Metabase has released security updates after confirming active exploitation of a zero day vulnerability that allows attackers to gain administrator access without authentication.
Research presented at Black Hat USA 2026 demonstrates CSS based attack techniques affecting major webmail services, highlighting risks involving passwords, authentication tokens, and AI connected email workflows.
Kaspersky researchers have uncovered the OkoBot malware framework, which injects phishing pages into Ledger and Trezor desktop applications to steal cryptocurrency wallet recovery phrases from Windows users.
Researchers have uncovered LabubaRAT, a Rust based remote access trojan disguised as NVIDIA software that enables attackers to control Windows systems through multiple communication channels.
Cybersecurity researchers uncover new Windows variants of China linked SprySOCKS malware featuring driver based stealth, TCP traffic diversion, and targeting organizations across multiple countries including Pakistan.
Researchers have identified Lotus Wiper, a destructive malware targeting Venezuela’s energy sector, capable of wiping systems, deleting recovery mechanisms, and disabling infrastructure through multi stage batch scripts and disk overwriting techniques.