Latest Articles

GeoServer SQL Injection Vulnerability Lets Unauthenticated Attackers Execute Remote Code

A newly disclosed SQL injection vulnerability in GeoServer could allow unauthenticated attackers to access backend PostgreSQL databases and, in high-risk configurations, execute operating-system commands on...

Weekly Cybersecurity Bulletin — Top 50 Cybersecurity Stories of the Week

Welcome to this edition of the CyberPress weekly cybersecurity newsletter — your cybersecurity bulletin covering the 50 most important stories from August 10 to 14, 2026, organized...

ExfilSquad Hackers Leak 382GB of Microsoft D365 Data From 13 Victims

A new data-extortion group known as ExfilSquad has leaked 382.64GB of data allegedly stolen from 13 organizations using Microsoft Dynamics 365 CRM and ERP environments....

New MessiahGPT BlackHat AI Tool Helps Hackers Create Ransomware and Phishing Attacks

A newly identified MessiahGPT is a criminal AI service marketed on BreachForums as an unrestricted platform for generating ransomware, phishing kits, stealers, crypters, and rootkits....

HoneyMyte CoolClient Rootkit Hooks Windows Nsiproxy to Conceal C2 Addresses

The HoneyMyte APT group, also known as Mustang Panda, has upgraded its CoolClient backdoor with a kernel-mode rootkit that hides command-and-control (C2) infrastructure on compromised...

Signed ClickOnce Installer Uses Google Workspace Decoy to Deploy Credential Stealers and RAT

A targeted fake-job campaign compromised a cryptocurrency organization after an employee was approached through LinkedIn while changing jobs. The attacker posed as a recruiter for...

Hackers Exploit Attempts Target Critical SAP Commerce Cloud RCE Flaw

Threat actors have begun actively probing for a maximum-severity vulnerability in SAP Commerce Cloud only three days after security updates were released, signaling an urgent...

ChainDrop npm Worm Hijacks GitHub Actions OIDC to Poison 444 Packages With Valid SLSA Provenance

A new npm supply-chain campaign, tracked as ChainDrop and also called Mini Shai-Hulud, shows how attackers can turn trusted developer tools into a worm delivery...

Cyber Attack News

Threats

New C++ Abyssos RAT Gives Attackers Remote Shell, VNC and File-System Control

Security researchers have identified a new modular remote access trojan (RAT) named Abyssos, a C++ malware family that gives attackers broad control over infected Windows systems. Zscaler ThreatLabz first observed...

Extension Confusion Lets Attackers Hijack Trusted Names Across VS Code Registries

A coordinated campaign used 77 counterfeit VS Code extensions to collect developer and CI environment data through Open VSX. The packages copied trusted extension names, namespaces, and descriptions, but...

Vulnerabilities