Check Point Research uncovers StopAndProtect operation using nearly 2,000 hacked WordPress websites for malware distribution, surveillance, and data theft.
Awan Distribution organized Reconnect Sophos Day in Karachi, featuring updates on Sophos cybersecurity and networking solutions, partner incentives, business opportunities, and sales enablement.
CISA has added a critical Ray vulnerability to its KEV catalog after active exploitation reports. The flaw could allow remote code execution through browser based DNS rebinding attacks.
Wiz has disclosed a GitHub Actions workflow injection flaw in a Snowflake public repository that could allow crafted GitHub issues to trigger command execution and expose internal Jira credentials.
A critical vulnerability in the Forminator WordPress plugin could allow unauthenticated attackers to upload malicious PHP files and execute remote code on vulnerable websites.
Fortinet researchers have identified the Evooo1Bot Linux botnet, which exploits multiple known vulnerabilities to compromise internet facing devices and convert them into SOCKS5 proxy nodes.
Researchers have linked active exploitation of VMware vCenter vulnerability CVE 2026 59310 to a suspected China nexus threat actor deploying backdoors, reverse SSH tools and Babuk derived ransomware.
CTM360 has uncovered a large scale recruitment phishing campaign using Browser In Browser credential traps, fake interview pages and live MFA relay attacks to target enterprise accounts.
TrendAI Saudi Arabia Managing Director Wasna Ben Gassem says AI adoption is advancing faster than enterprise security frameworks, highlighting the need for stronger governance and unified cybersecurity.
Security researchers have observed exploitation attempts targeting SAP Commerce Cloud vulnerability CVE 2026 58231 only days after SAP released a patch for the critical remote code execution flaw.
Kaspersky has identified a new CoolClient malware variant linked to Mustang Panda that deploys a signed Windows kernel rootkit to hide malicious activity and strengthen persistence on compromised systems.