Progress patched four Telerik Fiddler Classic vulnerabilities, including a high-severity flaw that can enable local privilege escalation and unintended…
Tag: esecurityplanet
ASOS Confirms Cyber Incident After Unauthorized App Notifications
ASOS is investigating unauthorized app notifications and possible customer data exposure. Learn what is confirmed and why messaging systems need…
Fake AI Marketing Sites Put a Browser Inside Your Browser to Steal Logins
Fake AI marketing sites impersonating ChatGPT, Gemini, Claude and Muse are stealing ad-account credentials and MFA codes through live phishing flows.
The “Best” AI Model Is Getting Harder to Define
The best AI model for application security depends on vulnerability detection, accuracy, cost, human review, data handling, and deployment needs.
Critical Atlassian File Access Flaw Draws Attacks Across Eight Products
CVE-2026-21589 is being exploited after a public PoC, putting self-hosted Jira, Confluence, Bitbucket and other Atlassian products at risk.
Google Chrome Update Fixes 247 Security Flaws, Including 4 Critical Bugs
Google Chrome 155 fixes 247 security vulnerabilities, including four Critical use-after-free flaws. See what security teams should do now.
Midnight Blizzard Targets Hotel Wi-Fi: Malware and Phishing Put Travelers at Risk
Midnight Blizzard is abusing hotel Wi-Fi captive portals to deliver malware and steal credentials from travelers, putting corporate devices and accounts…
Texas AG Says Oracle Health’s 2025 Breach Affected 20M Individuals
A Texas AG filing says Oracle Health’s 2025 breach affected nearly 20 million people, while major questions about access and attribution remain.
Google’s October Android Update Patches 7 Critical Security Vulnerabilities
Google’s October Android security update patches seven critical vulnerabilities, including flaws that do not require user interaction.
