Tuesday, May 5, 2026
HomeCyber News

Cyber News

Critical TeamViewer Vulnerability on Windows Allows Attackers to Delete Files with SYSTEM Privileges

A significant security vulnerability has been discovered in TeamViewer's Remote Management software for Windows systems, enabling attackers with local access to exploit SYSTEM-level privileges for arbitrary file deletion. The vulnerability , identified as CVE-2025-36537, carries a CVSS 3.1 base score of 7.0, categorizing it...

XDSpy Hackers Exploit Windows LNK Zero-Day Flaw to Target Users

Security researchers have uncovered a sophisticated cyber-espionage campaign attributed to the elusive XDSpy threat actor, exploiting a previously unreported zero-day vulnerability in Microsoft Windows LNK file parsing to compromise government entities in Eastern Europe and Russia. Windows LNK Flaw Facilitates Multi-Stage Attack The attack hinges on...

NVIDIA Megatron LM Vulnerabilities Allows Attackers to Inject Malicious Code

NVIDIA has disclosed critical security vulnerabilities in its Megatron LM software that enable attackers to inject malicious code through compromised files, prompting an immediate security update release. The company issued Security Bulletin on June 24, 2025, identifying two high-severity vulnerabilities (CVE-2025-23264 and CVE-2025-23265) that...

New FileFix Attack Exploits Windows File Explorer to Run Malicious Commands

A new social engineering attack technique called "FileFix" that exploits Windows File Explorer's address bar functionality to execute malicious commands without leaving the browser environment. This method represents an evolution of the popular ClickFix attacks that have been plaguing users over the past year. The...

Cyber Attackers Deploy AsyncRAT via Clickfix Technique Through Fake Verification Prompt

In a recent and highly sophisticated cyberattack campaign, threat actors have executed a stealthy and persistent attack leveraging the notorious AsyncRAT malware. The campaign employs explicitly a “Clickfix”-style intrusion technique, targeting German-speaking users through a cleverly disguised fake verification prompt. Security researchers have provided...

OWASP AI Testing Guide: A New Initiative to Identify Vulnerabilities in AI Applications

The Open Web Application Security Project (OWASP) has announced the development of a comprehensive AI Testing Guide, marking a significant milestone in addressing the growing security challenges posed by artificial intelligence systems. As organizations increasingly integrate AI solutions into critical operations spanning healthcare, finance,...