A critical privilege-escalation flaw in cPanel & WHM has been disclosed that could allow authenticated hosting users to execute arbitrary SQL commands…
Category: Cyber Security News
Midnight Blizzard Hijacks Hotel Wi-Fi to Infect Travelers and Steal Cloud Credentials
Travelers using hotel Wi-Fi are facing a new threat linked to Midnight Blizzard, a Russia-linked threat group known for targeted credential theft. The…
A Malicious GitHub Issue Could Turn Google’s AI Agent Against Its Own CI/CD Pipeline
A first practical, real-world case of agent-to-agent exploitation inside a production multi-agent system, a novel attack class that turns one AI agent…
Chinese Military Researchers Use AI Distillation to Train Drone and Battlefield Systems
Chinese military-linked researchers are studying ways to turn the outputs of advanced Western AI systems into smaller, cheaper models for drones,…
BINDCLOAK Steals Windows User and Process Tokens to Run Malware With Higher Privileges
A newly uncovered Windows backdoor is giving an East Asia-linked espionage operation a quiet way to deepen control inside targeted networks. Named…
Apache NiFi Vulnerabilities Enable Authorization Bypass Attacks
Apache NiFi users should upgrade to version 2.11.0 after the project disclosed four security vulnerabilities affecting the NiFi Web API and Parameter…
Fake AI Tool Campaign Turns Developer Interest Into Enterprise Initial Access
A new malware campaign is turning interest in artificial intelligence tools into a route for enterprise intrusion. Attackers are cloning trusted GitHub…
North Korean Hackers Are Hiding Malware Servers Inside Empty Crypto Transfers
North Korean-linked attackers are using a new way to hide the servers that control malware. The method places a command server address inside an empty…
Check Point Authentication Bypass Flaw Enables Full Compromise of Security Management System
Check Point has released security updates for a high-severity authentication-bypass vulnerability (CVE-2026-18574) that could allow attackers to…
Telegram App Reportedly Vanished from Apple’s App Store Worldwide
Telegram Messenger briefly disappeared from Apple’s App Store across multiple countries late Monday, sparking a wave of confusion and speculation on…
Malware Can Steal Your Google Synced Passkey Without Asking for Your Password or Fingerprint
New research reveals that malware already sitting on a compromised Windows PC can hijack Google’s synced passkeys and take over accounts without ever…
DNA Test Software Vulnerability Allows Attackers to Alter Analysis Data
Thermo Fisher Scientific has disclosed a high-severity security flaw affecting several of its Applied Biosystems Human Identification (HID) software…
Public PoC Released for Critical Rails Active Storage RCE Vulnerability
A critical vulnerability in Ruby on Rails has raised new concerns about cloud data breaches, particularly for companies that host customer platforms in…
TP-Link TL-WR940N Vulnerability Enables Remote Code Execution Attacks
TP-Link has issued a security advisory regarding a high-severity vulnerability affecting its TL-WR940N V6 wireless router. This vulnerability, tracked as…
Hugging Face Diffusers Vulnerabilities Enable Remote Code Execution Through Malicious AI Models
A set of high-severity vulnerabilities in Hugging Face’s diffusers library that allow a malicious model repository to silently execute arbitrary code on…
Android RAT Survives Reboots Using Watchdog Services and Boot Receivers
Android users are facing a new remote-access threat that hides behind a fake emergency alert application. The malware, called Octagon, poses as Bahrain’s…
Hackers Exploit VeloCloud Orchestrator Command Injection Vulnerability in the Wild
Security researchers have issued a warning about a critical command injection vulnerability that is being actively exploited in on-premises VeloCloud…
ModernStealer Threat Actor Linked to Government and Defense Data-Leak Claims
ModernStealer is the name behind underground posts claiming to offer military, government, nuclear, and aerospace material. The posts appeared on dark web…
XCSSET v40 Abuses Chrome DevTools Protocol to Steal Cookies and Run Commands
XCSSET has returned with a way to target macOS developers. The latest version, v40, hides inside poisoned Xcode projects and can turn a local build into a…
Internet-Facing SonicWall SMA Appliances Face Zero-Click Root Compromise
Internet-facing SonicWall Secure Mobile Access, or SMA, appliances face a serious threat after attackers turned two flaws into a route to full VPN-gateway…
