Cyber News

Home > Cyber News

This category contains informative articles and news.
Cyber News about data breaches, online privacy and security, computer security threats, cybersecurity reports, vulnerability reports. News about the latest malware attacks.
Hot news about the security of Microsoft (Patch Tuesdays), Google, Android, Apple, Linux, and other big companies and software vendors.

CYBER NEWS
BADIIS seo manipulation attack

BadIIS: A Malware-Driven SEO Manipulation Attack Against IIS Servers

A newly identified search engine optimization manipulation campaign has compromised the security of Internet Information Services (IIS) servers worldwide. Trend Micro researchers have uncovered a financially motivated SEO manipulation attack leveraging malware known as BadIIS, targeting organizations across Asia and…

CYBER NEWS
Pink Botnet - Information & Protection Tips

Pink Botnet – Information & Protection Tips

New threats surface almost every day, each with its own unique characteristics and degrees of severity. One such threat that first appeared 2021 has caught the attention of security experts worldwide is the “Pink Botnet.” Unlike everyday malware that primarily…

CYBER NEWS
Netgear has released security updates addressing two critical vulnerabilities affecting several WiFi router models

Netgear Patches Critical Vulnerabilities in Multiple WiFi Router Models

Netgear has released security updates addressing two critical vulnerabilities affecting several WiFi router models and has strongly urged users to update their firmware immediately. These vulnerabilities could allow unauthenticated attackers to execute remote code or bypass authentication, creating a serious…

CYBER NEWS
CVE-2025-21415: Critical Flaw in Azure AI Face Service

CVE-2025-21415: Critical Flaw in Azure AI Face Service

Microsoft has addressed two critical security vulnerabilities that posed potential threats to its cloud-based services. The patches resolve security flaws affecting Azure AI Face Service and Microsoft Account, both of which could have allowed malicious actors to escalate privileges under…

CYBER NEWS
Coyote Banking Trojan: a Threat to Banking Institutions

Coyote Banking Trojan: a Threat to Banking Institutions

Over the past month, cybersecurity experts at FortiGuard Labs have identified a series of malicious Windows Shortcut (LNK) files containing PowerShell commands. These files serve as the initial stage of a sophisticated cyberattack aimed at delivering the Coyote Banking Trojan,…

CYBER NEWS
57 APT Groups Leveraging AI for Cyber Operations, Google Says

57 APT Groups Leveraging AI for Cyber Operations, Google Says

Recent findings by Google Threat Intelligence Group reveal that over 57 distinct cyber threat actors with ties to China, Iran, North Korea, and Russia are exploiting artificial intelligence (AI) technology, particularly Google’s AI models, to enhance their malicious cyber and…

CYBER NEWS
DEEPSEEK AI. security breachjpg

DeepSeek AI Breach Exposes 1 Million Logs Amid OpenAI Theft Allegations

DeepSeek, a fast-growing Chinese artificial intelligence (AI) startup that has recently gained widespread attention, inadvertently left one of its databases exposed online. This security lapse could have given cybercriminals access to highly sensitive information. According to security researcher Gal Nagli…

CYBER NEWS
The Most Dangerous Black Friday Scams in 2024

The Most Dangerous Black Friday Scams in 2024 (and How to Stay Safe)

Are you excited about this year’s Black Friday shopping spree? Be careful, as this excitement to grab the best online deals has its pitfalls. Scammers are always finding a way to exploit your excitement and create traps that can lead…

CYBER NEWS
Cybersecurity Forecast 2025 Key Insights by Google Cloud

Cybersecurity Forecast 2025: Key Insights by Google Cloud’s Report

Prediction reports about the state of cybersecurity in 2025 are already looming. Our attention was drawn by one particular report – Google Cloud Security’s Cybersecurity Forecast 2025. What does the technology giant foresee for 2025? What sets this cybersecurity forecast…

CYBER NEWS
November 2024 Patch Tuesday (CVE-2024-49039)

November 2024 Patch Tuesday Fixes Actively Exploited Flaws (CVE-2024-49039)

In its November 2024 Patch Tuesday update, Microsoft addressed 90 security vulnerabilities, including two critical zero-day exploits currently being actively exploited in the wild (CVE-2024-49039 and CVE-2024-49039). This also update includes fixes for issues impacting Windows NT LAN Manager (NTLM)…

CYBER NEWS
CVE-2024-38193 Microsoft details

CVE-2024-38193 Exploited by Lazarus Group in Targeted Attacks

A newly patched security vulnerability in Microsoft Windows has been actively exploited by the Lazarus Group, a notorious state-sponsored hacking group associated with North Korea. The flaw, identified as CVE-2024-38193 and rated with a CVSS score of 7.8, is a…

CYBER NEWS
Sitting Ducks DNS Attack Explained

Over a Million Domains Vulnerable to Sitting Ducks DNS Attack

A new type of DNS attack puts millions of domains at risk of malware and hijacking, a recent report finds. A joint analysis by Infoblox and Eclypsium has uncovered that over a million domains are at risk of being hijacked…

CYBER NEWS
The Dark Angels Attack and Its Aftermath

Fortune 50 Company Pays Record $75M Ransom to Dark Angels

A Fortune 50 company has reportedly paid a record-breaking $75 million ransom to the Dark Angels ransomware gang, according to Zscaler ThreatLabz. This payment surpasses the previous record of $40 million, paid by insurance giant CNA after an Evil Corp…

CYBER NEWS
BadPack Android Malware

BadPack Android Malware: Difficult to Detect and Remove

BadPack is a malicious APK file intentionally altered to exploit the Android operating system’s file structure. Typically, attackers maliciously modify the header information in the compressed file format of APKs to hinder reverse engineering efforts. These tampered headers are a…

CYBER NEWS
Microsoft Fights Global Outage - Developments So Far

Microsoft Fights Global Outage – Developments So Far

In an unexpected and chaotic turn of events, a significant IT outage disrupted major institutions globally. Here’s the latest information: Microsoft Azure Services Severely Impacted Last night, Microsoft Azure services experienced a major disruption, leaving many customers frustrated. The Central…

CYBER NEWS
EstateRansomware profile

EstateRansomware Targets Veeam Backup: CVE-2023-27532 Exploited

CVE-2023-27532, a significant flaw identified in Veeam Backup & Replication software, exposes organizations to unauthorized access risks and shows the vital need for up-to-the-minute vigilance in data protection strategies. A new ransomware player, called EstateRansomware, has recently exploited the vulnerability…

CYBER NEWS
CVE-2024-5035 Critical Vulnerability in TP-Link Archer C5400X Gaming Router

CVE-2024-5035: Critical Flaw in TP-Link Archer C5400X Gaming Router

Security researchers identified a critical security vulnerability in the TP-Link Archer C5400X gaming router, which could easily allow remote code execution through specially crafted requests. The flaw has been tracked as CVE-2024-5035, and is assigned the highest possible severity score…

CYBER NEWS
Atlassian Vulnerability Used to Deploy Linux Variant of Cerber Ransomware

Atlassian Vulnerability Used to Deploy Linux Variant of Cerber Ransomware

Threat actors are exploiting critical vulnerabilities in Atlassian servers to deploy a Linux variant of Cerber ransomware. This exploitation, centered around the CVE-2023-22518 vulnerability, has exposed serious weaknesses in the Atlassian Confluence Data Center and Server, allowing malicious actors to…

CYBER NEWS
New Native Spectre v2 Exploit Raises Concerns for Linux Kernel Security

New Native Spectre v2 Exploit Raises Concerns for Linux Kernel Security

Cybersecurity researchers from the Systems and Network Security Group (VUSec) at Vrije Universiteit Amsterdam have unveiled what they describe as the “first native Spectre v2 exploit” against the Linux kernel on Intel systems. This exploit, named Native Branch History Injection…

CYBER NEWS
Google Introduces V8 Sandbox in Chrome to Enhance Security

Google Introduces V8 Sandbox in Chrome to Enhance Security

Google has unveiled a new feature called the V8 Sandbox in its Chrome web browser to address memory corruption issues, aiming to protect against vulnerabilities. “After almost three years since the initial design document and hundreds of CLs in the…

This website uses cookies to improve user experience. By using our website you consent to all cookies in accordance with our Privacy Policy.
I Agree