HazyBeacon Weaponizes AWS Lambda Function URLs for Stealth Command-and-Control Relays

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 19, 2026 HazyBeacon, tracked as CL-STA-1020, is a stealthy cyber-espionage campaign targeting Southeast Asian government networks by abusing AWS Lambda Function URLs as covert command-and-control (C2) relays. Qualys Security …

Hackers Abuse Third-Party Okendo Reviews Script to Spread SmartApeSG Malware Campaign

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A newly discovered supply chain attack has put thousands of e-commerce websites at risk after a popular third-party reviews widget was quietly turned into a malware delivery tool. Threat actors …

CISA Urges Hardening Fortinet Devices Following FortiBleed Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 19, 2026 CISA has issued an urgent advisory warning organizations to secure their Fortinet devices following reports of a large-scale credential exposure campaign known as “FortiBleed.” The alert comes …

China-Linked Showboat Malware Uses Linux Persistence to Target Telecom Companies

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 19, 2026 A sophisticated China-linked malware framework has been quietly targeting telecom companies across the Middle East for nearly four years. Showboat is a Linux-based tool that stayed completely …

CISA Warns of Splunk Enterprise Critical Function Vulnerability Actively Exploited in Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 19, 2026 CISA has issued a high-priority alert warning organizations about a critical vulnerability in Splunk Enterprise that is actively being exploited in the wild. The flaw, tracked as …

Node.js Fixes 12 Vulnerabilities, Including 2 High-Severity Authentication Bypasses

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 19, 2026 Node.js has released a new round of security updates addressing 12 vulnerabilities across its supported release lines, including two high-severity flaws that could lead to authentication bypass …

Hackers Use Weaponized Windows Shortcuts to Spread Crypto Clipper Across USB Drives

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 19, 2026 A newly discovered cryptocurrency clipper malware has been quietly stealing digital assets from victims since February 2026, spreading through a trick that most users would never suspect: …

AI-Powered Public Surveillance and Biometric Data Collection Expand Government Monitoring

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

June 19, 2026 Governments are expanding their digital reach in ways unimaginable just a decade ago. A growing wave of AI-powered surveillance, biometric data collection, and commercial spyware is reshaping …