Risk & Resilience

Ivanti EPMM CVE-2026-6973 Exploited In Limited Attacks Enables Admin Level Remote Code Execution

Ivanti warns of CVE-2026-6973 in EPMM being actively exploited in limited attacks, enabling admin authenticated remote code execution, alongside multiple patched vulnerabilities.

Linux Kernel Dirty Frag Vulnerability Enables Root Access Across Major Linux Distributions

Dirty Frag Linux kernel vulnerability enables local privilege escalation to root across major distributions including Ubuntu, RHEL, Fedora, and CentOS, with active exploitation risk.

Silver Fox Targets India And Russia With Phishing Campaign Delivering ABCDoor And ValleyRAT Malware

China linked group Silver Fox targets organizations in India and Russia using phishing emails with tax themed lures to distribute ValleyRAT and newly identified ABCDoor malware, according to Kaspersky analysis.

Critical cPanel Vulnerability Exploited To Target Government And MSP Networks Across Multiple Regions

A critical cPanel vulnerability CVE 2026 41940 is being actively exploited to target government, military, and MSP networks globally, enabling authentication bypass and remote control, with thousands of systems impacted.

Weaver E-cology Critical RCE Vulnerability CVE 2026 22679 Actively Exploited Via Debug API Endpoint

A critical Weaver E-cology vulnerability CVE 2026 22679 is being actively exploited, enabling unauthenticated remote code execution through debug API endpoints affecting enterprise systems globally.

AI Assisted Cyber Attacks Surge In 2026 As Threat Landscape Rapidly Evolves

AI assisted cyber attacks are rising sharply in 2026, lowering barriers for attackers, accelerating exploit timelines, and increasing phishing, malware, and supply chain threats globally.

Global Cybercrime Crackdown Leads To 276 Arrests And $701 Million Crypto Seizure Across Scam Networks

A global operation led by U.S., China, and UAE authorities dismantled nine crypto scam centers, arrested 276 suspects, and seized $701 million while exposing large scale cryptocurrency fraud and human trafficking linked cyber operations.

AccountDumpling Campaign Exploits Google AppSheet Netlify And Telegram To Compromise Facebook Accounts

A large scale phishing campaign dubbed AccountDumpling has compromised 30000 Facebook accounts by abusing Google AppSheet Netlify and Telegram for credential theft and monetization.

PwC And Google Cloud Launch AI Driven Managed Security Service For Enterprises

PwC partners with Google Cloud to introduce an AI powered managed security service using agentic workflows, targeting mid sized and smaller enterprises with unified detection and response capabilities.

LiteLLM CVE 2026 42208 Exploited Within 36 Hours Targeting AI Gateway Databases

A critical SQL injection flaw in LiteLLM tracked as CVE 2026 42208 was exploited within 36 hours of disclosure, exposing AI gateway credentials and database access risks.

Researchers Uncover 73 Fake VS Code Extensions Distributing GlassWorm V2 Malware

Security researchers identified 73 fake Microsoft VS Code extensions on Open VSX tied to GlassWorm v2 malware campaign targeting developers through supply chain attacks and sleeper packages.

Chinese Silk Typhoon Hacker Xu Zewei Sacked And Extradited To United States Over COVID Research Cyberattacks

Chinese national Xu Zewei linked to Silk Typhoon hacking group has been sacked and extradited from Italy to United States over cyberattacks targeting COVID research systems and Microsoft Exchange vulnerabilities.

Recent articles

spot_img