Mastodon Mastodon Mastodon Mastodon

Cybersecurity News

Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.

WhatsApp message leading to ManageEngine RMM installation process.

WhatsApp Desktop and Web Targeted in Global VBScript RMM Campaign

CyberSecureFox Editorial Team

According to researchers at Kaspersky, an active campaign has been identified in which malicious Visual Basic Script (VBScript) files are ...

Illustration of GPT-5.5-Cyber, robotic figure with a shield on a digital globe.

How OpenAI’s GPT-5.5-Cyber Targets Software Vulnerabilities

CyberSecureFox Editorial Team

OpenAI has announced the release of an updated GPT-5.5-Cyber model for trusted security professionals as part of the Daybreak initiative, ...

Red data tap overflowing with digital information and user profiles.

DifyTap: Cross-Tenant Data Exposure in the Dify AI Platform

CyberSecureFox Editorial Team

Four vulnerabilities have been discovered in the open platform for building AI agents Dify, collectively dubbed DifyTap — two of ...

Diagram showcasing OXLOADER malware spreading CastleStealer via ads.

Elastic Security Labs analyzes OXLOADER and CastleStealer campaign

CyberSecureFox Editorial Team

Researchers at Elastic Security Labs have published a technical analysis of a previously unknown malware loader, OXLOADER, which is used ...

Smartphone illustration showing Android security and developer verification elements.

How Android Developer Verification Changes App Installation

CyberSecureFox Editorial Team

Starting from 30 September 2026, certified Android devices in Brazil, Indonesia, Singapore and Thailand will begin blocking standard installation of ...

D-Link routers connected by red lines to AryStinger logo in a dark setting.

How the AryStinger Botnet Exploits End-of-Life D-Link Routers

CyberSecureFox Editorial Team

Researchers from Qianxin XLab have reported a previously unknown botnet, AryStinger, which they say has compromised more than 4,000 outdated ...

Digital illustration of AryStinger Botnet concept with routers and a serpent-like figure.

How AryStinger Hijacks Old Routers and QNAP NAS for Covert Recon

CyberSecureFox Editorial Team

Researchers from QiAnXin XLab report on a new malware family, AryStinger, which infects legacy home routers based on Realtek RTL819X ...

Chrome logo and puzzle pieces representing live wallpaper extensions and ad tracking.

152 Malicious Chrome Wallpaper Extensions Used for Ad Fraud

CyberSecureFox Editorial Team

According to researchers at Socket, 152 malicious extensions were discovered in the Chrome Web Store, disguised as tools for installing ...

Visual representation of the Gravity SMTP vulnerability and its impact.

Gravity SMTP flaw leaks email API keys via unauthenticated endpoint

CyberSecureFox Editorial Team

The Gravity SMTP plugin for WordPress, installed on approximately 100,000 sites, is being massively exploited via the CVE-2026-4020 vulnerability (CVSS ...

Visual representation of SocGholish malware network disrupting fake updates.

Law Enforcement Dismantles SocGholish WordPress Malware

CyberSecureFox Editorial Team

Law enforcement agencies in the Netherlands, Canada, Germany, and the United States have conducted a coordinated operation to dismantle the ...