ZCyberNews
中文

Articles

432 articles

WhatsApp's End-to-End Encryption Claims Challenged as 'Major Consumer Fraud'MEDIUM
Industry News

WhatsApp's End-to-End Encryption Claims Challenged as 'Major Consumer Fraud'

Telegram founder Pavel Durov alleges WhatsApp's default end-to-end encryption is misleading, as unencrypted cloud backups can expose billions of user messages.

4 min read
Adobe Patches Critical Acrobat Reader Flaw Under Active ExploitationCRITICAL
Vulnerabilities

Adobe Patches Critical Acrobat Reader Flaw Under Active Exploitation

Adobe has released emergency updates for a critical vulnerability (CVE-2026-34621) in Acrobat Reader that is being actively exploited to execute arbitrary code.

CVE-2026-34621
3 min read
ClickFix Malware Campaign Evades macOS Defenses via Script EditorHIGH
Malware

ClickFix Malware Campaign Evades macOS Defenses via Script Editor

A ClickFix social engineering campaign bypasses macOS security warnings by using Script Editor to execute malicious commands, marking a significant evolution in Mac-targeting malware.

4 min readClickFix
Cloudflare Block Disrupts Docker Hub Access in Spain During Football MatchMEDIUM
Industry News

Cloudflare Block Disrupts Docker Hub Access in Spain During Football Match

A Cloudflare IP block intended to prevent illegal football streaming inadvertently blocked access to Docker Hub and other services in Spain, highlighting collateral damage from blunt security measures.

4 min read
Fake Claude AI Site Delivers PlugX Malware in Trojanized InstallerHIGH
Malware

Fake Claude AI Site Delivers PlugX Malware in Trojanized Installer

A sophisticated phishing campaign uses a counterfeit Claude AI website to distribute a trojanized installer, deploying the remote access trojan PlugX to establish persistent backdoor access.

4 min read
FINRA Launches Intelligence Fusion Center to Counter Financial Cyber ThreatsINFORMATIONAL
Industry News

FINRA Launches Intelligence Fusion Center to Counter Financial Cyber Threats

The Financial Industry Regulatory Authority has established a new intelligence hub to centralize analysis of cyber threats and fraud targeting broker-dealers and capital markets.

4 min read
Iranian Internet Outage Exceeds 1,000 Hours Amid State-Imposed CensorshipHIGH
Industry News

Iranian Internet Outage Exceeds 1,000 Hours Amid State-Imposed Censorship

A state-directed internet blackout in Iran has surpassed 1,000 cumulative hours, marking a significant escalation in digital censorship and control tactics.

3 min read
Juniper Patches Critical RCE Flaw in Junos OS, Dozens of Other VulnerabilitiesCRITICAL
Vulnerabilities

Juniper Patches Critical RCE Flaw in Junos OS, Dozens of Other Vulnerabilities

Juniper Networks has released patches for a critical, pre-authentication remote code execution vulnerability in Junos OS, alongside dozens of other security fixes.

CVE-2024-2973
3 min read
Metasploit Framework Expands with Cisco, osTicket Exploits and LDAP EnhancementsINFORMATIONAL
Tools & Techniques

Metasploit Framework Expands with Cisco, osTicket Exploits and LDAP Enhancements

The latest Metasploit Framework release introduces exploit modules for Cisco Catalyst SD-WAN and osTicket, alongside significant improvements to LDAP/ADCS data collection and Windows persistence techniques.

3 min read
OpenAI Removes ChatGPT Study Mode, Raising Security and Transparency ConcernsMEDIUM
AI Security

OpenAI Removes ChatGPT Study Mode, Raising Security and Transparency Concerns

OpenAI has removed the undocumented 'Study Mode' from ChatGPT, a feature that disabled web search and file uploads, highlighting concerns over silent feature changes and potential security implications for automated workflows.

4 min read
Orange Business Integrates AI into Enterprise Voice, Raises Security QuestionsMEDIUM
Industry News

Orange Business Integrates AI into Enterprise Voice, Raises Security Questions

Orange Business is embedding generative AI into its enterprise voice platforms, a move that expands the attack surface and introduces novel data security and privacy risks.

4 min read
GPT-5 Release: Security Implications for Enterprise DefendersHIGH
AI Security

GPT-5 Release: Security Implications for Enterprise Defenders

OpenAI's GPT-5 raises the bar for AI-assisted cyberattacks — spear-phishing at scale, automated exploit generation, and deepfake social engineering. Here's what security teams need to know and do.

3 min read
← PrevPage 36 of 36