(Image credit: Pixabay/Tumisu) Huntress flags phishing emails spoofing Bank of America, pushing victims into different infection chains on Windows vs. […]
Category: Security
Paperclip AI Flaws Let Attackers Run Host Commands via Malicious Agent Imports
Two security flaws in Paperclip could let attackers execute commands on a network server or a developer’s computer. Paperclip is […]
Veeam, Terraform MCP, Django Patch Critical Flaws, Led by CVSS 10.0 Cross-Tenant Bug
HashiCorp, Veeam, and the Django Software Foundation have patched 11 vulnerabilities across Terraform MCP Server, Veeam Service Provider Console, and […]
TP-Link router owners update now — 15 flaws patched to stop hackers hijacking your devices
(Image credit: Shutterstock) Forescout’s Vedere Labs found 15 flaws in TP‑Link Omada business networking gear, exploitable for RCE when chained […]
Trojanized npm Packages Employ NullReceiver Tactic to Decode C2 IP from Blockchain
Ravie LakshmananAug 05, 2026Cyber Espionage / Threat Intelligence Cybersecurity researchers have flagged an evolution of the EtherHiding blockchain-based command-and-control (C2) […]
Microsoft 365 users hit by phishing scheme posing as RingCentral emails
(Image credit: Shutterstock) ZeroBEC observes Greatness PhaaS evolving to bypass MFA and phish Microsoft 365, iCloud, Yahoo, and Google Workspace […]
New OVSwrap Linux Kernel Flaw Lets Local Users Gain Root via Open vSwitch
A memory corruption flaw in the Linux kernel’s Open vSwitch datapath gives ordinary local users a path to root on […]
Kali365 Weaponizes Microsoft Authentication Against US Companies: New Enterprise Risk
Kali365 is turning a legitimate Microsoft login into a gateway to corporate data. The phishing kit targets US organizations with […]
New ChainDrop worm poisons over 1,300 npm packages, Keyv and Cacheable among those hit
(Image credit: Getty Images) Aikido researchers uncovers ChainDrop, a Shai‑Hulud variant infecting 1,300+ npm packages with an infostealer Attackers compromised […]
Critical Gitea Flaw Let Unauthenticated Attackers Read Server Files via Org-Mode Markup
Swati KhandelwalAug 05, 2026Vulnerability / DevOps An unauthenticated attacker can read any file the service account can access on Gitea, […]
