nestdaddy
APIs
Web Global News Country News Financial News Tech News Software Maps
Images Research AI Tools Games
Showing 20 of 88 tech news articles in Cybersecurity
CISA Warns of Actively Exploited Joomla JCE Flaw Allowing PHP Code Execution Cybersecurity
Thehackernews 4 days ago

CISA Warns of Actively Exploited Joomla JCE Flaw Allowing PHP Code Execution

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added a maximum-severity security flaw impacting Widget Factory Joomla Content Editor (JCE) to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The vulnerability, tracked as CVE-202

Fileless Phantom Stealer Targets Browser Credentials Cybersecurity
Darkreading 5 days ago

Fileless Phantom Stealer Targets Browser Credentials

In addition to executing entirely in memory, the malware's infection chain incorporates other anti-analysis techniques designed to evade detection.

Security Community Slams US Ban on Exporting Mythos, Fable Cybersecurity
Darkreading 5 days ago

Security Community Slams US Ban on Exporting Mythos, Fable

An open letter signed by dozens of security experts asked the government to reverse export restrictions on Anthropic's Claude Fable 5 and Mythos 5 models.

SprySOCKS Windows Variant Abuses Kernel Drivers to Evade Detection Cybersecurity
Darkreading 5 days ago

SprySOCKS Windows Variant Abuses Kernel Drivers to Evade Detection

FishMonger, a China-nexus threat group, has deployed an undocumented version of the Linux backdoor against government targets in Honduras, Taiwan, Thailand, and Pakistan.

Google Vertex AI SDK Flaw Let Attackers Hijack Model Uploads via Bucket Squatting Cybersecurity
Thehackernews 5 days ago

Google Vertex AI SDK Flaw Let Attackers Hijack Model Uploads via Bucket Squatting

A flaw in the Google Cloud Vertex AI SDK for Python let an attacker with no access to a victim's project hijack the victim's machine learning model upload and run code inside Google's serving infrastructure. Palo Alto Networks Unit 42, which found and reported the bug through Google's bug bounty pr

ClickFix Campaigns Expand Malware Delivery With New Loaders and Fake Update Lures Cybersecurity
Thehackernews 5 days ago

ClickFix Campaigns Expand Malware Delivery With New Loaders and Fake Update Lures

Cybersecurity researchers have flagged multiple ClickFix campaigns that deliver three malware loaders called BabaDeda Loader, Lorem Ipsum Loader, and Potemkin, per independent reports from Morphisec, BlueVoyant, and Huntress, respectively. Attacks involving BabaDeda Loader, observed in April 2026,

Rokarolla Android Trojan Levels Up to Full Device Control, Persistence Cybersecurity
Darkreading 5 days ago

Rokarolla Android Trojan Levels Up to Full Device Control, Persistence

The emerging malware, spread via fake TikTok and Chrome downloads, has evolved by combining banking fraud with extensive device surveillance and remote control.

'Lorem Ipsum' Malware Pivots to ClickFix Delivery Cybersecurity
Darkreading 5 days ago

'Lorem Ipsum' Malware Pivots to ClickFix Delivery

New analysis shows the campaign, which uses compromised WordPress sites, may be linked to the ransomware and data extortion group Vice Society.

New Rokarolla Android Malware Steals PINs, SMS Codes, and Crypto Wallet Funds Cybersecurity
Thehackernews 5 days ago

New Rokarolla Android Malware Steals PINs, SMS Codes, and Crypto Wallet Funds

Security researchers at Zimperium's zLabs have documented a new Android banking trojan, Rokarolla, that targets 217 banking and cryptocurrency apps and packs 137 remote commands. Together, they give an operator near-total control of an infected phone: it lifts lock-screen PINs, reads and sends SMS,

Survey: 94% of Incidents Involve Anonymized Infrastructure. Teams Are Still Reactive Cybersecurity
Thehackernews 5 days ago

Survey: 94% of Incidents Involve Anonymized Infrastructure. Teams Are Still Reactive

Security teams have never had more IP data at their disposal. Every day, analysts ingest enrichment feeds, geolocation data, reputation scores, telemetry, and threat intelligence from a growing ecosystem of vendors and platforms. Yet despite this abundance of information, many organizations continu

Attackers Exploit Three Fortinet FortiSandbox Flaws, One Patched Last Week Cybersecurity
Thehackernews 5 days ago

Attackers Exploit Three Fortinet FortiSandbox Flaws, One Patched Last Week

Bad actors are exploiting multiple security vulnerabilities in Fortinet FortiSandbox, according to threat intelligence firm Defused Cyber. In a post shared on X, the company said it has observed exploitation of CVE-2026-39813, CVE-2026-39808, and CVE-2026-25089 over the past 24 hours. CVE-2026-398

China-Linked SprySOCKS Backdoor Expands to Windows with Driver-Based Stealth Cybersecurity
Thehackernews 5 days ago

China-Linked SprySOCKS Backdoor Expands to Windows with Driver-Based Stealth

Cybersecurity researchers have flagged two previously undocumented Windows variants of what was believed to be a Linux-only backdoor called SprySOCKS. "The Windows variants discovered are internally marked as WIN_DRV and WIN_PLUS," ESET said in a report shared with The Hacker News. "Both come with

Fake Microsoft Alerts Used to Deploy North Korean NarwhalRAT Malware Cybersecurity
Thehackernews 5 days ago

Fake Microsoft Alerts Used to Deploy North Korean NarwhalRAT Malware

The North Korean state-sponsored hacking group known as ScarCruft (aka APT37) has been observed using spear-phishing messages impersonating Microsoft Account security notifications to deliver a new malware called NarwhalRAT. "The attack email contained a message impersonating an MS account security

Cisco Releases Security Updates for Actively Exploited SD-WAN Manager Flaw Cybersecurity
Thehackernews 5 days ago

Cisco Releases Security Updates for Actively Exploited SD-WAN Manager Flaw

Cisco has released security updates for a medium-severity security flaw in Catalyst SD-WAN Manager that has come under active exploitation in the wild. The vulnerability, tracked as CVE-2026-20262, carries a CVSS score of 6.5 out of 10.0. "A vulnerability in the web UI of Cisco Catalyst SD-WAN Man

CISA Flags LiteSpeed cPanel Plugin Flaw Exploited for Root Privilege Escalation Cybersecurity
Thehackernews 5 days ago

CISA Flags LiteSpeed cPanel Plugin Flaw Exploited for Root Privilege Escalation

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a security flaw impacting LiteSpeed cPanel Plugin to its Known Exploited Vulnerabilities (KEV) catalog, requiring Federal Civilian Executive Branch (FCEB) agencies to apply the fixes by June 18, 2026. The vulnerability in qu

Chinese Hackers Abused Google Workspace Rules to Steal Research and Defense Emails Cybersecurity
Thehackernews 6 days ago

Chinese Hackers Abused Google Workspace Rules to Steal Research and Defense Emails

A China-linked espionage group hid inside North American medical, academic, and military research networks for more than a year, quietly stealing sensitive research and defense email. The way in was a backdoor on their REDCap research servers that stole login credentials. The exfiltration was the u

North Korean Hackers Are Turning Developer Tools Into Malware Delivery Channels Cybersecurity
Thehackernews 6 days ago

North Korean Hackers Are Turning Developer Tools Into Malware Delivery Channels

Cybersecurity researchers have flagged two malicious cyber campaigns that exhibit similarities with a persistent North Korean threat cluster known as Contagious Interview (aka Famous Chollima, HexagonalRodent, and Void Dokkaebi). According to a report published by Proofpoint, the threat actor has b

HTTP/2 Bomb Attacks Put Telcos, Healthcare Orgs at Risk Cybersecurity
Darkreading 6 days ago

HTTP/2 Bomb Attacks Put Telcos, Healthcare Orgs at Risk

The denial-of-service (DoS) exploit takes advantage of two features in HTTP/2 that were designed to save Internet bandwith, not power massive amplification attacks.

Copilot 'SearchLeak' Attack Allows 1-Click Data Theft Cybersecurity
Darkreading 6 days ago

Copilot 'SearchLeak' Attack Allows 1-Click Data Theft

The critical, three-stage attack is now patched, but it's part of a new group of AI prompt-injection issues that use hidden URLs and other variables.

China-Nexus Actor Spies on US Researchers Undetected for a Year Cybersecurity
Darkreading 6 days ago

China-Nexus Actor Spies on US Researchers Undetected for a Year

Google discovered and disrupted the sprawling campaign, which stole RedCAP credentials to breach numerous institutions and exfiltrate sensitive data.

Link copied to clipboard!