Tag: EN

Microsoft Condemns “Uncoordinated” Zero Day Disclosures

Microsoft warned the disclosure of several unpatched vulnerabilities without notice has put “customers at unnecessary risk” This article has been indexed from www.infosecurity-magazine.com Read the original article: Microsoft Condemns “Uncoordinated” Zero Day Disclosures

A Fake UK Visa Site Left 100,000 Passports Wide Open

A third-party UK visa site exposed passports and selfies on a public AWS server. It’s not official GOV.UK and affected at least 100,000 documents. UK Visa Portal is not run by the British government. It’s a third-party service, apparently operated…

Your Windows PC has a security deadline in June 2026

Windows is replacing old Secure Boot certificates, and some older PCs could miss future security protections if the update fails. This article has been indexed from Malwarebytes Read the original article: Your Windows PC has a security deadline in June…

Gitea Vulnerability Exposed 30,000 Deployments to Attacks

The security flaw allowed attackers to pull private container images, exposing source code, credentials, and infrastructure. The post Gitea Vulnerability Exposed 30,000 Deployments to Attacks appeared first on SecurityWeek. This article has been indexed from SecurityWeek Read the original article:…

VaultJacking Attack Exposes Google Password Vaults via Single PIN

A newly disclosed phishing technique dubbed “VaultJacking” is raising serious concerns across the cybersecurity community after researchers demonstrated how a single captured Google Password Manager (GPM) PIN can expose an entire user credential vault. The attack shows that even passkeys…

AI-Generated npm Malware Leaks Hacker’s Private GitHub Token

A newly discovered malicious npm package is drawing attention across the cybersecurity community after inadvertently exposing its own operator’s private GitHub token. Identified by OX Security researchers, the package, named mouse5212-super-formatter, operates as an infostealer that silently exfiltrates sensitive files from…

Critical Notepad++ Flaw Could Enable Remote Code Execution Attacks

Notepad++ has released version 8.9.6.1 to address multiple security vulnerabilities, including critical flaws that could allow arbitrary code execution under specific conditions. The update, published on May 26, 2026, patches three vulnerabilities tracked as CVE-2026-48770, CVE-2026-48778, and CVE-2026-48800. These issues…