IT Security News

Cybersecurity news and articles about information security, vulnerabilities, exploits, hacks, laws, spam, viruses, malware, breaches.

Main menu

Skip to content
  • Advertising
  • Contact
  • Legal and Contact information
  • Opt-out preferences
  • Privacy Policy
  • Social Media
    • Telegram Channel
Cyber Security News, EN

New PCPcat Exploiting React2Shell Vulnerability to compromise 59,000+ Servers

2025-12-15 20:12

A new malware campaign called PCPcat has successfully compromised more than 59,000 servers in under 48 hours through targeted exploitation of critical vulnerabilities in Next.js and React frameworks. The malware targets Next.js deployments by exploiting two critical vulnerabilities, CVE-2025-29927 and…

Read more →

EN, Security Boulevard

Hackers Steal Personal Data in 700Credit Breach Affecting 5.6 Million

2025-12-15 20:12

A data breach of credit reporting and ID verification services firm 700Credit affected 5.6 million people, allowing hackers to steal personal information of customers of the firm’s client companies. 700Credit executives said the breach happened after bad actors compromised the…

Read more →

EN, The Hacker News

Featured Chrome Browser Extension Caught Intercepting Millions of Users’ AI Chats

2025-12-15 20:12

A Google Chrome extension with a “Featured” badge and six million users has been observed silently gathering every prompt entered by users into artificial intelligence (AI)-powered chatbots like OpenAI ChatGPT, Anthropic Claude, Microsoft Copilot, DeepSeek, Google Gemini, xAI Grok, Meta…

Read more →

EN, The Register - Security

China, Iran are having a field day with React2Shell, Google warns

2025-12-15 20:12

Who hasn’t exploited this max-severity flaw? At least five more Chinese spy crews, Iran-linked goons, and financially motivated criminals are now attacking the React2Shell, a maximum-severity flaw in the widely used React JavaScript library, according to Google.… This article has…

Read more →

Cyber Security News, EN

Threat Actors Advertising ‘MioLab MacOS’ Infostealer on an Underground Forum

2025-12-15 19:12

A new malware threat targeting macOS users has emerged on underground cybercrime forums, with threat actors marketing a sophisticated information-stealing tool called “MioLab MacOS.” This resident infostealer comes equipped with a web-based control panel and customizable settings, making it an…

Read more →

Cyber Security News, EN

JumpCloud Remote Assist for Windows Agent Flaw Let Attackers Escalate Privilege

2025-12-15 19:12

The JumpCloud Remote Assist vulnerability (CVE-2025-34352) exposes Windows systems to local privilege escalation and denial-of-service attacks. Discovered by XM Cyber researcher Hillel Pinto, the flaw stems from insecure file operations in the agent’s uninstaller.​ The JumpCloud Remote Assist for Windows…

Read more →

Cyber Security News, EN

Jaguar Land Rover Confirms Employee Data Stolen in August Cyberattack

2025-12-15 19:12

Jaguar Land Rover (JLR), the iconic British luxury automaker, has finally disclosed that a cyberattack in August compromised sensitive data on current and former employees. This marks the company’s first public acknowledgment of the breach’s scope, following a production shutdown…

Read more →

Cyber Security News, EN

xHunt APT Hackers Attacking Microsoft Exchange and IIS Web Servers to Deploy Custom Backdoors

2025-12-15 19:12

The xHunt advanced persistent threat group has firmly established itself as a sophisticated cyber-espionage actor, orchestrating targeted campaigns against organizations in Kuwait. Since its emergence in 2018, the group has focused intently on the government, shipping, and transportation sectors. Their…

Read more →

EN, securityweek

Militant Groups Are Experimenting With AI, and the Risks Are Expected to Grow

2025-12-15 19:12

AI can be used by extremist groups to pump out propaganda or deepfakes at scale, widening their reach and expanding their influence. The post Militant Groups Are Experimenting With AI, and the Risks Are Expected to Grow appeared first on…

Read more →

CySecurity News - Latest Information Security and Hacking Incidents, EN

Neo AI Browser: How Norton’s AI-Driven Browser Aims to Change Everyday Web Use

2025-12-15 19:12

  Web browsers are increasingly evolving beyond basic internet access, and artificial intelligence is becoming a central part of that shift. Neo, an AI-powered browser developed by Norton, is designed to combine browsing, productivity tools, and security features within a…

Read more →

hourly summary

IT Security News Hourly Summary 2025-12-15 18h : 12 posts

2025-12-15 19:12

12 posts were published in the last hour 17:2 : GitHub Scanner for React2Shell (CVE-2025-55182) Turns Out to Be Malware 17:2 : Third Defendant Pleads Guilty in Fantasy Sports Betting Hack Case 17:2 : Cybersecurity concerns are paramount among executives…

Read more →

EN, Hackread – Cybersecurity News, Data Breaches, AI, and More

GitHub Scanner for React2Shell (CVE-2025-55182) Turns Out to Be Malware

2025-12-15 19:12

A GitHub repository posing as a vulnerability scanner for CVE-2025-55182, also referred to as “React2Shell,” was exposed as… This article has been indexed from Hackread – Cybersecurity News, Data Breaches, AI, and More Read the original article: GitHub Scanner for…

Read more →

EN, www.infosecurity-magazine.com

Third Defendant Pleads Guilty in Fantasy Sports Betting Hack Case

2025-12-15 19:12

A Minnesota man has pleaded guilty to a credential stuffing scheme that compromised over 60,000 accounts This article has been indexed from www.infosecurity-magazine.com Read the original article: Third Defendant Pleads Guilty in Fantasy Sports Betting Hack Case

Read more →

Cybersecurity Dive - Latest News, EN

Cybersecurity concerns are paramount among executives in almost all roles, regions and industries

2025-12-15 19:12

A new survey finds widespread agreement that security is one of the biggest challenges facing companies today. This article has been indexed from Cybersecurity Dive – Latest News Read the original article: Cybersecurity concerns are paramount among executives in almost…

Read more →

Cyber Security News, EN

Microsoft Recent Update Breaks VPS Access for Windows Subsystem for Linux Users

2025-12-15 18:12

Microsoft’s October 2025 non-security update is disrupting virtual private server (VPS) access for Windows Subsystem for Linux (WSL) users, particularly those relying on third-party VPNs for enterprise connectivity. Released on October 28, 2025, as KB5067036, the update targets OS builds…

Read more →

Cyber Security News, EN

Critical pgAdmin Vulnerability Let Attackers Execute Shell Commands on the Host

2025-12-15 18:12

A severe security vulnerability has been uncovered in pgAdmin 4, the popular open-source PostgreSQL database management tool. Tracked as CVE-2025-13780, this critical flaw allows attackers to bypass security filters and execute arbitrary shell commands on the host server. The issue…

Read more →

Cyber Security News, EN

Apache StreamPark Vulnerability Let Attackers Access Sensitive Data

2025-12-15 18:12

A critical security vulnerability has been discovered in Apache StreamPark that could allow attackers to decrypt sensitive information and gain unauthorized system access. The vulnerability stems from the use of a hard-coded encryption key in the application, which enables threat…

Read more →

Cyber Security News, EN

NVIDIA Merlin Vulnerabilities Let Attackers Execute Malicious Code and Trigger DoS Condition

2025-12-15 18:12

Security patches for the Merlin framework addressing two high-severity deserialization vulnerabilities. That could allow attackers to execute arbitrary code and launch denial-of-service attacks on affected Linux systems. NVIDIA researchers have identified two vulnerabilities in Merlin components that leverage insecure deserialization.…

Read more →

Cyber Security News, EN

New Android Malware Frogblight Mimics as Official Government Websites to Collect SMS and Device Details

2025-12-15 18:12

A sophisticated Android banking Trojan named Frogblight has emerged as a significant threat targeting Turkish users, employing deceptive tactics to steal banking credentials and personal data. Discovered in August 2025, this malware initially disguised itself as an application for accessing…

Read more →

EN, Malwarebytes

Pig butchering is the next “humanitarian global crisis” (Lock and Code S06E25)

2025-12-15 18:12

This week on the Lock and Code podcast, we speak with Erin West about pig butchering scams and the efforts to stop this new, global crisis. This article has been indexed from Malwarebytes Read the original article: Pig butchering is…

Read more →

EN, Security Boulevard

Cloud Monitor Wins Cybersecurity Product of the Year 2025

2025-12-15 18:12

Campus Technology & THE Journal Name Cloud Monitor as Winner in the Cybersecurity Risk Management Category BOULDER, Colo.—December 15, 2025—ManagedMethods, the leading provider of cybersecurity, safety, web filtering, and classroom management solutions for K-12 schools, is pleased to announce that…

Read more →

EN, Security Boulevard

ServiceNow in Advanced Talks to Acquire Armis for $7 Billion: Reports

2025-12-15 18:12

ServiceNow Inc. is in advanced talks to acquire cybersecurity startup Armis in a deal that could reach $7 billion, its largest ever, according to reports. Bloomberg News first reported the discussions over the weekend, noting that an announcement could come…

Read more →

Cybersecurity Dive - Latest News, EN

CISOs view hybrid environments as best way to manage risk, compliance

2025-12-15 18:12

Security leaders are also focused on the convergence of IT and operational technology as business continuity becomes a major concern. This article has been indexed from Cybersecurity Dive – Latest News Read the original article: CISOs view hybrid environments as…

Read more →

EN, Security Affairs

Atlassian fixed maximum severity flaw CVE-2025-66516 in Apache Tika

2025-12-15 18:12

Atlassian released security updates to address dozens of flaws, including multiple critical-severity vulnerabilities. Atlassian addressed dozens of vulnerabilities impacting its products, including multiple critical-severity issues. One of the most severe bugs is a maximum-severity XML External Entity (XXE) injection flaw, tracked…

Read more →

Page 245 of 4872
« 1 … 243 244 245 246 247 … 4,872 »

Pages

  • Advertising
  • Contact
  • Legal and Contact information
  • Opt-out preferences
  • Privacy Policy
  • Social Media
    • Telegram Channel

Recent Posts

  • Unsecured Database Exposes 149 Million Logins Linked to Infostealer Malware Operations February 7, 2026
  • ACF Plugin Flaw Exposes 50,000 WordPress Sites to Admin Takeover February 7, 2026
  • BridgePay Payment Gateway Hit by Ransomware, Causing Nationwide Outages February 7, 2026
  • IT Security News Hourly Summary 2026-02-07 15h : 3 posts February 7, 2026
  • Hackers Linked to State Actors Target Signal Messages of Military Officials and Journalists February 7, 2026
  • Organizations Urged to Replace Discontinued Edge Devices February 7, 2026
  • China-Linked DKnife Threat Underscores Risks to Network Edge Devices February 7, 2026
  • Apple Pay Users Targeted by Phishing Attack Aimed at Stealing Payment Details February 7, 2026
  • Study confirms experience beats youthful enthusiasm February 7, 2026
  • German Agencies Warn of Signal Phishing Targeting Politicians, Military, Journalists February 7, 2026
  • State-Backed Hackers Target Military Officials and Journalists on Signal in Latest Cyberattack February 7, 2026
  • Moltbook, the Social Network for AI Agents, Exposed Real Humans’ Data February 7, 2026
  • CISA pushes Federal agencies to retire end-of-support edge devices February 7, 2026
  • BeyondTrust Remote Access Products 0-Day Vulnerability Allows Remote Code Execution February 7, 2026
  • OpenClaw Partners with VirusTotal to Secure AI Agent Skill Marketplace February 7, 2026
  • OpenClaw v2026.2.6 Released With Support for Opus 4.6, GPT-5.3-Codex and Safety Scanner February 7, 2026
  • IT Security News Hourly Summary 2026-02-07 09h : 2 posts February 7, 2026
  • Cybercriminals Use Malicious Cybersquatting Attacks to Distribute Malware and Hijack Data February 7, 2026
  • nmapUnleashed Makes Nmap Scanning More Comfortable and Effective February 7, 2026
  • Hackers Exploit Free Firebase Accounts to Launch Phishing Campaigns February 7, 2026

Copyright © 2026 IT Security News. All Rights Reserved. The Magazine Basic Theme by bavotasan.com.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}