Saturday, May 2, 2026
HomeCyber News

Cyber News

Leveraging Weaponized LNK Files and Tools like Cobalt Strike and Metasploit in Targeted Cyberattacks on Organizations

Cybersecurity researchers at Seqrite Labs have identified and tracked a sophisticated espionage group known as UNG0002, which has been conducting targeted cyberattacks across multiple Asian jurisdictions, including China, Hong Kong, and Pakistan, since May 2024. The threat actor demonstrates advanced technical capabilities while maintaining...

Severe Vulnerability in JavaScript Library Puts Millions of Apps at Risk of Code Execution Attacks

A critical security vulnerability in the widely-used form-data JavaScript library has been disclosed, potentially exposing millions of applications to sophisticated code injection attacks. The vulnerability, tracked as CVE-2025-7783 and published by prominent JavaScript developer Jordan Harband, exploits predictable random number generation to allow attackers...

Chinese Hackers Exploit SharePoint Zero-Day Vulnerabilities, CISA Issues Urgent Warning

The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent alert regarding active exploitation of critical SharePoint vulnerabilities by Chinese nation-state actors, prompting immediate action from organizations running on-premises SharePoint servers. Microsoft Security Response Center confirmed that threat actors are actively exploiting a...

Windows 11 Introduces Black Screen of Death with Built-in Auto Recovery”

Microsoft has unveiled significant updates to Windows 11's crash handling system, introducing a redesigned "blue screen of death" interface and an automated recovery tool called Quick Machine Recovery (QMR). These changes are part of the company's broader Windows Resiliency Initiative, aimed at making Windows...

Kali Linux Introduces Two New Packages for Raspberry Pi to Enhance Wi-Fi Performance

Kali Linux has announced a significant upgrade for Raspberry Pi users with the release of two new packages that enable enhanced wireless capabilities directly through the device's onboard Wi-Fi interface. The development represents a major advancement in portable penetration testing, eliminating the need for...

Critical Chrome Vulnerabilities Could Let Hackers Run Arbitrary Code

Google has released critical security updates for Chrome browser versions 138.0.7204.168/.169 across multiple platforms, addressing several high-severity vulnerabilities that could potentially allow attackers to execute arbitrary code on affected systems. The update, currently rolling out to Windows, Mac, and Linux users over the coming...