Category: eSecurity Planet

Starbucks HR Portal Breach Exposes Employee Information

A phishing attack on Starbucks’ HR portal exposed sensitive data for hundreds of employees. The post Starbucks HR Portal Breach Exposes Employee Information appeared first on eSecurity Planet. This article has been indexed from eSecurity Planet Read the original article:…

OT Security: The New Attack Surface of AI-Powered Robots

AI-powered humanoid robots are introducing a new cyber-physical attack surface that blends operational technology with enterprise IT. The post OT Security: The New Attack Surface of AI-Powered Robots appeared first on eSecurity Planet. This article has been indexed from eSecurity…

Active Directory Flaw Enables SYSTEM Privilege Escalation

An Active Directory flaw (CVE-2026-25177) could allow attackers to escalate privileges to SYSTEM level in affected environments. The post Active Directory Flaw Enables SYSTEM Privilege Escalation appeared first on eSecurity Planet. This article has been indexed from eSecurity Planet Read…

AI Agent Safety Checklist

This AI Agent Safety Checklist outlines key security, governance, and oversight controls organizations should review before deploying AI agents. The post AI Agent Safety Checklist appeared first on eSecurity Planet. This article has been indexed from eSecurity Planet Read the…

Iran-Linked Hacktivists Claim Wiper Attack on Stryker Systems

Iran-linked hacktivists claim responsibility for a cyberattack that disrupted global operations at medical technology company Stryker. The post Iran-Linked Hacktivists Claim Wiper Attack on Stryker Systems appeared first on eSecurity Planet. This article has been indexed from eSecurity Planet Read…

Microsoft SQL Server Vulnerability Enables Privilege Escalation

Microsoft patched CVE-2026-21262, a SQL Server flaw that could let attackers escalate privileges to sysadmin. The post Microsoft SQL Server Vulnerability Enables Privilege Escalation appeared first on eSecurity Planet. This article has been indexed from eSecurity Planet Read the original…

Microsoft .NET Vulnerability Enables Remote DoS Attacks

Microsoft patched a .NET flaw (CVE-2026-26127) that could let attackers remotely trigger DoS attacks. The post Microsoft .NET Vulnerability Enables Remote DoS Attacks appeared first on eSecurity Planet. This article has been indexed from eSecurity Planet Read the original article:…

Teams Social Engineering Campaign Drops A0Backdoor Malware

Attackers are using Microsoft Teams impersonation to deliver A0Backdoor malware. The post Teams Social Engineering Campaign Drops A0Backdoor Malware appeared first on eSecurity Planet. This article has been indexed from eSecurity Planet Read the original article: Teams Social Engineering Campaign…

Fake OpenClaw npm Package Installs GhostClaw Malware

A malicious npm package disguised as OpenClaw installs GhostClaw malware to steal developer credentials and sensitive data. The post Fake OpenClaw npm Package Installs GhostClaw Malware appeared first on eSecurity Planet. This article has been indexed from eSecurity Planet Read…

Fake Claude Code Install Pages Spread Infostealer Malware

Fake Claude Code install pages are spreading infostealer malware through malicious search ads. The post Fake Claude Code Install Pages Spread Infostealer Malware appeared first on eSecurity Planet. This article has been indexed from eSecurity Planet Read the original article:…

Malicious Chrome Extension Targets imToken Wallet Users

A fake Chrome extension impersonating imToken redirects users to phishing pages to steal crypto wallet keys. The post Malicious Chrome Extension Targets imToken Wallet Users appeared first on eSecurity Planet. This article has been indexed from eSecurity Planet Read the…

AVideo Zero-Click Flaw Lets Attackers Hijack Live Streams

An AVideo flaw allows unauthenticated attackers to execute commands and take over streaming servers. The post AVideo Zero-Click Flaw Lets Attackers Hijack Live Streams appeared first on eSecurity Planet. This article has been indexed from eSecurity Planet Read the original…

CleanMyMac Imposter Site Installs SHub Stealer on Macs

A fake CleanMyMac site tricks macOS users into installing SHub Stealer malware that steals credentials and crypto wallets. The post CleanMyMac Imposter Site Installs SHub Stealer on Macs appeared first on eSecurity Planet. This article has been indexed from eSecurity…

FBI Arrests Suspect in $46M U.S. Marshals Crypto Theft

The FBI arrested a suspect accused of stealing $46 million in cryptocurrency from U.S. Marshals Service holdings. The post FBI Arrests Suspect in $46M U.S. Marshals Crypto Theft appeared first on eSecurity Planet. This article has been indexed from eSecurity…

WordPress Plugin Flaw Lets Attackers Create Admin Accounts

A WordPress plugin flaw allows attackers to create administrator accounts and take over vulnerable sites. The post WordPress Plugin Flaw Lets Attackers Create Admin Accounts appeared first on eSecurity Planet. This article has been indexed from eSecurity Planet Read the…

FBI Investigates Suspicious Activity in Surveillance Platform

The FBI is investigating suspicious activity in systems used to manage surveillance and wiretap warrants. The post FBI Investigates Suspicious Activity in Surveillance Platform appeared first on eSecurity Planet. This article has been indexed from eSecurity Planet Read the original…

AWS-LC Flaws Could Bypass Certificate Verification

AWS disclosed vulnerabilities in its AWS-LC cryptographic library that could bypass certificate verification and expose timing weaknesses. The post AWS-LC Flaws Could Bypass Certificate Verification appeared first on eSecurity Planet. This article has been indexed from eSecurity Planet Read the…