Cyber Security

Cyber Security
Cyber Security

Microsoft Teams Down Users Face Messaging Delays and Service Disruptions Worldwide

microsoft-teams-down-users-face-messaging-delays-and-service-disruptions-worldwide

In a major disruption to remote work and collaboration, Microsoft Teams experienced a significant outage on Friday, affecting thousands of users across multiple regions. Reports of messaging delays, failed message deliveries, and issues with other service functions began surging around 2:30 PM ET (7:30 PM GMT), bringing productivity to a halt for businesses and individuals […]

Cloud Atlas Hacker Group Exploiting Office Vulnerabilities to Execute Malicious Code

cloud-atlas-hacker-group-exploiting-office-vulnerabilities-to-execute-malicious-code

The Cloud Atlas advanced persistent threat group has continued its sophisticated campaign targeting organizations across Eastern Europe and Central Asia during the first half of 2025, leveraging outdated Microsoft Office vulnerabilities to deliver multiple backdoor implants. This campaign reveals a coordinated effort to establish persistent access and extract sensitive data from high-value targets. Cloud Atlas, […]

University of Sydney Hacked Students and Staff Data Exposed

university-of-sydney-hacked-students-and-staff-data-exposed

The University of Sydney has confirmed a significant data breach affecting thousands of current and former staff members, as well as students and alums. In a message to the university community, Vice-President (Operations) Nicole Gower revealed that suspicious activity was detected in an online IT code library last week. While this digital storage space was […]

New Udados Botnet Launches Massive HTTP Flood DDoS Attacks Targeting Tech Sector

new-udados-botnet-launches-massive-http-flood-ddos-attacks-targeting-tech-sector

A newly identified botnet malware family, dubbed “Udados,” has emerged as a significant threat to the Technology and Telecommunications sectors, orchestrating high-volume HTTP flood Distributed Denial-of-Service (DDoS) attacks. According to ANY.RUN sandbox analysis, the botnet leverages infected hosts to execute sustained denial-of-service campaigns designed to disrupt business continuity by overwhelming target servers with legitimate-looking traffic.​ […]

Hackers Exploiting RMM Tools LogMeIn and PDQ Connect to Deploy Malware as a Normal Program

hackers-exploiting-rmm-tools-logmein-and-pdq-connect-to-deploy-malware-as-a-normal-program

Cybercriminals are now exploiting remote monitoring and management tools to spread dangerous malware while avoiding detection by security systems. The attack campaign targets users who download what appears to be popular software, such as Notepad++, 7-Zip, or ChatGPT, from fake websites. Instead of getting the real program, victims unknowingly install LogMeIn Resolve or PDQ Connect, […]

New Wave of Steganography Attacks: Hackers HidingXWormin PNGs

new-wave-of-steganography-attacks:-hackers-hidingxwormin-pngs

ANY.RUN experts recently uncovered a new XWorm campaign that uses steganography to conceal malicious payloads inside seemingly harmless PNG images. What appears to be an ordinary graphic actually contains encrypted loaders that execute entirely in memory, allowing the malware to bypass most traditional detection methods and signature-based defenses.  Let’s break down how this attack works and what analysts and hunters should look […]

Apple Patches Multiple Critical Vulnerabilities in iOS 26.1 and iPadOS 26.1

apple-patches-multiple-critical-vulnerabilities-in-ios-261-and-ipados-26.1

Apple released iOS 26.1 and iPadOS 26.1, addressing multiple vulnerabilities that could lead to privacy breaches, app crashes, and potential data leaks for iPhone and iPad users. The update targets devices starting from the iPhone 11 series and various iPad models, including the iPad Pro (3rd generation 12.9-inch and later), iPad Pro 11-inch (1st generation […]

New TruffleNet BEC Campaign Leverages AWS SES Using Stolen Credentials to Compromise 800+ Hosts

new-trufflenet-bec-campaign-leverages-aws-ses-using-stolen-credentials-to-compromise-800+-hosts

Identity compromise has become one of the most significant threats facing cloud infrastructure, particularly when attackers gain access to legitimate credentials. These valid access keys enable adversaries to bypass traditional security defenses, creating opportunities for widespread exploitation. Amazon Web Services environments have witnessed a surge in such attacks, with the Simple Email Service emerging as […]

Hackers Can Manipulate Claude AI APIs with Indirect Prompts to Steal User Data

hackers-can-manipulate-claude-ai-apis-with-indirect-prompts-to-steal-user-data

Hackers can exploit Anthropic’s Claude AI to steal sensitive user data. By leveraging the model’s newly added network capabilities in its Code Interpreter tool, attackers can use indirect prompt injection to extract private information, such as chat histories, and upload it directly to their own accounts. This revelation, detailed in Rehberger’s October 2025 blog post, […]

Hackers Can Inject Malicious Code into Antivirus Processes to Create a Backdoor

hackers-can-inject-malicious-code-into-antivirus-processes-to-create-a-backdoor

A new technique enables attackers to exploit antivirus software by injecting harmful code directly into the antivirus processes. This approach makes it easier for them to evade detection and compromise the security that antivirus software is designed to provide. This method, detailed by cybersecurity researcher Two Seven One Three on X (@TwoSevenOneT), involves cloning protected […]