Cybersecurity News

Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.

Brown bear walking near a river with a cityscape and mountains in the background.

Malicious npm Packages Abuse Adspect Cloaking to Deliver Crypto Scams

CyberSecureFox

Researchers at Socket have identified seven malicious npm packages that weaponized the cloud-based traffic service Adspect to hide their behavior ...

Hooded figure stands before a glowing skull sign in a dark, urban landscape.

ShadowRay 2.0 Exploits CVE-2023-48022 in Ray to Build Self-Spreading AI Botnet

CyberSecureFox

Attackers are actively abusing a critical remote code execution (RCE) vulnerability CVE-2023-48022 in the popular Ray framework to hijack artificial ...

Modern tech scene with a man interacting with a digital display in a futuristic setting.

WrtHug Malware Campaign Hijacks Asus Routers Through AiCloud Vulnerabilities

CyberSecureFox

SecurityScorecard researchers have disclosed a large-scale malware operation dubbed WrtHug, targeting consumer and SOHO Asus routers. The campaign has already ...

Tiger near a globe and laptop, with spider and headphones displayed prominently.

Chinese APT24 Uses New BadAudio Malware in Multi‑Year Cyber Espionage Campaign

CyberSecureFox

Google Threat Intelligence Group (GTIG) has detailed a multi‑year cyber espionage operation attributed to the Chinese threat actor APT24 (also ...

Man presenting Microsoft Sysmon announcement with tech-themed background.

Microsoft to Integrate Sysmon Natively into Windows 11 and Windows Server 2025

CyberSecureFox

Microsoft has announced plans to add Sysmon (System Monitor) as a native, installable component in Windows 11 and Windows Server ...

Close-up of the Okta and CrowdStrike logos on a dark surface.

CrowdStrike Insider Leak Exposes SSO Risks and the Evolving Insider Threat Landscape

CyberSecureFox

In the second half of last month, CrowdStrike, one of the leading global cybersecurity vendors, confirmed an insider-driven data leak ...

Large warning signs on a building with the name "Grafana" visible.

CVE-2025-41115: Critical SCIM Vulnerability in Grafana Enterprise Enables Admin Account Takeover

CyberSecureFox

A critical security flaw tracked as CVE-2025-41115 has been discovered in the commercial edition of Grafana Enterprise, scoring the maximum ...

Coastal scene with kitesurfers, a distant power plant, and an urban building.

Unpatched D-Link DIR-878 Vulnerabilities Put Home and Office Routers at Risk

CyberSecureFox

The popular dual-band router D-Link DIR-878, widely used in homes and small offices, has been found to contain several serious ...

Office building featuring a large "no Microsoft" symbol on the roof.

Microsoft Shuts Down KMS38 Offline Activation: Security and Compliance Implications for Windows Environments

CyberSecureFox

Microsoft has effectively shut down one of the most widely used illicit activation methods for Windows—KMS38. Users report that the ...

Woman analyzing a digital display warning of a botnet attack in a futuristic setting.

RondoDox Botnet Exploits Critical XWiki CVE-2025-24893 RCE Vulnerability

CyberSecureFox

A critical remote code execution (RCE) vulnerability CVE-2025-24893 in XWiki Platform is being actively exploited by the emerging RondoDox botnet, ...