Cyber Security News

TamperedChef Hacking Campaign Leverages Common Apps to Deliver Payloads and Gain Remote Access

A new global hacking campaign tracked as TamperedChef has emerged, exploiting everyday software names to trick users into installing malicious…

21 hours ago

Lessons from Oracle E-Business Suite Hack That Allegedly Compromises Nearly 30 Organizations Worldwide

A sophisticated cyberattack targeting Oracle E-Business Suite (EBS) customers has exposed critical vulnerabilities in enterprise resource planning systems, compromising an…

21 hours ago

New Malware Via WhatsApp Exfiltrate Contacts to Attack Server and Deploys Malware

Trustwave SpiderLabs researchers have identified a sophisticated banking trojan called Eternidade Stealer that spreads through WhatsApp hijacking and social engineering…

21 hours ago

GenAI Makes it Easier for Cybercriminals to Successfully Lure Victims into Scams

Cybercriminals are rapidly embracing generative AI to transform the way they operate scams, making fraud operations faster, more convincing, and…

21 hours ago

Threat Actors Allegedly Selling Microsoft Office 0-Day RCE Vulnerability on Hacking Forums

A threat actor known as Zeroplayer has reportedly listed a zero-day remote code execution (RCE) vulnerability, combined with a sandbox…

22 hours ago

Threat Actors Pioneering a New Operational Model That Combines Digital and Physical Threats

Nation-state actors are fundamentally changing how they conduct military operations. The boundary between digital attacks and physical warfare is disappearing…

22 hours ago

Critical N-able N-central Vulnerabilities Allow attacker to interact with legacy APIs and read sensitive files

N-able's N-central remote management and monitoring (RMM) platform faces critical security risks following the discovery of multiple vulnerabilities. According to…

23 hours ago

Critical Twonky Server Vulnerabilities Let Attackers Bypass Authentication

Twonky Server version 8.5.2 contains two critical authentication bypass vulnerabilities that allow unauthenticated attackers to gain full administrative access to…

23 hours ago

Researchers Disclosed Analysis of Rhadamanthys Loader’s Anti-Sandboxing and Anti-AV Emulation Features

Rhadamanthys has emerged as one of the most dangerous stealer malware programs since its first appearance in 2022. This advanced…

24 hours ago

NSA Issues Guidance for ISPs and Network Defenders to Combat Malicious Activity

The National Security Agency (NSA), in collaboration with the Cybersecurity and Infrastructure Security Agency (CISA), the FBI, and multiple international…

1 day ago