Tag: Cyber Threats

Metabase has released security updates after confirming active exploitation of a zero day vulnerability that allows attackers to gain administrator access without authentication.
Research presented at Black Hat USA 2026 demonstrates CSS based attack techniques affecting major webmail services, highlighting risks involving passwords, authentication tokens, and AI connected email workflows.

Weekly Cybersecurity Roundup Highlights Proxy Botnet Takedown, AI Threats, And Rising Malware Campaigns

This week's cybersecurity roundup covers the disruption of the NetNut proxy botnet, AI driven attack techniques, browser based ransomware, phishing campaigns, malware activity, and critical vulnerabilities affecting organizations worldwide.

AI Generated Browser Ransomware Exploits Chromium File System Access API On Windows And Android

Check Point Research has identified AI generated browser ransomware that uses Chromium File System Access API to encrypt files on Windows and Android without requiring a native payload or browser exploit.

Weekly Cybersecurity Recap Highlights Linux Kernel Flaw, AI Driven Malware, Turla Backdoor, And Infostealer Threats 

This week's cybersecurity roundup covers the DirtyClone Linux kernel vulnerability, AI focused malware techniques, Turla's STOCKSTAY backdoor, major malware disruptions, OpenAI updates, and emerging cyber threats.

NETS International Conducts Cybersecurity Awareness Sessions For Lucky Core Industries

NETS International recently conducted cybersecurity awareness sessions for Lucky Core Industries, helping employees strengthen cyber hygiene, improve threat identification skills, and enhance organizational cyber resilience.

INC Ransomware Emerges As Major RaaS Threat With More Than 830 Victims Since 2023

Cybersecurity researchers report that INC ransomware has grown into one of the most active ransomware as a service operations, claiming over 830 victims globally since 2023 and expanding its attacks across multiple industries.

DragonForce Hackers Abuse Microsoft Teams Infrastructure To Conceal Backdoor.Turn Command And Control Traffic

DragonForce ransomware operators have been linked to a new Go based remote access trojan called Backdoor.Turn that hides command and control communications through Microsoft Teams relay infrastructure, enabling long term stealthy access to victim networks.

CISA Adds Critical Joomla JCE Vulnerability To KEV Catalog Amid Active Exploitation Campaigns

CISA has added the critical Joomla JCE vulnerability CVE 2026 48907 to its Known Exploited Vulnerabilities catalog following reports of active exploitation, while researchers also uncover large scale attacks targeting WordPress websites through supply chain compromises and malicious plugins.

ClickFix Campaigns Expand Malware Delivery Through New Loaders And Fake Update Lures

Cybersecurity researchers have identified multiple ClickFix campaigns distributing malware loaders including BabaDeda Loader, Lorem Ipsum Loader, and Potemkin, highlighting evolving attack techniques that leverage social engineering, compromised websites, and fake software updates.

Chinese Hackers Exploited Google Workspace Rules To Steal Research And Defense Emails

Google uncovers a China linked cyber espionage campaign that abused Google Workspace rules to steal sensitive research and defense emails from organizations across United States and Canada.

China Linked SprySOCKS Backdoor Expands To Windows With Advanced Driver Based Stealth Features

Cybersecurity researchers uncover new Windows variants of China linked SprySOCKS malware featuring driver based stealth, TCP traffic diversion, and targeting organizations across multiple countries including Pakistan.

Palo Alto Networks Warns Of Active Exploitation Targeting PAN OS GlobalProtect VPN Vulnerability

Palo Alto Networks confirms active exploitation of PAN OS vulnerability CVE 2026 0257 affecting GlobalProtect VPN portals, urging customers to review logs and mitigate risks.

Google Identifies ShinyHunters Campaign Targeting Education Sector Through Oracle PeopleSoft Exploit

Google’s cybersecurity teams have identified an active cyber campaign linked to ShinyHunters targeting Oracle PeopleSoft systems, with higher education institutions among the most affected sectors.

Recent articles

spot_img