Microsoft 365 Services Including Teams, Outlook and Copilot Outage Hits Users in Japan and China

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Thousands of users in Japan and China faced widespread access and sign-in disruptions to Microsoft 365 and Copilot services early Thursday, stemming from a critical routing issue in the company’s …

Kimsuky Hackers Attacking Users via Weaponized QR Code to Deliver Malicious Mobile App

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The North Korean state-linked threat group Kimsuky has expanded its attack methods by distributing a dangerous mobile malware through weaponized QR codes, targeting users through sophisticated phishing sites that imitate …

Operation ForumTrol Known for Exploiting Chrome 0-Day Attacking Users With New Phishing Campaign

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Operation ForumTrol, an advanced persistent threat group, has launched a new targeted phishing campaign against Russian political scientists and researchers. This sophisticated operation continues the group’s pattern of cyberattacks that …

Hackers Could Take Control of Car Dashboard by Hacking Its Modem

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Modern vehicles are increasingly defined by their connectivity, transforming them into sophisticated IoT devices on wheels. While this digital evolution enhances the driving experience, it introduces severe security risks. A …

Microsoft Desktop Windows Manager Out-Of-Bounds Vulnerability Let Attackers Escalate Privileges

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has confirmed a critical out-of-bounds vulnerability in the Desktop Window Manager (DWM) that allows local attackers to escalate privileges to SYSTEM on affected Windows systems. The vulnerability, identified as CVE-2025-55681, …

Microsoft Asks IT Admins to Contact for Fix Related to Windows IIS Failure Issues

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has confirmed that its December 2025 Windows security update (KB5071546, OS Build 19045.6691) is causing Message Queuing (MSMQ) failures, leading to widespread IIS site crashes. First reported on December …

Chinese Hackers Using Custom ShadowPad IIS Listener Module to Turn Compromised Servers into Active Nodes

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The group employs a custom ShadowPad IIS Listener module to transform compromised servers into a resilient, distributed relay network. This approach allows attackers to route malicious traffic through victim infrastructure, …

Singularity Linux Kernel Rootkit with New Feature Prevents Detection

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Singularity, a sophisticated Linux kernel rootkit designed for Linux kernel versions 6.x, has gained significant attention from the cybersecurity community for its advanced stealth mechanisms and powerful capabilities. This kernel …

CISA Adds Fortinet Vulnerability to KEV Catalog After Active Exploitation

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

CISA has officially added CVE-2025-59718 to its Known Exploited Vulnerabilities (KEV) catalog on December 16, 2025. Designating a critical deadline of December 23, 2025, for organizations to apply necessary remediation …