LIVE Apple Plans Tighter macOS Full Disk Access Controls Over AI Agent Data Access LIVE Realtek Jungle SDK Exploit Attempts Deliver Cling Botnet With STUN-Based C2 LIVE Microsoft Exchange Flaw Lets Authenticated Attackers Read Other Users' Mailboxes LIVE MI5 Says China’s MSS Funded Research Involving 100+ U.K.-Linked Academics LIVE China-Aligned TA419 Targets U.S. AI Policy Experts With Microsoft AitM Phishing LIVE ShinyHunters Suspect Rey Reportedly Detained in Jordan, Helping FBI Identify Group Members LIVE Dell CSM Flaws Enable Unauthenticated Admin Access and Root on Kubernetes Nodes LIVE Antino Backdoor Uses Outlook and OneDrive for C2 in China-Nexus Espionage Campaign LIVE Apple Plans Tighter macOS Full Disk Access Controls Over AI Agent Data Access LIVE Realtek Jungle SDK Exploit Attempts Deliver Cling Botnet With STUN-Based C2 LIVE Microsoft Exchange Flaw Lets Authenticated Attackers Read Other Users' Mailboxes LIVE MI5 Says China’s MSS Funded Research Involving 100+ U.K.-Linked Academics LIVE China-Aligned TA419 Targets U.S. AI Policy Experts With Microsoft AitM Phishing LIVE ShinyHunters Suspect Rey Reportedly Detained in Jordan, Helping FBI Identify Group Members LIVE Dell CSM Flaws Enable Unauthenticated Admin Access and Root on Kubernetes Nodes LIVE Antino Backdoor Uses Outlook and OneDrive for C2 in China-Nexus Espionage Campaign

News

News

AI-Generated Exploit Scripts Target Siemens S7 PLCs in U.S. Critical Infrastructure

AI-Generated Exploit Scripts Target Siemens S7 PLCs in U.S. Critical Infrastructure

By Rahul Yadav · · 5 min read Read →
News

Suspected Russian Hackers Abuse Google OAuth and WhatsApp Linking to Hijack Accounts

Three suspected Russian cyber espionage clusters, UNC6293, UNC7005, and UNC5976, are targeting academics, defense organizations,

By Rahul Yadav · · 9 min read Read →
News

Rust Supply Chain Attack Puts Build-Time Malware in Crates with 245 Million Downloads

Malicious Rust crates targeted the software supply chain through a compromised maintainer account and a typosquatted dependency.

By Rahul Yadav · · 5 min read Read →
News

SilkParasite Espionage Campaign Targets Central Asian Governments with Five New RATs

A China-nexus cyber espionage campaign dubbed SilkParasite is targeting Central Asian governments with seven RAT families, including five newly documented

By Rahul Yadav · · 5 min read Read →
News

OpenAI Pauses Frontier RL Training as It Tightens Defenses Against Unsafe AI Behavior

OpenAI pauses frontier reinforcement learning training to strengthen AI security, monitoring and alignment after rogue-agent incidents and

By Rahul Yadav · · 5 min read Read →
News

Cloudflare Workers Spectre Attack Leaks JWT From Co-Located Worker at 12 Bits/Second

Researchers demonstrated a remote Spectre attack against Cloudflare Workers that leaked a JWT at up to 12 bits per second.

By Rahul Yadav · · 3 min read Read →
News

Ransom Busters Claims It Hacked Ransomware Servers, Asks Victims for Up to $60,000

A threat actor called Ransom Busters is targeting ransomware victims with offers to delete stolen data for $20,000 to $60,000. Researchers believe it may be a

By Rahul Yadav · · 3 min read Read →
News

Attackers Exploit MLflow SSRF Flaw to Steal Cloud Credentials and Secrets

Attackers are actively scanning and exploiting critical MLflow and FUXA vulnerabilities. MLflow flaw CVE-2026-64849 can expose cloud credentials, while FUX

By Rahul Yadav · · 3 min read Read →
News

Microsoft Copilot Personal Flaws Could Let One Click Exfiltrate Data From Connected Apps

Varonis researchers disclosed CoSnitch vulnerabilities in Microsoft Copilot Personal that could allow one click prompt execution, data exfiltra

By Rahul Yadav · · 4 min read Read →
News

CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE

CISA has added critical Ray vulnerability CVE-2025-62593 to its KEV catalog amid active exploitation. The flaw can enable remote code execution through DNS rebinding attacks.

By Rahul Yadav · · 3 min read Read →
News

SafePal Hardware Wallet Maker Says Flaw Exposed Data of Nearly 40,000 Customers

SafePal says an authorization flaw exposed names, emails, addresses, phone numbers and order details of 39,798 customers. Wallet credentials and financial data were not affected.

By Rahul Yadav · · 4 min read Read →
News

Suspected China-Nexus Actor Exploits VMware vCenter Flaw, Deploys Babuk-Derived Ransomware

Suspected China-Nexus Actor Exploits VMware vCenter Flaw, Deploys Babuk-Derived Ransomware

By Rahul Yadav · · 4 min read Read →