Cyber News

Polyglot Files – A New Technique Hackers Use to Evade Email Filters and Deliver Malware

Security researchers at BI.ZONE Mail Security has uncovered a coordinated phishing campaign targeting Russian healthcare and IT organizations, which leverages…

10 months ago

Malicious Konfety Android App on Google Play Exploits ZIP Compression to Mimic Authentic Applications

Security researchers at Zimperium's zLabs have uncovered a sophisticated new variant of the Konfety Android malware that employs advanced ZIP-level…

10 months ago

Internet Shaken by Massive 7.3 Tbps DDoS Assault, Sending 4.8 Billion Packets Every Second

Cybersecurity firm Cloudflare has reported blocking the largest distributed denial-of-service (DDoS) attacks ever recorded during the second quarter of 2025,…

10 months ago

Cyberattack Strikes – Japanese Firms Targeted Over Ivanti and Fortinet VPN Flaws

Japanese organizations faced a significant escalation in cyber espionage campaigns during fiscal year 2024, with attackers exploiting critical vulnerabilities in…

10 months ago

Over 4 Million Internet-Exposed Devices Exploited in Emerging DoS Attacks

A staggering 4.26 million vulnerable Internet-connected devices that can be exploited to launch devastating denial-of-service (DoS) attacks. The comprehensive study,…

10 months ago

NVIDIA Container Toolkit Vulnerabilities Enables Attackers to Run Code with Elevated Privileges

NVIDIA has released critical security updates for its Container Toolkit and GPU Operator following the discovery of two high-severity vulnerabilities…

10 months ago

Oracle Cloud Code Editor 1-Click RCE Vulnerability Allows Remote Shell Access via Malicious File Upload

A critical Remote Code Execution (RCE) vulnerability in Oracle Cloud Infrastructure's (OCI) Code Editor that enabled attackers to silently hijack…

10 months ago

DNS Queries Abused by Hackers for Stealthy C2 and Data Exfiltration

Cybercriminals are increasingly exploiting the Domain Name System (DNS) - often called the "phonebook of the internet" - to conduct…

10 months ago

SharePoint RCE Vulnerability Exploited via Malicious XML in Web Part

A serious remote code execution vulnerability has been discovered in Microsoft SharePoint that allows attackers to execute arbitrary code through…

10 months ago

Hackers Exploited CitrixBleed 2 Vulnerability Ahead of Public PoC Release

The vulnerability, designated CVE-2025-5777 and dubbed "CitrixBleed 2," represents a significant security concern for organizations relying on Citrix infrastructure. Cybersecurity…

10 months ago