Sunday, May 3, 2026
HomeCyber News

Cyber News

Gigabyte UEFI Vulnerabilities Enables Arbitrary Code Execution in SMM

A critical security disclosure has revealed multiple System Management Mode (SMM) callout vulnerabilities in Gigabyte UEFI firmware modules, potentially allowing attackers to execute arbitrary code in one of the most privileged processor environments. The vulnerabilities, publicly disclosed on July 11, 2025, through Vulnerability Note...

Identify and Resolve File Lock Issues in Windows with Built-in Utilities

Microsoft has provided comprehensive guidance for Windows users encountering the frustrating "The process cannot access the file because it is being used by another process" error message. The technology giant has outlined three effective methods to identify and resolve file-locking issues using built-in Windows...

New Technique Exposes Stealthy RDP Attacks by Cybercriminals

A forensic techniques that can track attackers using Remote Desktop Protocol (RDP) to move laterally through networks, turning the very tool hackers use for stealth into a detailed evidence trail. The methods, which analyze everything from Windows event logs to cached screen images, provide...

Juniper Junos OS Flaw Enables Attackers to Cause DoS Vulnerability

Juniper Networks has disclosed a critical vulnerability in its Junos OS and Junos OS Evolved operating systems that allows unauthenticated adjacent attackers to trigger denial-of-service conditions through malicious BGP UPDATE packets. The flaw, tracked as CVE-2025-52953, represents an Expected Behavior Violation vulnerability in the...

Windows 11 Introduces New Black Screen of Death for Users

Microsoft has rolled out Windows 11 Build 26100.4762 (KB5062660) to Windows Insiders in the Release Preview Channel, introducing a redesigned interface for system crashes and unexpected restarts. The update, part of Windows 11 version 24H2, features a modernized "black screen of death" that replaces...

New RenderShock 0-Click Vulnerability Allows Silent Payload Execution via Background Process

A sophisticated zero-click attack framework called RenderShock that exploits passive file processing systems in modern operating systems and enterprise environments. Unlike traditional malware that requires user interaction, RenderShock leverages built-in preview mechanisms, file indexing services, and automation features to execute malicious payloads without any...