Cybersecurity News

Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.

Businessman struggles against a giant lock and burning circuit board.

Broadcom NetXtreme‑E Firmware Flaws Put Data Centers at Risk of VM Escape and DoS—Patch Now

CyberSecureFox

Two vulnerabilities in Broadcom NetXtreme‑E high‑speed NIC firmware, widely deployed across servers and data‑center infrastructure, have been fixed following disclosure ...

Hooded figure with a skull looming over an anxious crowd holding ID cards.

Prosper Data Breach: SSNs Exposed and 17.6M Emails Listed by HIBP

CyberSecureFox

Prosper, one of the oldest U.S. peer‑to‑peer lending platforms, is investigating a significant data breach after detecting unauthorized database queries ...

Warning message folder with a statue representing justice and a lock with a skull.

Windows blocks File Explorer preview for Internet files to curb NTLM hash leakage

CyberSecureFox

Microsoft has changed how the File Explorer preview pane behaves in Windows, closing a low‑interaction path to NTLM credential exposure. ...

Close-up of a device labeled 'Pod' with a cooling indicator light.

AWS Outage Leaves Eight Sleep Smart Beds Stranded, Spotlighting IoT Cloud-Dependency Risks

CyberSecureFox

A widespread incident in AWS’s US-EAST-1 region triggered cascading service disruptions and exposed systemic weaknesses in cloud-dependent consumer IoT. Among ...

Man concerned about critical ASP.NET Core vulnerability on computer screen.

Microsoft fixes critical Kestrel flaw (CVE-2025-55315) enabling HTTP request smuggling

CyberSecureFox

Microsoft has shipped fixes for a critical vulnerability in the Kestrel web server used by ASP.NET Core, tracked as CVE-2025-55315 ...

Split scene shows a hacker on one side and secure messaging on the other.

US Court Bans NSO Group From Targeting WhatsApp, Orders Data Deletion, Cuts Damages to $4M

CyberSecureFox

A US federal court in the Northern District of California has issued a permanent injunction against Israeli spyware developer NSO ...

Law enforcement officers surround a building labeled SIMCARTEL with parked vehicles.

Europol Dismantles SIMCARTEL: Inside the Global SIM-Farm Network Powering OTP Abuse and Fake Accounts

CyberSecureFox

European law enforcement has dismantled a large-scale SIM-farm ecosystem in an operation codenamed SIMCARTEL, disrupting a global pipeline for phishing, ...

Bright orange flower in foreground with Golden Gate Bridge and San Francisco skyline.

GlassWorm Malware Exploits VS Code Extensions in Significant Supply Chain Attack

CyberSecureFox

Koi Security has documented a significant software supply chain attack in the Visual Studio Code ecosystem. A self-propagating malware dubbed ...

Man monitors screen displaying malware alert in a tech workspace.

Malicious npm package “https-proxy-utils” delivers AdaptixC2 and underscores open-source supply chain exposure

CyberSecureFox

Security researchers at Kaspersky identified a malicious npm package, https-proxy-utils, masquerading as a proxy utility and abusing npm lifecycle scripts ...

Abandoned library with "БИБЛИОТЕКА" sign, surrounded by overgrown vegetation.

TARmageddon (CVE-2025-62518): Critical Rust tar parsing flaw enables RCE in tokio‑tar and forks

CyberSecureFox

Security researchers at Edera have disclosed a critical logic flaw in the abandoned Rust library async‑tar and multiple forks, including ...