News

Cyber Security News
cyberpress.org > browser-in-the-browser-facebook-credential-theft

Hackers Use Browser-in-the-Browser Technique to Steal Facebook Login Credentials

2+ hour, 24+ min ago   (256+ words) Facebook's massive user base of over 3 billion active users makes it a prime target for sophisticated phishing attacks. Security researchers recently identified a significant surge in Facebook phishing scams during the second half of 2025, with attackers employing an advanced method…...

Cyber Security News
cyberpress.org > instagram-confirms-no-system-breach

Instagram Confirms No System Breach, Resolves External Party Password Reset Issue

19+ hour, 59+ min ago   (325+ words) Instagram has clarified that its systems were not breached following reports of unsolicited password reset emails sent to users. The company stated that the incidents were caused by an external party exploiting a now-patched vulnerability that allowed unauthorized password reset…...

Cyber Security News
cyberpress.org > google-integrates-gemini-into-gmail

Google Integrates Gemini into Gmail with New AI-Powered Features

21+ hour, 1+ min ago   (368+ words) Google is ushering Gmail into the artificial intelligence era with a suite of new Gemini-powered features designed to transform how users manage their inboxes. The search giant announced today that it's integrating advanced AI capabilities into its email platform, offering…...

Cyber Security News
cyberpress.org > carding-markets-28-ips-85-domains

New Study Uncovers Infrastructure Behind Carding Markets: 28 IPs, 85 Domains

1+ day, 8+ min ago   (314+ words) Cybersecurity researchers have identified 28 unique IP addresses and 85 domains hosting carding markets and forums, shedding light on the technical infrastructure enabling credit card fraud'operations worldwide. The research, conducted between July and December 2025, utilized advanced technical fingerprinting methods to track these…...

Cyber Press
cyberpress.org > smartertools-smartermail-vulnerability

SmarterTools SmarterMail Vulnerability Enables Remote Code Execution; PoC Released

4+ day, 1+ hour ago   (279+ words) A critical pre-authentication remote code execution vulnerability has been disclosed in SmarterTools SmarterMail, scoring a perfect 10.0 on the CVSS severity scale. The vulnerability poses a significant security risk to organizations that rely on SmarterMail for email and collaboration. What makes…...

Cyber Press
cyberpress.org > new-chatgpt-flaws

New ChatGPT Flaws Allow Attackers to Exfiltrate Data from Gmail, Outlook, and GitHub

4+ day, 2+ hour ago   (337+ words) Security researchers documented a sophisticated attack chain that transforms a single compromised chat session into a vector for data theft from email, cloud storage, code repositories, and connected user accounts. The vulnerabilities exploit ChatGPT's ability to interact with external services…...

Cyber Press
cyberpress.org > china-reportedly-hacked-email-systems

China Reportedly Hacked Email Systems Used by U.S. Congressional Staff

4+ day, 23+ hour ago   (326+ words) The intrusions, attributed to the notorious Salt Typhoon group, targeted email accounts of aides serving on committees responsible for overseeing China policy, foreign affairs, intelligence, and armed services operations. While the exact number of compromised accounts remains unclear, sources familiar…...

Cyber Press
cyberpress.org > microsoft-cancels-plans-to-impose-daily-bulk-email-limits-on-exchange-online

Microsoft Cancels Plans to Impose Daily Bulk Email Limits on Exchange Online

5+ day, 22+ hour ago   (247+ words) Microsoft has announced the indefinite cancellation of its Mailbox External Recipient Rate Limit feature for Exchange Online, reversing course on a policy intended to combat spam and unauthorized bulk email activity. The tech giant acknowledged that the rate limit, designed…...

Cyber Press
cyberpress.org > malicious-chrome-extension-exposed-for-stealing-chatgpt-and-deepseek-chats-from-900000-users

Malicious Chrome Extension Exposed for Stealing ChatGPT and DeepSeek Chats from 900,000 Users

6+ day, 2+ hour ago   (274+ words) The discovery, reported by OX Security on December 29, 2025, reveals a coordinated threat operation exploiting user trust in AI productivity tools. The extensions "Chat GPT for Chrome with GPT-5, Claude Sonnet & DeepSeek AI" (600,000+ installations) and "AI Sidebar with Deepseek, ChatGPT, Claude…...

Cyber Press
cyberpress.org > commodity-loader-attacks

Threat Actors Use Commodity Loader in Targeted Email Campaigns to Attack

6+ day, 18+ hour ago   (226+ words) Cyble Research and Intelligence Labs (CRIL) has uncovered a sophisticated malware campaign that leverages a commodity loader shared by multiple threat actors. The ongoing operation targets manufacturing and government organizations in Italy, Finland, and Saudi Arabia, with a primary goal…...