Install
Cyber Press offers a dedicated & fast Cyber Security News Coverage, so you can keep track of Activities & stay Sture.
- 1,948articles · 365d
- 3+ day agolatest article
- Dec 22, 2025earliest in window
- 1%with images
- 338avg words
- security 1,747
- cybersecurity 1,688
- cyber security news 1,448
- cyber security 1,241
- malware 1,212
- vulnerability 916
- technology 523
- artificial intelligence 522
- cybercrime 508
- windows 475
- ai 450
- vulnerabilities 448
- computer security 383
- software 335
- microsoft 329
- phishing 320
- network security 314
- linux 304
- data breach 236
- infosec 225
- Science & Technology 1,239
- Computers & Electronics 1,209
- Software 1,104
- Conflict, War & Peace 600
- Software Dev. 416
- Internet & Telecom 357
- Crime & Law 278
- News 225
- cyber security news
- cyber attacks
- computer security
- data breach
- cyber news
- cyber security news today
- cyber security updates
- cyber updates
- hacker news
- hacking news
- software vulnerability
- ransomware malware
- how to hack
- network security
- information security
- the hacker news
- top cybersecurity threats
- ⚡ thn weekly recap
Please confirm you are human
This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.
A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.
News
Sandworm Fake Job Interviews Push Trojanized WireGuard VPN to Infect IT Professionals
1+ mon, 1+ day ago (448+ words) Sandworm-linked threat actors are using fake job interviews to trick IT professionals into installing a trojanized WireGuard VPN client. Ukraine’s CERT-UA attributes the activity to UAC-0145, a subcluster of UAC-0002, also known as Sandworm, APT44, and Seashell Blizzard. The campaign has…...
New TELESHIM Malware Uses Telegram Bots to Backdoor Middle East Government Systems
1+ mon, 3+ week ago (345+ words) In July 2026, researchers observed post-compromise activity linked with moderate-to-high confidence to an East Asia-based threat actor. The group has not yet been tied to a known APT, but its operational timing, infrastructure evidence, and system locale indicators support the assessment....
Hackers Abuse CitrixBleed 2 to Steal Session Tokens and Bypass MFA Protections
2+ mon, 3+ day ago (378+ words) They progressed through privilege escalation, rogue administrator account creation, remote management tool deployment, and, in one confirmed case, the deployment of the DragonForce ransomware. The activity is assessed with high confidence to involve an Initial Access Broker, or possibly a…...
Microsoft Warns GigaWiper Merges Crucio and FlockWiper Code Into Destructive Backdoor
2+ mon, 3+ day ago (394+ words) Microsoft has warned of a new destructive malware platform called GigaWiper, a Golang-based backdoor designed to give attackers persistent access, remote control, data collection, and several options for destroying Windows systems. Researchers found both standalone wiper samples and larger backdoor…...
Fake Google and Cloudflare Verification Pages Spread Multiple Malware Families
2+ mon, 1+ week ago (531+ words) A sprawling ClickFix campaign that abuses fake Google and Cloudflare verification pages to trick users into infecting their own machines. Documented by Malwarebytes, the operation delivers a wide range of payloads including HijackLoader, StealC, Remus, Amatera Stealer, CastleLoader, NetSupport, and…...
New SharkLoader Malware Targets Diplomatic and Government Entities Across Multiple Countries
2+ mon, 2+ week ago (316+ words) The malware functions as a highly evasive loader explicitly designed to deploy Cobalt Strike Beacons onto victim networks. Victimology reveals a broad geographic footprint, with confirmed infections spanning Taiwan, Hong Kong, Lebanon, Syria, Colombia, and Serbia. Due to the wide…...
FishMonger Uses TCP, UDP, and WebSocket C2 Channels in SprySOCKS Windows Attacks
2+ mon, 3+ week ago (296+ words) Cybersecurity researchers at ESET have uncovered a major shift in the tactics of FishMonger, a Chinese cyberespionage group linked to the contractor I-SOON. The threat actors have developed two previously undocumented Windows versions of SprySOCKS, a backdoor previously thought to…...
Compromised WordPress Site Uses Traffic Direction System to Target Windows Users With GULoader
2+ mon, 3+ week ago (465+ words) A compromised WordPress website used a traffic filtering system and blockchain-hosted payload delivery to push a ClickFix lure at Windows visitors, leading to an attempted GULoader infection that was stopped by endpoint protection in less than 300300 milliseconds. The intrusion was…...
APT28 Weaponizes Outlook Zero-Click Flaw to Steal Net-NTLMv2 Hashes From NATO Targets
3+ mon, 1+ day ago (407+ words) Russian state-sponsored threat actor APT28, also known as Fancy Bear or Forest Blizzard, has aggressively shifted its cyber espionage tactics to focus on zero-click vulnerabilities and edge infrastructure. Recent threat intelligence reveals that the group, publicly attributed to the GRU’s Unit…...
Hackers Abuse Google Sheets Tabs to Control 91 Victims in SHEETCREEP Campaign
3+ mon, 1+ day ago (406+ words) A sophisticated cyber espionage campaign tracked as SHEETCREEP is actively turning Google Sheets into a covert command-and-control (C2) center. Originally spotted earlier this year, this newly evolved variant uses diplomatic phishing lures to deploy a C# remote access trojan (RAT). Security…...