New Windows Admin Protection Vulnerabilities Discovered by Google Researcher

A Google researcher has identified vulnerabilities in Windows' new Administrator Protection feature, potentially allowing unauthorized admin access.
Ciberseguridad, vulnerabilidades y privacidad

A Google researcher has identified vulnerabilities in Windows' new Administrator Protection feature, potentially allowing unauthorized admin access.

The Pwn2Own Automotive 2026 competition has uncovered 76 unique zero-day vulnerabilities across various automotive systems, resulting in over $1 million in payouts to ethical hackers.

The Cybersecurity and Infrastructure Security Agency (CISA) has confirmed it will skip the upcoming RSA Conference, a decision linked to recent leadership changes and internal reviews.

A recent cyber attack attributed to the Russian hacking group Sandworm involved the deployment of a new wiper malware, DynoWiper, against Poland's energy infrastructure. The attack, which occurred in late December 2025, was ultimately unsuccessful.

A sophisticated phishing campaign has been identified, targeting users in Russia with ransomware and a remote access trojan known as Amnesia RAT. The attack employs social engineering tactics and multiple cloud services to distribute malicious payloads.

Google security leaders discuss the evolving landscape of cyber threats driven by AI, highlighting the potential for automated cyberattacks and the implications for organizations.

Microsoft has issued a warning regarding a sophisticated adversary-in-the-middle (AitM) phishing and business email compromise (BEC) campaign that is affecting organizations within the energy industry.

Criminals are increasingly leveraging sophisticated voice-phishing kits available on dark web platforms, facilitating social engineering scams targeting major identity providers.

VoidLink, a newly identified Linux malware, has been largely generated by artificial intelligence, posing a significant threat to cloud infrastructures.

Oleg Evgenievich Nefedov, the alleged leader of the Black Basta ransomware group, has been placed on the EU's Most Wanted list and INTERPOL's Red Notice.