-
Security
/ 1 month agoCybercrime Groups Exploit Vishing and SSO in SaaS Attacks
cybersecurity researchers have issued a warning about two cybercrime groups conducting rapid, high-impact attacks that operate almost entirely within the confines...
-
Security
/ 1 month agoPhishing Campaign via Google AppSheet Hits 30,000 Facebook Accounts
Security researchers have uncovered a sophisticated phishing campaign that compromised approximately 30,000 Facebook accounts by using Google AppSheet as a relay...
-
Security
/ 1 month agoGoogle Fixes Gemini CLI Flaw Allowing Remote Code Execution
Google has patched a critical security vulnerability in its Gemini command line interface tool, a flaw that could have allowed attackers...
-
Security
/ 1 month agoLinux “Copy Fail” Bug Lets Local Users Gain Full Root Access
Cybersecurity researchers have publicly disclosed a high-severity local privilege escalation vulnerability in the Linux kernel. The flaw, which has been assigned...
-
Security
/ 1 month agoHackers Use GitHub to Lure Admins with Fake Tools
A sophisticated cyberattack campaign that spoofs legitimate administrative tools to target enterprise professionals has been uncovered by researchers. The operation, identified...
-
Security
/ 1 month agoPython Backdoor Framework Uses Tunneling Service to Steal Credentials
Cybersecurity researchers have identified a new Python-based backdoor framework, tracked internally as DEEP#DOOR, which is designed to establish persistent access to...
-
Security
/ 1 month agoMajor Security Roundup: SMS Blaster Busts, OpenEMR Flaws, 600K Roblox Accounts Hacked
A coordinated series of international police operations has resulted in the dismantling of multiple criminal networks using illegal SMS blasters, according...
-
Security
/ 1 month agoPyPI Package Hack Steals Credentials in Supply Chain Attack
A software supply chain attack has targeted users of the popular machine learning framework PyTorch Lightning, with threat actors pushing two...
-
Security
/ 1 month agoLiteLLM SQL Injection Exploit Active Within 36 Hours of Disclosure
A critical security vulnerability in the popular open source Python package LiteLLM has been exploited in live attacks within 36 hours...
-
Security
/ 1 month agoUS Agency Flags Actively Exploited ConnectWise and Windows Flaws
The United States cybersecurity and Infrastructure Security Agency (CISA) has added two security vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog....

