Ravie LakshmananJul 14, 2026Enterprise Security / Vulnerability SAP has rolled out updates to address multiple vulnerabilities as part of its […]
Category: Security
Researchers Say Claude for Chrome Flaw Lets Rogue Extensions Trigger Gmail Reads
Any other browser extension that can run a script on claude.ai can still trigger Claude for Chrome tasks aimed at […]
Experts get Google, Microsoft to pull trusted ModHeader with 1.6 million installs after finding it could harvest all kinds of data
(Image credit: Shutterstock) Stripe OLT found ModHeader v7.0.18 carried a hidden spyware SDK, exfiltrating visited domains daily to a Chinese‑owned […]
LabubaRAT Masquerades as NVIDIA Software to Control Windows Hosts
Cybersecurity researchers have flagged a previously undocumented Rust-based remote access trojan (RAT) codenamed LabubaRAT that masquerades as NVIDIA software to […]
‘A single entry point can rapidly expand to greater enterprise impacts’: Microsoft introduces changes to tackle ShinyHunters
(Image credit: gguy / Shutterstock) ShinyHunters abused OAuth trust in Salesforce by tricking users and later compromising SaaS integrations, stealing […]
US and security allies warn Russian attacks on critical infrastructure are ramping up against ‘poorly configured and vulnerable networking devices worldwide’
(Image credit: Getty Images) NSA, FBI, CISA, and 15 allied agencies warn Russia’s FSB Center 16 is exploiting weak/default credentials […]
This new macOS infostealer poses as an Apple crash reporting tool to try and steal all your valuable data
(Image credit: Herry Sucahya on Unsplash) Jamf researchers uncover “CrashStealer,” a notarized macOS infostealer disguised as Apple’s CrashReporter Distributed via […]
RabbitMQ Flaws Could Leak OAuth Secrets and Expose Cross-Tenant Queue Metadata
Ravie LakshmananJul 14, 2026Vulnerability / Network Security Cybersecurity researchers have disclosed details of two access control-related flaws impacting the RabbitMQ […]
11 Old Microsoft-Signed Linux UEFI Shims Could Let Attackers Bypass Secure Boot
Cybersecurity researchers have discovered 11 old, Microsoft-signed, Unified Extensible Firmware Interface (UEFI) applications that could be abused to bypass Secure […]
Study of 85 Crypto Wallet Extensions Finds Address Leaks and Cross-Site Tracking Risks
Researchers at KU Leuven tested 85 of the most popular crypto wallets that run as browser extensions and found that […]
