Sunday, May 3, 2026
HomeCyber News

Cyber News

‘Diskstation’ Ransomware Gang Targeting Synology NAS Devices Busted by Authorities

Italian State Police, working in collaboration with French and Romanian law enforcement agencies, have successfully identified and dismantled a dangerous cybercriminal organization known as "Diskstation" that specialized in ransomware attacks targeting businesses across multiple sectors. The complex international investigation, coordinated through EUROPOL, resulted in...

Crypto Startups Targeted by North Korean Hackers Through Phony Zoom Invitations

North Korean state-backed hackers have intensified a long-running cyber-espionage campaign targeting Web3 and cryptocurrency firms by using fake job interviews and Zoom invitation lures. According to a new report by cybersecurity firm Sentinel One, while the social engineering tactics remain the same, the hackers...

Former Army Member Pleads Guilty to Telecom Hacking

A 21-year-old former U.S. Army soldier stationed in Texas has pleaded guilty to orchestrating a sophisticated cybercrime operation targeting telecommunications companies across the United States. Cameron John Wagenius, operating under the online alias "kiberphant0m," admitted to conspiring with other hackers to breach corporate databases,...

Node.js Vulnerabilities Expose Windows Apps to Path Traversal and HashDoS

The Node.js project has announced critical security updates across multiple release lines, addressing two high-severity vulnerabilities that pose significant risks to Windows users and applications running on the latest Node.js versions. These vulnerabilities, identified as CVE-2025-27210 and CVE-2025-27209, affect millions of applications worldwide and...

VMware ESXi and Workstation Vulnerabilities Enable Remote Code Execution on Host

A critical security updates addressing four vulnerabilities in VMware ESXi, Workstation, Fusion, and Tools that could allow attackers with administrative privileges on virtual machines to execute malicious code on the underlying host systems. The vulnerabilities, identified as CVE-2025-41236, CVE-2025-41237, CVE-2025-41238, and CVE-2025-41239, carry CVSS...

Critical Flaw in Apache Tomcat Coyote Exposes System to Denial of Service Attacks

A newly discovered vulnerability in Apache Tomcat's Coyote component has been identified as a significant security concern, potentially exposing web servers to denial-of-service attacks. The vulnerability, cataloged as CVE-2025-53506, affects multiple versions of the widely used Java servlet container and has been classified as...