Phishing campaign abuses Google Cloud Application to impersonate legitimate Google emails

1 month ago

Researchers uncovered a phishing campaign abusing Google Cloud Application Integration to send emails posing as legitimate Google messages. Check Point…

IBM warns of critical API Connect bug enabling remote access<gwmw style="display:none;"></gwmw>

1 month ago

IBM disclosed a critical API Connect flaw (CVE-2025-13915, CVSS 9.8) that allows remote access via an authentication bypass. IBM addressed…

Trust Wallet confirms second Shai-Hulud supply-chain attack, $8.5M in crypto stolen

1 month ago

Trust Wallet says a second Shai-Hulud supply-chain attack likely compromised its Chrome extension, leading to the theft of about $8.5M…

React2Shell under attack: RondoDox Botnet spreads miners and malware

1 month ago

RondoDox botnet exploits the critical React2Shell flaw (CVE-2025-55182) to infect vulnerable Next.js servers with malware and cryptominers. CloudSEK researchers warn that…

ESA disclosed a data breach, hackers breached external servers

1 month ago

ESA confirmed a data breach after a hacker offered to sell stolen data, confirming that external science servers were compromised.…

Singapore CSA warns of maximun severity SmarterMail RCE flaw

1 month ago

Singapore’s CSA warns of CVE-2025-52691, a critical SmarterMail flaw enabling unauthenticated remote code execution via arbitrary file upload. Singapore’s Cyber…

MongoBleed (CVE-2025-14847): the US, China, and the EU are among the top exploited GEOs<gwmw style="display:none;"></gwmw>

1 month ago

MongoBleed (CVE-2025-14847) lets attackers remotely leak memory from unpatched MongoDB servers using zlib compression, without authentication. A critical vulnerability, CVE-2025-14847…

Coupang announces $1.17B compensation plan for 33.7M data breach victims

1 month ago

Coupang will spend about $1.17B to compensate 33.7 million users affected by a data breach, providing purchase vouchers to those…

Mustang Panda deploys ToneShell via signed kernel-mode rootkit driver

1 month ago

China-linked APT Mustang Panda used a signed kernel-mode rootkit driver to load shellcode and deploy its ToneShell backdoor. China-linked APT…

Lithuanian suspect arrested over KMSAuto malware that infected 2.8M systems

1 month ago

A Lithuanian national was arrested for allegedly spreading KMSAuto malware that stole clipboard data and infected 2.8 million Windows and…

This website uses cookies.