Cybersecurity News
Stay up-to-date with the latest cybersecurity news and developments in the cybersecurity landscape. Be the first to know about the latest threats, current innovations, and major trends in the cyber universe. Check our Cyber News section for the freshest information.
Oracle VirtualBox on macOS ARM: Two CVEs Enable VM Escape, Patched in October 2025 CPU
Two vulnerabilities in Oracle VirtualBox, tracked as CVE-2025-62592 and CVE-2025-61760, can be chained to escape from a guest virtual machine ...
ColdRiver pivots to ClickFix: NoRobot and MaybeRobot replace LostKeys in stealthier social engineering campaigns
Google’s Threat Intelligence Group (GTIG) reports a rapid shift in the tradecraft of the Russian‑language threat actor ColdRiver—also tracked as ...
Google Adds “Recovery Contacts” to Gmail: A Human-Assisted, Phishing-Resistant Path to Account Recovery
Google is expanding Gmail account recovery with a new option called Recovery Contacts, a human-assisted mechanism that lets users designate ...
DNS0.eu Shuts Down: Impact on EU DNS Security and Migration Paths to DNS4EU and NextDNS
DNS0.eu has ceased operations, replacing its website with a brief notice: “The service is no longer running… maintaining it became ...
TP-Link Omada gateways hit by critical unauthenticated RCE; firmware updates available
TP-Link has disclosed four security issues affecting Omada series gateways, with two vulnerabilities enabling arbitrary command execution with root privileges. ...
China Alleges NSA Targeted National Time Service Center: What It Means for Critical Infrastructure
China’s Ministry of State Security (MSS) alleges the U.S. National Security Agency conducted targeted cyber operations against the National Time ...
PolarEdge Botnet Exploits Cisco CVE-2023-20118 to Build ORB-Style Proxy Network Targeting Cisco, ASUS, QNAP and Synology Devices
Security researchers have published a technical analysis of the PolarEdge botnet, a campaign actively observed since February 2025 and aimed ...
131 Chrome Extensions Weaponize WhatsApp Web for Bulk Messaging, Socket Warns
Security analytics firm Socket has identified 131 Chrome extensions designed to automate actions in WhatsApp Web and orchestrate bulk messaging. ...
Microsoft Confirms WinRE USB Input Failure After KB5066835: What It Means and How to Respond
Microsoft has acknowledged a regression in the October security update KB5066835 that causes wired USB keyboards and mice to stop ...
Microsoft tightens IE Mode in Edge after attacks leveraging Chakra zero-day
Microsoft has revised how Internet Explorer (IE) Mode is invoked in Edge following a wave of attacks observed in August ...