New AITM phishing wave hijacks TikTok Business accounts

4 weeks ago

A new AITM phishing campaign targets TikTok Business accounts to hijack them for malvertising, continuing tactics seen in earlier Google-themed…

CISA and BSI warn orgs of critical PTC Windchill and FlexPLM flaw

4 weeks ago

CISA warns of a critical flaw in PTC Windchill and FlexPLM (CVE-2026-4681), with no patch yet and potential for imminent…

U.S. CISA adds an Aquasecurity Trivy flaw to its Known Exploited Vulnerabilities catalog<gwmw style="display: none; background-color: transparent;"></gwmw>

4 weeks ago

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds an Aquasecurity Trivy flaw to its Known Exploited Vulnerabilities catalog. The…

China-linked Red Menshen APT deploys stealthy BPFDoor implants in telecom networks

4 weeks ago

China-linked Red Menshen APT group used stealthy BPFDoor implants in telecom networks to spy on government targets. Rapid7 Labs uncovered…

U.S. CISA adds a Langflow flaw to its Known Exploited Vulnerabilities catalog

4 weeks ago

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds a flaw in Langflow to its Known Exploited Vulnerabilities catalog. The…

Coruna exploit reveals evolution of Triangulation iOS exploitation framework

4 weeks ago

Kaspersky found Coruna iOS exploits reuse updated code from the 2023 Operation Triangulation attacks, suggesting a possible link. Kaspersky researchers…

Researchers uncover WebRTC skimmer bypassing traditional defenses

4 weeks ago

Researchers found a new skimmer using WebRTC to steal and send payment data, bypassing traditional security controls. Sansec researchers discovered a…

Russian authorities arrest alleged LeakBase admin behind stolen data marketplace

4 weeks ago

Russian authorities arrested the alleged LeakBase admin for running a marketplace selling stolen data since 2021. Russian law enforcement has…

Russian national convicted for running botnet used in attacks on U.S. firms

4 weeks ago

A Russian hacker got 2 years in prison, $100K fine, and $1.6M judgment for running a botnet used in ransomware…

Patch now: TP-Link Archer NX routers vulnerable to firmware takeover

4 weeks ago

TP-Link patched a high severity flaw (CVE-2025-15517) in Archer NX routers that could let attackers bypass authentication and install malicious…

This website uses cookies.