Install
Researcher Reverse Engineered 0-Day Used to Disable CrowdStrike EDR CyberSecurityNews Cyber Security News is a Dedicated News Platform For Cyber News, Cyber Attack News, Hacking News & Vulnerability Analysis.
- 394articles · 30d
- 11+ hour agolatest article
- Aug 15, 2026earliest in window
- 0%with images
- 377avg words
- security 364
- cybersecurity 314
- malware 241
- cyber security news 232
- vulnerability 191
- artificial intelligence 169
- cyber security 158
- technology 154
- ai 131
- cybercrime 131
- windows 110
- vulnerabilities 100
- software 86
- microsoft 83
- linux 81
- cloud security 76
- network security 66
- coding 64
- phishing 64
- development 62
- Software 258
- Science & Technology 256
- Computers & Electronics 230
- Conflict, War & Peace 112
- News 74
- Crime & Law 61
- Internet & Telecom 56
- Software Dev. 49
Please confirm you are human
This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.
A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.
News
Hackers Use Passkey-Themed Phishing to Hijack Microsoft 365 Accounts and Steal Cloud Data
4+ day, 1+ hour ago (707+ words) Hackers are using passkey-themed phishing to take control of Microsoft 365 accounts and collect cloud data. It can defeat MFA protections. The campaign starts with calls and texts to employees. Attackers pose as IT support, claim a passkey, MFA, or single…...
New N0va Phishkit Targets North America and EU: A Growing Identity Risk for SOCs
4+ day, 21+ hour ago (850+ words) What makes N0va especially relevant for SOC leaders is how it spreads the attack across different layers. Legitimate authentication, trusted brand lures, compromised websites, and cloud infrastructure can leave security teams with only part of the picture, making it easier to…...
BigBear 2.0 Evilginx2 Phishing Campaign Bypasses Microsoft 365 MFA With Session Cookie Theft
6+ day, 5+ hour ago (662+ words) BigBear 2.0 is a phishing operation designed to steal proof that a user has already passed multi-factor authentication. It targets Microsoft 365 accounts through convincing sign-in links, then takes over the logged-in browser session rather than attempting to break the authentication factor....
The Gentlemen Ransomware Hackers Disable EDR and Backups Before Encrypting Networks in Under 24 Hours
1+ week, 4+ day ago (614+ words) The Gentlemen ransomware operation is moving from access to full network encryption at striking speed. In some intrusions, attackers disabled defenses and recovery services before deploying ransomware in less than 24 hours across enterprises. The group runs as a ransomware-as-a-service operation,…...
WhatsApp Video Call Flaw Lets Anyone Bypass Your Android Lock Screen and View Your Photos
1+ week, 4+ day ago (319+ words) The issue was uncovered by security researcher Jose Rodriguez, known for a string of past lock screen bypass discoveries on both Android and iOS, and has already been reported to Meta and Google. As of now, no patch has been…...
Hackers Target US and EU Firms With Microsoft 365 Session Hijacking and RMM Abuse
1+ week, 4+ day ago (229+ words) A wave of cyberattacks across the US and Europe in August exploited the trust businesses place in everyday tools, turning Microsoft 365 logins, remote-management software, and routine business documents into entry points for attackers. Research from ANY.RUN, highlighted in their…...
Hackers Target AWS Root Accounts at 150+ Organizations in Password-Spraying Campaign
1+ week, 6+ day ago (490+ words) Datadog Security Research observed a password-spraying campaign targeting AWS root accounts at more than 150 organizations between July 24 and August 23, 2026, with repeated failed console login attempts against highly privileged identities. The AWS root user is the original identity created when an…...
EvilTokens Doesn’t Just Steal Microsoft Sessions—Its AI Tells Attackers Who to Scam Next
2+ week, 6+ day ago (675+ words) EvilTokens is pushing phishing beyond the moment a victim clicks a link. The service steals Microsoft 365 session access, then examines the compromised mailbox to help criminals choose the contacts, payments, and conversations most likely to produce fraud. Unlike a conventional…...
Hackers Poison Google and Bing Results to Deliver Cloaked Banking Phishing Pages
3+ week, 18+ min ago (671+ words) Bank customers searching for a login page can now be led into a trap before they receive a suspicious email or text message. Criminals are manipulating Google and Bing results so that fraudulent banking pages appear where people expect to…...
Hackers Impersonate ReliaQuest Security Staff to Steal SSO Credentials and MFA Access
3+ week, 40+ min ago (509+ words) ReliaQuest has disclosed a social engineering attack in which threat actors impersonated members of its security team to lure employees to a fraudulent single sign-on page. The incident briefly exposed one employee identity, but ReliaQuest said its layered controls prevented…...