ZCyberNews
中文

Articles

432 articles

Deepfake Voice Attacks Outpace Defenses, Bypass MFAHIGH
Industry News

Deepfake Voice Attacks Outpace Defenses, Bypass MFA

Adaptive Security finds 3 seconds of audio enough to clone a voice for fraud; deepfake calls tricked employees into wiring $243K in one case. No detection tool caught the attack.

2 min read
ESET: SMBs Gain Defensive Edge via Threat Research, MDRINFORMATIONAL
Industry News

ESET: SMBs Gain Defensive Edge via Threat Research, MDR

ESET Threat Research Director Jean-Ian Boutin explains how SMBs leverage MDR and threat intel to detect intrusions faster, citing 3.5-day median dwell time reduction.

3 min read
Fast16 Malware Resurfaces in Supply Chain Attacks Abusing TrustedHIGH
Malware

Fast16 Malware Resurfaces in Supply Chain Attacks Abusing Trusted

Fast16 malware resurfaces in new supply chain attacks, abusing remote monitoring tools and browser extensions to steal credentials. Campaign targets enterprise environments.

2 min readFast16
Firefox CVE-2026-6770 Patched After Tor User Fingerprinting RiskHIGH
Vulnerabilities

Firefox CVE-2026-6770 Patched After Tor User Fingerprinting Risk

CVE-2026-6770 in Firefox allowed fingerprinting of Tor users via a timing side-channel. Mozilla patched the flaw in Firefox 150 and Tor 15.0.10.

CVE-2026-6770
2 min read
FTC: Social Media Scams Cost Americans $2.1B in 2025HIGH
Industry News

FTC: Social Media Scams Cost Americans $2.1B in 2025

FTC reports Americans lost over $2.1 billion to social media scams in 2025 — a 10x increase since 2020. Investment and romance scams dominate losses.

2 min read
GlassWorm Malware Returns via 73 OpenVSX Sleeper ExtensionsHIGH
Malware

GlassWorm Malware Returns via 73 OpenVSX Sleeper Extensions

A new GlassWorm campaign deploys 73 sleeper extensions on OpenVSX that activate malicious behavior post-update, targeting VS Code users in dev environments.

2 min readGlassWorm
Mobile App Permissions Still Expose Users to Privacy RisksMEDIUM
Industry News

Mobile App Permissions Still Expose Users to Privacy Risks

ESET analysis shows 1 in 3 Android apps request unnecessary permissions — location, camera, microphone — enabling data harvesting and surveillance. Users should audit permissions.

2 min read
Mythos AI Finds Bugs Faster Than Teams Can PatchHIGH
AI Security

Mythos AI Finds Bugs Faster Than Teams Can Patch

Anthropic's Claude Mythos Preview identifies vulnerabilities at scale since April 7, but organizations lack the triage and patching capacity to keep pace, researchers warn.

2 min read
Silk Typhoon Hacker Extradited to US on Cyberespionage ChargesHIGH
Industry News

Silk Typhoon Hacker Extradited to US on Cyberespionage Charges

Chinese national extradited from Italy to US for alleged Silk Typhoon cyberespionage targeting US govt, defense contractors, and critical infrastructure.

2 min readSilk Typhoon
US Sanctions Cambodian Senator in Southeast Asia Cyberscam CrackdownHIGH
Industry News

US Sanctions Cambodian Senator in Southeast Asia Cyberscam Crackdown

U.S. Treasury sanctioned Cambodian Senator Ly Yong Phat over alleged ties to human trafficking and cyberscam compounds.

2 min readChinese Transnational Organized Crime
Vercel Breach via Context.ai OAuth Token TheftHIGH
Industry News

Vercel Breach via Context.ai OAuth Token Theft

Vercel disclosed a breach after stolen OAuth tokens from Context.ai enabled unauthorized access to internal systems via a connected app. No customer data exposed.

2 min read
Axios npm Supply Chain Attack Delivers Cross-Platform RATCRITICAL
Malware

Axios npm Supply Chain Attack Delivers Cross-Platform RAT

Elastic Security Labs details a supply chain compromise of the axios npm package that deployed a unified RAT across platforms, impacting an unknown number of downstream…

2 min read
← PrevPage 21 of 36Next →