Hackers abused Cisco SD-WAN zero-day since 2023 to gain full admin control

1 month ago

Cisco SD-WAN vulnerability CVE-2026-20127 has been exploited since 2023 to gain unauthenticated admin access. A critical Cisco SD-WAN vulnerability, tracked…

Google GTIG disrupted China-linked APT UNC2814 halting attacks on 53 orgs in 42 countries<gwmw style="display:none;"></gwmw>

1 month ago

Google and partners disrupted UNC2814, a suspected China-linked group that hacked 53 organizations across 42 countries. Google, with industry partners,…

Untrusted repositories turn Claude code into an attack vector

1 month ago

Flaws in Anthropic’s Claude Code could allow remote code execution and theft of API keys when users open untrusted repositories.…

Critical Zyxel router flaw exposed devices to remote attacks

1 month ago

Zyxel fixed a critical flaw in multiple routers that lets unauthenticated attackers remotely execute commands on vulnerable devices. Zyxel addressed…

ShinyHunters cyberattack on CarGurus impacts 12.4 Million users

1 month ago

ShinyHunters leaked data from 12.4M CarGurus accounts, exposing personal information from the U.S.-based auto research and shopping platform. The ShinyHunters…

Former U.S. Defense contractor executive sentenced for selling zero-day exploits to Russian broker Operation Zero

1 month ago

A former employee at U.S. defense contractor L3Harris got over 7 years in prison for selling eight zero-days to a…

U.S. CISA adds a flaw in Soliton Systems K.K FileZen to its Known Exploited Vulnerabilities catalog

1 month ago

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds a flaw in Soliton Systems K.K FileZen to its Known Exploited…

Lazarus APT group deployed Medusa Ransomware against Middle East target<gwmw style="display:none;"></gwmw>

1 month ago

North Korea’s Lazarus Group used Medusa ransomware in an attack on an unnamed Middle East organization, researchers report. The North…

SolarWinds patches four critical Serv-U flaws enabling root access

1 month ago

SolarWinds addressed four critical Serv-U vulnerabilities that could let attackers gain root access to unpatched servers. SolarWinds released updates fixing…

VMware Aria Operations flaws could enable remote attacks

1 month ago

Broadcom patched multiple VMware Aria Operations flaws, including high-severity issues that could enable remote code execution. Broadcom has released security…

This website uses cookies.