50,000 WordPress Sites Exposed to Critical Ninja Forms File Upload RCE Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security flaw in the popular WordPress plugin “Ninja Forms – File Upload” has left approximately 50,000 websites vulnerable to complete takeover. Tracked as CVE-2026-0740, this flaw boasts a …

Hackers Use Fake TradingView Premium Posts on Reddit to Deliver Vidar and AMOS Stealers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A threat actor has been running an active campaign on Reddit, using fake posts that promise free TradingView Premium access to deliver two malware families — Vidar on Windows and …

Researcher Released Windows Defender 0-Day Exploit Code, Allowing Attackers to Gain Full Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A security researcher operating under the alias Chaotic Eclipse (@ChaoticEclipse0) has publicly dropped a working zero-day local privilege escalation (LPE) exploit for Windows, dubbed BlueHammer, along with full proof-of-concept (PoC) source code on …

CISA Warns of Fortinet 0-Day Vulnerability Actively Exploited in Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added CVE-2026-35616, a critical improper access control vulnerability in Fortinet FortiClient Enterprise Management Server (EMS), to its Known Exploited Vulnerabilities (KEV) catalog …

Trojanized PyPI AI Proxy Uses Stolen Claude Prompt to Exfiltrates Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A malicious Python package has been discovered on PyPI that disguises itself as a privacy-focused AI inference tool while quietly stealing sensitive user data in the background. Named hermes-px, the package …

Hackers Drain $286 Million From Drift Protocol in Suspected North Korea-Linked Exploit

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The largest decentralized perpetual futures exchange on the Solana blockchain — became the target of a massive and well-orchestrated theft on April 1, 2026, Drift Protocol. Unknown attackers managed to …

New GitHub Actions Attack Chain Uses Fake CI Updates to Exfiltrate Secrets and Tokens

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new attack campaign is actively targeting open-source repositories on GitHub by carefully disguising malicious code as completely routine CI build configuration updates. The campaign, prt-scan exploits a widely misused …

DPRK Cyber Program Uses Modular Malware Strategy to Evade Attribution and Survive Takedowns

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

North Korea’s cyber program has fundamentally shifted how it builds and deploys malware. Rather than relying on one all-purpose hacking tool, the regime has assembled a fragmented ecosystem of purpose-built …

North Korean IT Worker Unmasked After Refusing to Insult Kim Jong Un in Job Interview

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A viral video circulating in cybersecurity and crypto circles has exposed a novel and surprisingly simple technique for unmasking North Korean state-sponsored IT workers attempting to infiltrate Western organizations: asking …

Google’s Bug Bounty Program Hits All-Time High With $17 Million in 2025 Payouts

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Google’s Vulnerability Reward Program (VRP) celebrated its 15th anniversary in 2025 by breaking every payout record in its history. The tech giant awarded a staggering $17 million to external security …