PromptArmor, an AI security firm, hid the instructions in content Rovo reads. It said an uploaded file was
New CSS Attacks Can Break Webmail Defenses to Steal Passwords and Tokens
Across attack chains spanning Outlook, Gmail, Fastmail, Proton Mail, Yahoo Mail, and AOL Mail, the techniques can capture passwords, take over third-party accounts, leak tokens, hijack trusted UI actions, and manipulate AI tools that read email.
PortSwigger researcher Gareth
Metabase Zero-Day Exploited in Wild Allows Admin Access Without Authentication
The vulnerability (CVSS score: 10.0), which does not carry a CVE identifier, allows an unauthenticated remote attacker to inject arbitrary SQL into the Metabase application database, enabling them to gain
N-able Issues N-central Hotfix 2 as Attackers Reach Managed Systems and Persist
“We are proactively expanding protections in response to ongoing monitoring of threat actors as they evolve their attack techniques,” the company said.
“This is not a duplicate of our
Progress Kemp LoadMaster Flaw Hits CISA KEV After 792 Reported Exploit Attempts
The vulnerability, tracked as CVE-2026-8037 (CVSS score: 9.6), is a command injection flaw that could be weaponized to achieve arbitrary
Metabase SQLi zero-day exploited in customer data-theft attacks
Unlimited Technology Systems breach impacts 3.8 million people
Nearly 800 Malicious npm Packages Deliver Cross-Platform RAT and Infostealer
“These packages appear to use AI slop squatted, or randomly generated typo-squatting package names, but all of them deliver a powerful RAT and infostealer payload,” OpenSourceMalware researcher Paul
ClickFix Attacks Deliver macOS Stealer That Can Drain Crypto Wallets
The macOS-focused infection chain is designed to deliver a shell script that profiles the host and then fetches a macOS malware payload that’s compatible with the computer’s CPU architecture.
“
UNC6671 Vishing Attacks Target Personal Phones to Steal SaaS Data
“UNC6671 continues to rely on voice phishing (vishing) to target enterprise employees, posing as IT help desk staff facilitating mandatory, urgent security migrations. Significantly, the threat actor often contacts employees via their
