F5 has released urgent security updates to address two critical vulnerabilities in NGINX Open Source that … F5 Fixes Two Critical NGINX Vulnerabilities With Potential Remote Code Execution RiskRead more
Month: June 2026
INC Ransomware Claims 830+ Victims, Emerges as One of 2026’s Most Active Threat Groups
Cybersecurity researchers have revealed how INC ransomware has rapidly evolved from a relatively unknown ransomware-as-a-service (RaaS) … INC Ransomware Claims 830+ Victims, Emerges as One of 2026’s Most Active Threat GroupsRead more
CISA Warns of Actively Exploited Joomla JCE Vulnerability as WordPress Attacks Hit 1M+ Sites
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical vulnerability affecting the Joomla … CISA Warns of Actively Exploited Joomla JCE Vulnerability as WordPress Attacks Hit 1M+ SitesRead more
Google Vertex AI SDK Flaw Allowed Attackers to Hijack AI Model Uploads
Security researchers have disclosed a serious vulnerability in Google’s Vertex AI SDK for Python that could … Google Vertex AI SDK Flaw Allowed Attackers to Hijack AI Model UploadsRead more
ClickFix Malware Campaigns Deliver BabaDeda, Lorem Ipsum, and Potemkin Loaders
Cybersecurity researchers have uncovered several active ClickFix campaigns distributing three sophisticated malware loaders: BabaDeda Loader, Lorem … ClickFix Malware Campaigns Deliver BabaDeda, Lorem Ipsum, and Potemkin LoadersRead more
SprySOCKS Expands Beyond Linux With New Windows Malware Variants
Cybersecurity researchers have uncovered two previously undocumented Windows versions of the SprySOCKS backdoor, a malware family … SprySOCKS Expands Beyond Linux With New Windows Malware VariantsRead more
New Rokarolla Android Banking Trojan Targets 217 Banking and Crypto Apps
Security researchers at Zimperium’s zLabs have uncovered a powerful new Android banking trojan called Rokarolla, capable … New Rokarolla Android Banking Trojan Targets 217 Banking and Crypto AppsRead more
North Korean APT37 Uses Fake Microsoft Security Alerts to Deploy NarwhalRAT Malware
Cybersecurity researchers have uncovered a new phishing campaign by the North Korean state-sponsored threat group ScarCruft … North Korean APT37 Uses Fake Microsoft Security Alerts to Deploy NarwhalRAT MalwareRead more
Palo Alto Networks Confirms Active Exploitation of PAN-OS VPN Vulnerability CVE-2026-0257
Palo Alto Networks has confirmed that threat actors are actively exploiting a recently disclosed authentication bypass … Palo Alto Networks Confirms Active Exploitation of PAN-OS VPN Vulnerability CVE-2026-0257Read more
WordPress Supply Chain Attack Hits PushEngage, OptinMonster, and TrustPulse Users
A large-scale supply chain attack has compromised WordPress websites using the popular marketing plugins PushEngage, OptinMonster, … WordPress Supply Chain Attack Hits PushEngage, OptinMonster, and TrustPulse UsersRead more
