Hackers Attacking IIS Servers With New Web Shell Script to Gain Complete Remotely Control

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity researchers have uncovered a sophisticated web shell attack targeting Microsoft Internet Information Services (IIS) servers, allowing threat actors to achieve complete remote control over compromised systems. The malicious script, …

GitHub Outage Disrupts Core Services Globally for Users

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

GitHub experienced a widespread outage on July 28, 2025, affecting millions of developers and organizations reliant on its services. The incident, which impacted API requests, issue tracking, and pull requests, …

CISA Warns of Cisco Identity Services Engine Vulnerability Exploited in Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

CISA has issued an urgent warning regarding two critical injection vulnerabilities in Cisco’s Identity Services Engine (ISE) that threat actors are actively exploiting.  The vulnerabilities, tracked as CVE-2025-20281 and CVE-2025-20337, …

Renting Android Malware With 2FA Interception, AV Bypass is Getting Cheaper Now

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The cybercriminal landscape has witnessed a dramatic shift with the emergence of sophisticated malware-as-a-service (MaaS) platforms targeting Android devices. Criminal enterprises no longer require extensive technical expertise to deploy advanced …

Atomic macOS Stealer Comes With New Backdoor to Enable Remote Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Atomic macOS Stealer (AMOS) has undergone a significant evolution, transforming from a traditional information stealer into a sophisticated persistent threat capable of maintaining long-term access to compromised macOS systems. …

Muddled Libra Actors Attacking Organizations Call Centers for Initial Infiltration

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The cyberthreat landscape witnessed a concerning evolution in 2025 as the notorious Muddled Libra threat group dramatically shifted their attack methodology, pivoting from traditional phishing campaigns to sophisticated voice-based social …

Laundry Bear Infrastructure, Key Tactics and Procedures Uncovered

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated Russian state-sponsored advanced persistent threat (APT) group known as Laundry Bear has emerged as a significant cybersecurity concern, targeting NATO countries and Ukraine through an extensive campaign of …

New SHUYAL Attacking 19 Popular Browsers to Steal Login Credentials

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated new information stealer named SHUYAL has emerged in the cybersecurity landscape, demonstrating unprecedented scope in its credential harvesting capabilities. The malware targets login credentials from 19 different web …

UNC3886 Hackers Exploiting 0-Days in VMware vCenter/ESXi, Fortinet FortiOS, and Junos OS

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Singapore’s critical infrastructure is under siege from UNC3886, a sophisticated China-linked advanced persistent threat (APT) group. As of July 2025, the group has been actively targeting essential services like energy, …

Hackers Allegedly Destroyed Aeroflot Airlines’ IT Infrastructure in Year-Long Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Russia’s Aeroflot, one of the world’s oldest airlines, has been left scrambling after pro-Ukraine hackers claimed to have “completely destroyed” the carrier’s internal IT infrastructure in a stealthy, year-long campaign …