Cyber News

New Chaos RaaS Group Using Voice Social Engineering & RMM Abuse for Data Exfiltration

A sophisticated new ransomware-as-a-service operation called Chaos that emerged in February 2025, employing advanced social engineering tactics and legitimate tools…

9 months ago

Researchers Exploit Cursor Background Agents to Take Control of Amazon EC2 Instance

A concerning vulnerability in Cursor's Background Agents that allowed them to gain complete control over the underlying Amazon EC2 infrastructure.…

9 months ago

Single Space Keystroke Grants Full SYSTEM Access Through ETQ Reliance RCE Vulnerability

A routine investigation by security researchers at Assetnote has uncovered a series of critical vulnerabilities in Hexagon ETQ’s Reliance, an…

9 months ago

FBI Alerts About Hacker Community Tied to Ransomware-as-a-Service Gangs

The Federal Bureau of Investigation has issued a stark warning about an evolving cybercriminal ecosystem called "Hacker Com," a sophisticated…

9 months ago

Metasploit Releases Module for Actively Exploited SharePoint 0-Day Vulnerabilities

A Metasploit exploit module targeting critical zero-day vulnerabilities in Microsoft SharePoint Server that are currently being exploited in the wild.…

9 months ago

Scavenger Malware Compromises Top npm Packages to Target Developers

A sophisticated supply chain attack targeting developers emerged on Friday, July 18, 2025, when cybercriminals compromised several popular npm packages,…

9 months ago

TP-Link NVR Vulnerabilities Allows Attackers to Execute Arbitrary Commands

TP-Link has disclosed critical security vulnerabilities in two of its VIGI network video recorder (NVR) models that could allow attackers…

9 months ago

Weidmueller Industrial Router Vulnerabilities Allow Remote Code Execution by Attackers

German industrial automation company Weidmueller Interface GmbH & Co. KG has disclosed multiple critical vulnerabilities affecting its IE-SR-2TX series of…

9 months ago

SVF Botnet Infects Linux SSH Servers in Ongoing Threat Actor Attacks

Cybersecurity researchers at AhnLab Security Intelligence Center (ASEC) have identified a sophisticated campaign targeting poorly secured Linux servers through SSH…

9 months ago

AWS Client VPN for Windows Vulnerability Allows Privilege Escalation by Attackers

Amazon Web Services has addressed a critical security vulnerability in its Client VPN software for Windows that could allow attackers…

9 months ago