Skip to content

Cybersecurity News Everyday

Stay Ahead of Cyber Threats – Daily Security Insights, Powered by AI

    • Cyber Attack & Data Breach
    • Daily Recap
    • Disclaimer
    • Hacked: Web Defacement
    • My Bookmarks
    • Security Report
    • User Bookmark Dashboard
    • Web Statistics
    • YouTube Overview
    • Welcome!
    • Threat Research
    • Security News
    • Ransom Monitor
    • Interesting Stuff

Tag: MACOS

Cyber Security News

iTerm2 Patches Critical Security Flaw Exposing User Input and Output

January 4, 2025September 21, 2025 Cyware

Summary: A critical security vulnerability (CVE-2025-22275) has been identified in iTerm2, a terminal emulator for macOS, allowing unauthorized access to sensitive user data due to improper logging during SSH sessions. Users are urged to update to version 3.5.11 to mitigate risks associated with thi…

Read More
Cyber Security News

SysBumps Attack Breaks macOS Kernel Address Space Layout Randomization for Apple Silicon

January 4, 2025September 21, 2025 Cyware

Summary: Researchers from Korea University have introduced “SysBumps,” a groundbreaking attack that successfully breaks Kernel Address Space Layout Randomization (KASLR) on macOS systems using Apple Silicon. This vulnerability exposes critical kernel memory addresses, posing significant risks to mac…

Read More
Threat Research

2023 Top Routinely Exploited Vulnerabilities

January 4, 2025October 13, 2025 CISA

This article outlines critical vulnerabilities affecting various software products, including Citrix, Cisco, Fortinet, and Microsoft. Threat actors are exploiting these vulnerabilities, such as CVE-2023-3519 and CVE-2023-34362, to gain unauthorized access and …

Read More
Threat Research

Weaponizing OAST: How Malicious Packages Exploit npm, PyPI, and RubyGems for Data Exfiltration and Recon

January 4, 2025October 15, 2025 admin

Socket researchers reveal the misuse of Out-of-Band Application Security Testing (OAST) techniques by threat actors to exfiltrate sensitive data across npm, PyPI, and RubyGems ecosystems. These malicious packages leverage OAST services to perform stealthy data…

Read More
Cyber Security News

FireScam Android Malware Packs Infostealer, Spyware Capabilities

January 3, 2025September 21, 2025 SecurityWeek

Summary: A new Android malware named FireScam has been identified as an information stealer and spyware, capable of harvesting sensitive information from various applications. It is distributed through a phishing website disguised as the legitimate ‘Telegram Premium’ application, targeting devices r…

Read More
Threat Research

Glutton: A New Zero-Detection PHP Backdoor from Winnti Targets Cybercrimals

January 2, 2025October 15, 2025 Securonix

XLab’s Cyber Threat Insight and Analysis System detected a sophisticated cyber threat known as Glutton, which utilizes an ELF-based Winnti backdoor and modular PHP payloads to execute stealthy attacks. This backdoor targets both traditional victims and cybercr…

Read More
Threat Research

North Korean Hackers Adopt Infostealer Spreading Tactics in Latest Campaign

January 2, 2025October 17, 2025 admin

North Korean threat actors have adopted advanced malware distribution techniques similar to those in Clickfix campaigns, using social engineering to target victims through fake recruitment processes. Their operations have led to significant cryptocurrency thef…

Read More
Interesting Stuff

Vulnerabilities and Malware in macOS Systems

January 2, 2025September 21, 2025 iStuff

In an increasingly connected digital era, macOS has become an enticing target for cybercriminals. From exploiting vulnerabilities that allow malicious applications to access sensitive data without user consent to sophisticated malware attacks targeting cryptocurrency assets, these threats underscore…

Read More
Threat Research

From Mandates to Assurance: How Managed SIEM Helps Decode Compliance Across the Globe

January 1, 2025October 16, 2025 Huntress

In 2024, cybercriminals remained relentless, prompting analysts to enhance defenses and provide vital insights. Key events included critical vulnerabilities in ScreenConnect, the emergence of new ransomware variants, and targeted attacks on human rights activi…

Read More
Security Report

RedCanary Threat Detection Report for 2024

December 24, 2024October 14, 2025 ReportMonitor

Annual cybersecurity reports from major vendors analyze threat trends, techniques, and statistics based on extensive telemetry data. They highlight ongoing threats like ransomware precursors, identity attacks, and cloud vulnerabilities, providing actionable insights for defense. #Lockbit #Mimikatz

Read More
Threat Research

Interview with Pryx Part 2: Diving Deeper into Server-Side Stealers & Other Interesting Chit-chats (Video Included)

December 22, 2024October 13, 2025 admin

The article discusses an interview with a threat actor named Pryx, who explains the workings of server-side stealers, their methodologies for breaching companies, and clarifies misconceptions about being part of a ransomware group. Pryx emphasizes the innovati…

Read More
Threat Research

NotLockBit: A Deep Dive Into the New Ransomware Threat | Qualys Security Blog

December 20, 2024October 15, 2025 CTI

Summary : NotLockBit is an advanced ransomware family targeting both macOS and Windows systems, utilizing sophisticated techniques for file encryption and data exfiltration. Its ability to mimic the behavior of existing ransomware like LockBit poses a signific…

Read More
Threat Research

LDAP Enumeration: Unveiling the Double-Edged Sword of Active Directory

December 18, 2024October 14, 2025 Unit42

Using real-world examples and offering plenty of pragmatic tips, learn how to protect your directory services from LDAP-based attacks.
The post LDAP Enumeration: Unveiling the Double-Edged Sword of Active Directory appeared first on Unit 42….

Read More
Uncovering Apple Vulnerabilities: diskarbitrationd and storagekitd Audit Part 2
Threat Research

Uncovering Apple Vulnerabilities: diskarbitrationd and storagekitd Audit Part 2

December 12, 2024October 17, 2025 Kandji.io

Kandji’s Threat Research team has discovered a critical vulnerability (CVE-2024-40855) in Apple’s macOS diskarbitrationd, allowing attackers to escape the sandbox and bypass TCC by exploiting directory traversal. Apple has been notified, and the vulnerabilitie…

Read More
Cyber Security News

Researcher Details a Critical TCC Bypass Flaw in macOS and iOS

December 11, 2024September 22, 2025 Cyware

### #TCCBypass #AppleSecurityFlaw #DataPrivacyThreats Summary: A newly identified vulnerability in Apple’s Transparency, Consent, and Control (TCC) framework, designated as CVE-2024-44131, allows malicious applications to bypass user consent and access sensitive data on both macOS and iOS systems. T…

Read More

Posts pagination

Previous 1 … 52 53 54 … 71 Next

What are you looking for ?

  • 🖥️ [ D A S H B O A R D ]
  • 🕵️‍♂️ Threat Research
  • 📰 Security News
  • 🚨 Attack & Data Breach
  • 🛑 Ransomware Monitor
  • 💀 Hacked! Web Defacement
  • ✨ Interesting Stuff
  • 📺 Youtube Overview
  • 🔍 Google Cybersecurity
  • 📢 Telegram Notification
  • 📰 News Daily Recap
  • 📰 Security Report
  • X / T W I T T E R
  • B L U E S K Y
  • L I N K E D . I N
  • T H R E A D S
  • T E L E G R A M
  • F A C E B O O K

Website Disclaimer

Proudly powered by WordPress | Theme: Fairy Dark by Candid Themes.