under the guise of the Bangladesh Education Board, these …

IBM Watsonx Vulnerability Let Attackers Inject Malicious SQl Queries

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

IBM published a security bulletin disclosing a serious Blind SQL injection vulnerability in its IBM Watsonx Orchestrate Cartridge for IBM Cloud Pak for Data, assigned CVE-2025-0165.  With a CVSS 3.1 …

Windows 11 25H2 Update Preview Released, What’s New?

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has opened the Release Preview Channel to Windows Insiders for the forthcoming Windows 11, version 25H2 (Build 26200.5074) enablement package (eKB), offering an early look at this year’s annual …

Malicious npm Package Mimics as Popular Nodemailer with Weekly 3.9 Million Downloads to Hijack Crypto Transactions

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Security researchers at Socket.dev uncovered a sophisticated supply chain attack in late August 2025 leveraging a malicious npm package named nodejs-smtp, which masquerades as the widely used email library nodemailer, …

Sitecore CMS Platform Vulnerabilities Enables Remote Code Execution

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Critical vulnerabilities in Sitecore Experience Platform allow attackers to achieve complete system compromise through a sophisticated attack chain combining HTML cache poisoning with remote code execution capabilities. These flaws also …