News

Cyber Security News
cyberpress.org > dell-bios-recover-passwords-spi-flash

Dell BIOS Flaw Lets Attackers Recover Passwords From SPI Flash

2+ day, 13+ hour ago  (401+ words) A newly disclosed critical flaw in how Dell stores BIOS administrator and user passwords allows full recovery of plaintext credentials from a flash dump in milliseconds. Tracked as CVE-2026-40639 (DSA-2026-197), the issue stems from a broken XOR encryption scheme rather…...

Symbols: edl,winre,ec,sep,mdr
Google News
cyberpress.org > trojan-visual-studio-supply-chain-attack

New Trojan Turns Visual Studio Projects Into a Software Supply Chain Attack Vector

2+ day, 14+ hour ago  (466+ words) A multi-stage Trojan is turning ordinary software development workflows into a supply chain attack vector by weaponizing Visual Studio project files. Documented by Doctor Web researchers, first detected in Q4 2025, and note that it has since undergone continuous upgrades, now combining…...

Symbols: rat,csn
Cyber Security News
cyberpress.org > 281-google-play-vpn-apps-exposed

281 Google Play VPN Apps Expose Sensitive Information Through Cleartext Data Transmission

3+ day, 6+ hour ago  (370+ words) A new disclosure of widespread security and privacy failures across popular Android VPN applications, revealing that dozens of apps transmit sensitive data in plaintext and fail to deliver the fundamental protections users expect. Researchers from the University of Michigan and…...

Symbols: fbi
Cyber Security News
cyberpress.org > openclaw-remote-access-tool

OpenClaw Vulnerabilities Let Attackers Turn WhatsApp Messages Into Host-Level Code Execution

3+ day, 1+ hour ago  (270+ words) Security researchers have disclosed three high-severity vulnerabilities in OpenClaw, the popular open-source AI coding assistant with over 381,000 GitHub stars, that allow attackers to achieve full remote code execution using nothing more than a cleverly worded WhatsApp message. The flaws bypass…...

Symbols: vbs,rce
Google News
cyberpress.org > u-boot-fit-signature-flaws

Multiple U-Boot FIT Signature Vulnerabilities Enable Code Execution and DoS Attacks

3+ day, 12+ hour ago  (543+ words) A newly disclosed six vulnerabilities in U-Boot, one of the most widely deployed bootloaders in embedded systems, routers, IoT devices, and Baseboard Management Controllers (BMCs) used in data center servers. The flaws reside in the FIT (Flattened Image Tree) Signature…...

Symbols: poc,cisa
Cyber Security News
cyberpress.org > ai-gateway-amazon-bedrock-cryptomining

AI Gateway Compromise Turns Amazon Bedrock Infrastructure Into Cryptomining Resource

3+ day, 11+ hour ago  (311+ words) A compromised AI gateway connected to Amazon Bedrock was found communicating with cryptomining infrastructure, exposing how generative AI infrastructure is emerging as a new frontier in the enterprise attack surface. This central role often grants them privileged IAM permissions, making…...

Symbols: aws
Cyber Security News
cyberpress.org > wireshark-4-6-7-fixes-12-security-flaws

Wireshark 4.6.7 Fixes 12 Security Flaws Causing Crashes and Infinite Loops

3+ day, 7+ hour ago  (459+ words) Wireshark has released version 4.6.7, addressing 12 security vulnerabilities that could lead to application crashes, information disclosure, and resource exhaustion via maliciously crafted network traffic or capture files. Because the tool processes untrusted packet data and capture files, flaws in its protocol…...

Symbols: cisa,kev,dos,rce
Cyber Security News
cyberpress.org > citrixbleed-2-bypasses-mfa

Hackers Abuse CitrixBleed 2 to Steal Session Tokens and Bypass MFA Protections

3+ day, 9+ hour ago  (378+ words) They progressed through privilege escalation, rogue administrator account creation, remote management tool deployment, and, in one confirmed case, the deployment of the DragonForce ransomware. The activity is assessed with high confidence to involve an Initial Access Broker, or possibly a…...

Symbols: rat,byovd,raas,mfa
Cyber Security News
cyberpress.org > ton-hosts-backdoor-c2

Hackers Turn TON Blockchain Into a Resilient C2 Directory for Node.js Backdoor

3+ day, 9+ hour ago  (386+ words) The attack uses malicious Windows shortcut files, PowerShell, a legitimate Node.js runtime, and the TON blockchain to maintain a flexible command-and-control (C2) system. The infection starts with spam emails carrying booking-related themes. Victims receive a Google Share link that redirects…...

Symbols: rat
Google News
cyberpress.org > odyssey-steals-mac-crypto-wallets

Odyssey Infostealer Targets macOS Keychain and Cryptocurrency Wallets in Global Attacks

3+ day, 11+ hour ago  (389+ words) A new wave of Odyssey infostealer activity is targeting macOS users across more than 100 countries, stealing browser credentials, cryptocurrency wallets, cloud configuration files, and messaging app data. Researchers warn that Odyssey is built to collect a broad range of high-value…...

Symbols: cex,seo