Cyber News

Warning to Developers – Npm Phishing Scams Are Targeting Your Login Details

Developers are facing a sophisticated new threat as cybercriminals launch targeted phishing campaigns against npm package maintainers, using advanced typosquatting…

9 months ago

Chinese SM2 Cryptographic Standard Exploited in Windows System Attacks by NailaoLocker Ransomware

A new ransomware variant dubbed NailaoLocker is making waves in cybersecurity circles for its sophisticated deployment of the Chinese SM2 cryptographic standard,…

9 months ago

Zoho WorkDrive Exploited by Threat Actors to Distribute Obfuscated PureRAT Malware

eSentire’s Threat Response Unit (TRU) has uncovered a highly sophisticated attack campaign leveraging Zoho WorkDrive to deliver the increasingly prevalent…

9 months ago

APT41 Hackers Exploit Atexec and WmiExec to Distribute Malware via Windows Modules

A recent targeted cyberattack against government IT services in Africa has been attributed to the Chinese-speaking threat group APT41, marking…

9 months ago

Exploit Found in Lighthouse Studio Allows Remote Code Execution, Granting Attackers Control Over Hosting Servers

A critical security vulnerability (CVE-2025-34300) has been discovered in Lighthouse Studio, the widely-used survey software suite developed by Sawtooth Software.…

9 months ago

Windows Management Instrumentation Exploited by New KAWA4096 Ransomware to Erase Shadow Copies

June 2025 has witnessed the emergence of a formidable new ransomware, KAWA4096, which exploits Windows Management Instrumentation (WMI) to erase…

9 months ago

PHP PDO Vulnerability Allows Hackers to Execute Malicious SQL Injections

A critical vulnerability in PHP's PDO (PHP Data Objects) library has been discovered that allows attackers to perform SQL injection…

9 months ago

Surveillance Firm Exploits SS7 Vulnerabilities to Track User Locations

A sophisticated new SS7 bypass attack that enables surveillance companies to circumvent mobile network security defenses and illegally track user…

9 months ago

NVIDIA AI Container Toolkit Faces Critical Vulnerability as PoC Exploit Emerges

Wiz Research has disclosed a critical container escape vulnerability in the NVIDIA Container Toolkit, dubbed NVIDIAScape, that poses a significant threat…

9 months ago

CoinDCX Hack Leads to $44.2 Million Loss

Indian cryptocurrency exchange CoinDCX confirmed a major security breach on Saturday (July 19, 2025) that resulted in hackers stealing $44…

9 months ago