CVE-2026-0257: Rapid7 Caught Attackers Abusing Forged VPN Cookies Against Multiple Customers

1 week ago

CVE-2026-0257 lets attackers forge Palo Alto GlobalProtect auth cookies and bypass VPN login. Exploitation confirmed since May 17. Palo Alto…

SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 99

1 week ago

Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware…

Security Affairs newsletter Round 579 by Pierluigi Paganini – INTERNATIONAL EDITION

1 week ago

A new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs…

ShinyHunters Leaks Charter Communications Data, Potentially Impacting 5 Million Customers

2 weeks ago

Cybercrime group ShinyHunters leaked data allegedly stolen from Charter Communications, exposing millions of customer records after a failed extortion attempt.…

Signal Phishing Campaign Targets Journalists and Activists to Steal Backup Recovery Keys

2 weeks ago

Attackers are texting Signal users posing as Support, asking for backup recovery keys. Once obtained, they can decrypt the entire…

Botnet of 17 Million Devices Dismantled in the Netherlands

2 weeks ago

Dutch authorities seized 200 servers running a 17-million-device botnet linked to proxy service Asocks. Dutch authorities have taken offline a…

Meet GREYVIBE, the Russia-Linked Hacking Group Using AI to Target Ukraine and Still Making Rookie Mistakes

2 weeks ago

GREYVIBE, a Russia-linked group active since 2025, targets Ukraine with AI-assisted malware and five attack chains. Researchers say it's part…

DIL Observatory: when the World Escalates, the Underground Responds

2 weeks ago

Digital Intelligence Lab (DIL) launches an observatory for reading cyber events as what they actually are: signals of a broader…

Microsoft Calls the Zero-Day Dumps Irresponsible. The Researcher Says Microsoft Started It.

2 weeks ago

A researcher dropped 6 Windows zero-days with no warning. Three are now exploited in the wild. Microsoft is angry. The…

BTMOB RAT Gives Criminals a Point-and-Click Kit to Take Over Your Android Phone

2 weeks ago

BTMOB sells Android full-device takeover as a kit, no coding needed. It steals data, records screens, and hands attackers remote…

This website uses cookies.