First AI Ransomware ‘PromptLock’ Uses OpenAI gpt-oss-20b Model for Encryption

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new ransomware has been identified, which is believed to be the first-ever ransomware strain that leverages a local AI model to generate its malicious components. Dubbed “PromptLock” by the …

New Attack Targeting ScreenConnect Cloud Administrators to Steal Login Credentials

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated credential harvesting campaign has emerged targeting ScreenConnect cloud administrators with spear phishing attacks designed to steal super administrator credentials. The ongoing operation, designated MCTO3030, has maintained consistent tactics …

Citrix NetScaler ADC and Gateway 0-Day RCE Vulnerability Actively Exploited in Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cloud Software Group has disclosed multiple high-severity vulnerabilities in NetScaler ADC (formerly Citrix ADC) and NetScaler Gateway (formerly Citrix Gateway) that can lead to remote code execution (RCE) and denial …

Online PDF Editors Safe to Use? Detailed Analysis of Security Risks Associated With It

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Online PDF editors have become common tools for quick document manipulation, providing convenient alternatives to desktop software. However, their cloud-based nature brings significant security vulnerabilities that both organizations and individuals …

Microsoft Unveils New Tool to Migrate VMware Virtual Machines From vCenter to Hyper-V

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has released a new VM Conversion extension for Windows Admin Center, designed to streamline the migration of VMware virtual machines from vCenter to Hyper-V environments.  The preview tool, announced …

DSLRoot, Proxies, and the Threat of ‘Legal Botnets’

Blog WriterCybersecurity News - Original News Source is krebsonsecurity.com

The cybersecurity community on Reddit responded in disbelief this month when a self-described Air National Guard member with top secret security clearance began questioning the arrangement they’d made with company …

Aembit Extends Secretless CI/CD with Credential Lifecycle Management for GitLab

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Aembit, the workload identity and access management (IAM) company, today announced new capabilities for GitLab designed to reduce the security risks of long-lived personal access tokens (PATs) and other secrets …

APT36 Hackers Attacking Indian BOSS Linux Systems With Weaponized .desktop Shortcut Files

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In early August 2025, security researchers uncovered an unprecedented campaign targeting India’s BOSS Linux installations through seemingly innocuous shortcut files. These files, masquerading as PDF documents, leverage the .desktop format …

WhatsApp Desktop Users At Risk of Code Execution Attacks with Python on Windows PCs

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

WhatsApp Desktop users who have Python installed on their Windows PCs are at risk of arbitrary code execution due to a flaw in how the application handles Python archive files.  …