Stay Informed

Cybersecurity News

Home / News

Quick searches: Linux Windows Microsoft 365 AWS OVH VMware WordPress Fortinet Citrix VPN

What it means for your servers

The security stories that matter, explained by our team — with the concrete steps to take.

Latest headlines from security outlets

Collected every two hours from specialised publications — each link leads to the original article.

The Hacker News
The Hacker News

CastleLoader Malware Infects 469 Devices Using Fake GitHub Repos and ClickFix Phishing

Cybersecurity researchers have shed light on a new versatile malware loader called CastleLoader that has been put to use in campaigns distributing various info…

GitHub

The Hacker News
The Hacker News Breaches & leaks

Storm-2603 Exploits SharePoint Flaws to Deploy Warlock Ransomware on Unpatched Systems

Microsoft has revealed that one of the threat actors behind the active exploitation of SharePoint flaws is deploying Warlock ransomware on targeted systems.The…

Microsoft 365

The Hacker News
The Hacker News Vulnerabilities

New Coyote Malware Variant Exploits Windows UI Automation to Steal Banking Credentials

The Windows banking trojan known as Coyote has become the first known malware strain to exploit the Windows accessibility framework called UI Automation (UIA) …

Windows

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles

Clear Linux Departs: Security-First Vision Fades with Intels Exit

Here's the thing about Clear Linux OS: it was never your everyday Linux distribution. It had this razor-sharp focus on performance, security, and Intel hardwar…

Linux

The Hacker News
The Hacker News Breaches & leaks

Google Launches OSS Rebuild to Expose Malicious Code in Widely Used Open-Source Packages

Google has announced the launch of a new initiative called OSS Rebuild to bolster the security of the open-source package ecosystems and prevent software suppl…

The Hacker News
The Hacker News Vulnerabilities

CISA Warns: SysAid Flaws Under Active Attack Enable Remote File Access and SSRF

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added two security flaws impacting SysAid IT support software to its Known Exploited Vulnerabi…

The Hacker News
The Hacker News

Iran-Linked DCHSpy Android Malware Masquerades as VPN Apps to Spy on Dissidents

Cybersecurity researchers have unearthed new Android spyware artifacts that are likely affiliated with the Iranian Ministry of Intelligence and Security (MOIS)…

VPN Android

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Hackers Are Milking an Old Apache Flaw to Deploy Linuxsys Cryptominer

Let's talk straight: if you're running Apache HTTP Server and you haven't checked your version in a while, you might have a problem. An issue that's now pretty…

Linux Apache

Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses
Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses Vulnerabilities

Google Patched A Chrome Zero-Day That Allowed Sandbox Escape

Google recently addressed a serious zero-day vulnerability in its Chrome browser that allowed sandbox escape.…Google Patched A Chrome Zero-Day That Allowed San…

Chrome

The Hacker News
The Hacker News

PoisonSeed Attack Turns Out to Be Not a FIDO Bypass After All

Cybersecurity firm Expel, in an update shared on July 25, 2025, said it's retracting its findings about a phishing attack that it said leveraged cross-device s…

The Hacker News
The Hacker News Vulnerabilities

Microsoft Releases Urgent Patch for SharePoint RCE Flaw Exploited in Ongoing Cyber Attacks

Microsoft on Sunday released security patches for an actively exploited security flaw in SharePoint and also disclosed details of another vulnerability that it…

Microsoft 365

The Hacker News
The Hacker News

EncryptHub Targets Web3 Developers Using Fake AI Platforms to Deploy Fickle Stealer Malware

The financially motivated threat actor known as EncryptHub (aka LARVA-208 and Water Gamayun) has been attributed to a new campaign that's targeting Web3 develo…

The Hacker News
The Hacker News Breaches & leaks

Malware Injected into 6 npm Packages After Maintainer Tokens Stolen in Phishing Attack

Cybersecurity researchers have alerted to a supply chain attack that has targeted popular npm packages via a phishing campaign designed to steal the project ma…

GitHub

The Hacker News
The Hacker News Breaches & leaks

Malware Injected into 5 npm Packages After Maintainer Tokens Stolen in Phishing Attack

Cybersecurity researchers have alerted to a supply chain attack that has targeted popular npm packages via a phishing campaign designed to steal the project ma…

GitHub

The Hacker News
The Hacker News Breaches & leaks

Malware Injected into 7 npm Packages After Maintainer Tokens Stolen in Phishing Attack

Cybersecurity researchers have alerted to a supply chain attack that has targeted popular npm packages via a phishing campaign designed to steal the project ma…

GitHub

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Cryptomining Meets AI: H2Miners Multi-Platform Assault Unveiled

Let's face it: threat actors are getting smarter, and malware isn't just for your typical Windows clickbait anymore. In recent years, the H2Miner botnet has go…

Linux Windows Docker

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

H2Miner Botnet Expands Threats to Linux, Windows, Containers

Let's face it: threat actors are getting smarter, and malware isn't just for your typical Windows clickbait anymore. In recent years, the H2Miner botnet has go…

Linux Windows Docker

The Hacker News
The Hacker News Vulnerabilities

Critical NVIDIA Container Toolkit Flaw Allows Privilege Escalation on AI Cloud Services

Cybersecurity researchers have disclosed a critical container escape vulnerability in the NVIDIA Container Toolkit that could pose a severe threat to managed A…

Docker

The Hacker News
The Hacker News Alerts

CERT-UA Discovers LAMEHUG Malware Linked to APT28, Using LLM for Phishing Campaign

The Computer Emergency Response Team of Ukraine (CERT-UA) has disclosed details of a phishing campaign that's designed to deliver a malware codenamed LAMEHUG."…

The Hacker News
The Hacker News Breaches & leaks

From Backup to Cyber Resilience: Why IT Leaders Must Rethink Backup in the Age of Ransomware

With IT outages and disruptions escalating, IT teams are shifting their focus beyond simply backing up data to maintaining operations during an incident. One o…

The Hacker News
The Hacker News

Hackers Use GitHub Repositories to Host Amadey Malware and Data Stealers, Bypassing Filters

Threat actors are leveraging public GitHub repositories to host malicious payloads and distribute them via Amadey as part of a campaign observed in April 2025.…

Cisco GitHub

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles

Rescuezilla 2.6.1: Your New Ally in Secure System Recovery

If you've worked with Clonezilla''and let's be honest, most sysadmins have''then you know its strengths. Reliable, fast, and no-nonsense disk imaging.

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities

Breaking Down CVE-2025-6558: Chromes Latest Actively Exploited 0-Day

Let's talk about CVE-2025-6558 ''the latest zero-day vulnerability in Google Chrome. If you're managing Linux systems or handling infosec at any level, you sho…

Linux Chrome

The Hacker News
The Hacker News Vulnerabilities

CTEM vs ASM vs Vulnerability Management: What Security Leaders Need to Know in 2025

The modern-day threat landscape requires enterprise security teams to think and act beyond traditional cybersecurity measures that are purely passive and react…