Cyber News

A cyberattack on Germany’s AMEOS hospital network has compromised patient data

AMEOS Group, a major hospital network operating across Germany and Switzerland, has disclosed a significant cybersecurity breach that potentially compromised…

9 months ago

Google has unveiled an open-source software (OSS) rebuild aimed at enhancing the security of open-source package ecosystems.

Google has unveiled an open-source software (OSS) rebuild designed to enhance the security of open-source package ecosystems. The new project,…

9 months ago

Attackers Gain Persistent Access to Websites Through Stealthy Backdoor in WordPress Plugins

Security researchers have uncovered a sophisticated WordPress malware campaign that exploits the rarely monitored mu-plugins directory to establish persistent backdoors…

9 months ago

US Offers Up to $15 Million for Information on Three North Korean Officials Linked to IT Schemes

The United States government launched coordinated enforcement actions Friday targeting North Korean revenue generation schemes, offering substantial rewards for information…

9 months ago

Multiple Vulnerabilities in Tridium Niagara Framework Allow Attackers to Exfiltrate Sensitive Network Data

Critical vulnerabilities in Tridium's Niagara Framework®, a widely-used software platform that connects and manages diverse devices in building automation, industrial…

9 months ago

Critical Vulnerabilities in VMware Tools VGAuth Component Allow Attackers to Gain Full System Access

A critical vulnerabilities in VMware Tools that could allow attackers with basic user access to escalate privileges to full system…

9 months ago

ACRStealer Malware Exploits Google Docs and Steam for C2 Server Communication Using DDR Technique

Cybersecurity researchers have identified a significant evolution in the ACRStealer information-stealing malware, which has been actively distributed since early 2024,…

9 months ago

Bloomberg Comdb2 Vulnerabilities Allows Attackers to Initiate DoS Attack via Malicious Packet

Five critical security vulnerabilities in Bloomberg's open-source Comdb2 database that could allow attackers to launch denial-of-service attacks through specially crafted…

9 months ago

New VOIP Botnet Targets Routers Using Default Passwords

A sophisticated global botnet campaign targeting Voice over Internet Protocol (VOIP) devices with default credentials, beginning with an unusual concentration…

9 months ago

Hackers Infiltrate Amazon’s AI Coding Agent with Destructive System Commands

A sophisticated supply chain attack targeting Amazon's Q extension for Visual Studio Code successfully embedded malicious system prompts designed to…

9 months ago