A newly observed version of PamStealer—malware targeting macOS—has introduced major enhancements designed to thwart static analysis and ensure persistent compromise. The changes, flagged by threat […]
Category: Cybersecurity News
Stay informed about the ever-evolving world of digital threats and defenses with our Cyber Security News category. Here, you’ll find the latest breaking news, in-depth analysis, and expert insights on everything related to cybersecurity. From data breaches and ransomware attacks to emerging threats and innovative security solutions, we cover the critical issues impacting individuals, businesses, and governments worldwide. Keep up-to-date on the latest vulnerabilities, best practices, and trends shaping the future of online security.
TWEAKOS Malware Turns Telegram Into Tool for Stealers and Stolen Accounts
Researchers have discovered a new threat dubbed “TWEAKOS,” a malware framework that combines a Windows stealer with a Telegram-based command-and-control (C2) system, also operating as […]
Business Emails Are Being Used to Slip Malware Into Organizations
Routine business messages are being weaponized as malware delivery tools, dodging traditional defenses and putting companies at risk. Between July and August 2026, phishing emails […]
Patch Alert: Critical Authorization Flaws in ServiceNow’s AI Platform
ServiceNow has released urgent security updates to address five major vulnerabilities in its AI Platform, two of which are classified as critical. These flaws could […]
Bitget Hit with $351.6M Backend Compromise Blamed on North Korea
Crypto exchange Bitget has confirmed a massive security breach in which approximately $351.6 million was stolen from its hot and warm wallets. The company says […]
Why SOC Teams Must Build Memory, Not Reset With Each Alert
Security Operations Centers (SOCs) are grappling with an alarming dynamic: artificial intelligence (AI) isn’t just energizing defenses—it’s transforming attackers’ workflows. AI is enabling threat actors […]
Critical GitLab Vulnerabilities Allow Code Execution via Malicious Regex
GitLab has released urgent security patches to address two critical vulnerabilities—CVE-2026-89078 and CVE-2026-93577—that could permit authenticated users to execute arbitrary code on self-hosted GitLab CE […]
Microsoft Password Reset Portal Leaks User & MFA Info
Microsoft’s self-service password reset (SSPR) system — part of Entra ID — may be unintentionally disclosing sensitive account details to anyone initiating a reset, even […]
Critical HPE ALE Flaws Let Attackers Bypass Controls & Take Over Systems
Hewlett Packard Enterprise has patched a set of serious security holes in its Networking Analytics and Location Engine (ALE) product—issues that could allow attackers to […]
Microsoft uncovers Storm-2570’s ransomware playbook across multiple malware families
Microsoft has revealed a cybercrime affiliate known as Storm-2570 behind ransomware attacks that deploy different malware families but rely on a consistent attack strategy. The […]