Tag: cybersecurity

A new report by Citizen Lab exposes how law enforcement agencies worldwide utilize the Webloc platform to monitor 500 million devices through harvested advertising data.
A critical Marimo RCE flaw CVE-2026-39987 was exploited within hours of disclosure, enabling unauthenticated shell access and rapid credential theft activity.

China Linked TA416 Targets European Governments Using PlugX And OAuth Phishing Campaigns

China-linked cyber espionage group TA416 targets European and Middle Eastern government entities using PlugX malware, OAuth phishing, and evolving attack chains.

Apple Expands iOS 18.7.7 Update To Protect Users From DarkSword Exploit

Apple extends iOS 18.7.7 and iPadOS 18.7.7 updates to more devices to block DarkSword exploit, addressing critical vulnerabilities in older iOS versions.

Tech6 Solutions Achieves Dell Technologies Platinum Partner Status Strengthening Enterprise Capabilities

Tech6 Solutions attains Dell Technologies Platinum Partner status, enhancing its ability to deliver advanced enterprise solutions in infrastructure, cloud, storage, and cybersecurity.

LangChain And LangGraph Vulnerabilities Expose Sensitive Data In Widely Used AI Frameworks

Security researchers reveal critical vulnerabilities in LangChain and LangGraph that could expose files, secrets, and databases, raising concerns for enterprise AI deployments.

Google Advances Quantum Computing Timeline To 2029 Raising Urgency For Post Quantum Security

Google has accelerated its quantum computing timeline to 2029, urging faster adoption of post quantum cryptography as threats to current encryption standards grow.

Magento PolyShell Flaw Allows Unauthenticated Uploads, Remote Code Execution, And Account Takeover

A critical Magento vulnerability named PolyShell exposes stores to unauthenticated file uploads, remote code execution, and account takeover risks, with active exploitation now observed.

Trivy Supply Chain Attack Spurs Self Propagating CanisterWorm Across Npm Ecosystem

A supply chain attack linked to Trivy has led to the spread of CanisterWorm malware across dozens of npm packages, exploiting tokens and decentralized infrastructure.

Apple Fixes WebKit Vulnerability Allowing Same Origin Policy Bypass Across Devices

Apple patches WebKit vulnerability CVE 2026 20643 affecting iOS, iPadOS, and macOS, addressing same origin policy bypass risks through background security improvements.

Interlock Ransomware Exploits Cisco FMC Zero Day CVE 2026 20131 For Root Access

Interlock ransomware targets Cisco FMC zero day vulnerability CVE 2026 20131, enabling remote root access and highlighting rising risks in firewall security.

AI Security Flaws Discovered In Amazon Bedrock LangSmith And SGLang Raise Data Protection Concerns

Researchers have identified security vulnerabilities in Amazon Bedrock, LangSmith, and SGLang that could enable data exfiltration, account takeover, and remote code execution in AI environments.

Awan Distribution Hosts TrendMicro NDR Partner Enablement Session In Karachi

Awan Distribution conducted a TrendMicro NDR partner enablement session in Karachi, focusing on network detection and response, licensing, and strengthening cybersecurity partnerships.

When Machines Read the Internet: What Security Champions Need to Know About Prompt Injection

As enterprises deploy AI agents that read and act on information from internal systems and the internet, prompt injection is emerging as a new cybersecurity risk that can manipulate machine reasoning, expose sensitive data, and influence automated workflows.

Recent articles

spot_img