Category: eSecurity Planet

Fake Clawdbot VS Code Extension Deploys ScreenConnect RAT

A fake Clawdbot VS Code extension silently deployed a ScreenConnect RAT through a trusted plugin. The post Fake Clawdbot VS Code Extension Deploys ScreenConnect RAT  appeared first on eSecurity Planet. This article has been indexed from eSecurity Planet Read the…

Notepad++ Update Servers Hijacked in Targeted Supply Chain Attack

Attackers hijacked Notepad++ update servers to selectively deliver trojanized installers through a trusted update channel. The post Notepad++ Update Servers Hijacked in Targeted Supply Chain Attack appeared first on eSecurity Planet. This article has been indexed from eSecurity Planet Read…

Iconics SCADA Vulnerability Can Render Systems Unbootable

Palo Alto Networks researchers identified an Iconics SCADA flaw that can render industrial systems unbootable. The post Iconics SCADA Vulnerability Can Render Systems Unbootable appeared first on eSecurity Planet. This article has been indexed from eSecurity Planet Read the original…

Chrome Ad Blocker Caught Hijacking Amazon Affiliate Links

A Chrome extension posing as an Amazon ad blocker was found secretly hijacking affiliate links to redirect commissions to its developer. The post Chrome Ad Blocker Caught Hijacking Amazon Affiliate Links appeared first on eSecurity Planet. This article has been…

Why Container Security Remains a Challenge for Developers

A BellSoft survey shows container security incidents are common due to reactive practices and complexity. The post Why Container Security Remains a Challenge for Developers appeared first on eSecurity Planet. This article has been indexed from eSecurity Planet Read the…

MongoDB Ransomware Is Still Actively Hitting Exposed Databases

MongoDB ransomware remains an active threat, fueled by exposed databases and insecure deployment practices rather than advanced exploits. The post MongoDB Ransomware Is Still Actively Hitting Exposed Databases appeared first on eSecurity Planet. This article has been indexed from eSecurity…

Google Disrupts Major Residential Proxy Network IPIDEA

Google disrupted the IPIDEA network, a major residential proxy service used to hide cybercriminal activity. The post Google Disrupts Major Residential Proxy Network IPIDEA appeared first on eSecurity Planet. This article has been indexed from eSecurity Planet Read the original…

Top 7 Threat Intelligence Platforms & Software

Threat intelligence platforms help analyze and share cyber threat data. Discover top TIPs , their features, use cases, and comparisons. The post Top 7 Threat Intelligence Platforms & Software appeared first on eSecurity Planet. This article has been indexed from…

Cal.com Access Control Flaws Expose Millions of Bookings

Researchers found access control flaws in Cal.com that could enable account takeover and expose sensitive booking data across organizations. The post Cal.com Access Control Flaws Expose Millions of Bookings appeared first on eSecurity Planet. This article has been indexed from…

OpenSSL Vulnerabilities Cause Risk of Remote Code Execution

OpenSSL patched 12 flaws found by AISLE, including a high-severity bug that could enable remote code execution. The post OpenSSL Vulnerabilities Cause Risk of Remote Code Execution appeared first on eSecurity Planet. This article has been indexed from eSecurity Planet…

Fortinet Confirms CVE-2026-24858 SSO Flaw Under Active Attack

Fortinet says attackers are actively exploiting CVE-2026-24858 to gain administrative access via FortiCloud SSO. The post Fortinet Confirms CVE-2026-24858 SSO Flaw Under Active Attack appeared first on eSecurity Planet. This article has been indexed from eSecurity Planet Read the original…

CVE-2025-56005: Python PLY Flaw Enables Remote Code Execution

CVE-2025-56005 allows remote code execution in Python PLY via unsafe pickle deserialization during startup. The post CVE-2025-56005: Python PLY Flaw Enables Remote Code Execution appeared first on eSecurity Planet. This article has been indexed from eSecurity Planet Read the original…

React Server Components Flaws Enable DoS Attacks

High-severity flaws in React Server Components enable unauthenticated denial-of-service attacks that can disrupt application availability. The post React Server Components Flaws Enable DoS Attacks appeared first on eSecurity Planet. This article has been indexed from eSecurity Planet Read the original…

LayerX Finds Malicious ChatGPT Extensions Hijack User Accounts

LayerX found malicious ChatGPT extensions hijacking user sessions to steal sensitive AI data. The post LayerX Finds Malicious ChatGPT Extensions Hijack User Accounts appeared first on eSecurity Planet. This article has been indexed from eSecurity Planet Read the original article:…