Notepad++ fixed updater bugs that allowed malicious update hijacking

3 days ago

Notepad++ addressed an updater vulnerability that allows attackers hijack update traffic due to weak file authentication. Notepad++ addressed a flaw…

Elastic detects stealthy NANOREMOTE malware using Google Drive as C2

3 days ago

Elastic found a new Windows backdoor, NANOREMOTE, similar to FINALDRAFT/REF7707, using the Google Drive API for C2. Elastic Security Labs…

U.S. CISA adds an OSGeo GeoServer flaw to its Known Exploited Vulnerabilities catalog

3 days ago

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds an OSGeo GeoServer flaw to its Known Exploited Vulnerabilities catalog. The U.S.…

Critical Gogs zero-day under attack, 700 servers hacked

4 days ago

Hackers exploited an unpatched Gogs zero-day, allowing remote code execution and compromising around 700 Internet-facing servers. Gogs is a self-hosted…

GeminiJack zero-click flaw in Gemini Enterprise allowed corporate data exfiltration

4 days ago

Google fixed GeminiJack, a zero-click Gemini Enterprise flaw that could leak corporate data via crafted emails, invites, or documents, Noma…

Google fixed a new actively exploited Chrome zero-day

4 days ago

Google addressed three vulnerabilities in the Chrome browser, including a high-severity bug already exploited in the wild. Google released security…

Pro-Russia Hacktivist Support: Ukrainian Faces US Charges<gwmw style="display:none;"></gwmw>

5 days ago

Ukrainian Victoria Dubranova, 33, faces US charges for aiding pro-Russia hacktivist groups CARR and NoName057(16) in global cyberattacks. A Ukrainian…

Fortinet fixed two critical authentication-bypass vulnerabilities

5 days ago

Fortinet patched 18 flaws, including two authentication-bypass bugs affecting FortiOS, FortiWeb, FortiProxy, and FortiSwitchManager with FortiCloud SSO enabled. Fortinet addressed…

New EtherRAT backdoor surfaces in React2Shell attacks tied to North Korea

5 days ago

NK-linked hackers are likely exploiting the React2Shell flaw to deploy a newly discovered remote access trojan, dubbed EtherRAT. North Korea–linked…

U.S. CISA adds Microsoft Windows and WinRAR flaws to its Known Exploited Vulnerabilities catalog

5 days ago

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Microsoft Windows and WinRAR flaws to its Known Exploited Vulnerabilities catalog. The…

This website uses cookies.