“A single npm account (ehindero) mass-published more
Category Added in a WPeMatico Campaign
CISA Warns of Actively Exploited Joomla JCE Flaw Allowing PHP Code Execution
The vulnerability, tracked as CVE-2026-48907 (CVSS score: 10.0), is a case of improper access control that could facilitate arbitrary
Google Vertex AI SDK Flaw Let Attackers Hijack Model Uploads via Bucket Squatting
Palo Alto Networks Unit 42, which found and reported the bug through Google’s bug bounty program, calls the technique “Pickle in the Middle” and said it saw no exploitation in the wild.
ClickFix Campaigns Expand Malware Delivery With New Loaders and Fake Update Lures
Attacks involving BabaDeda Loader, observed in April 2026, have targeted education and financial organizations.
“Earlier BabaDeda activity was known for
New Rokarolla Android Malware Steals PINs, SMS Codes, and Crypto Wallet Funds
Together, they give an operator near-total control of an infected phone: it lifts lock-screen PINs, reads and sends SMS, rewrites the clipboard to redirect crypto payments, and switches off Google Play
Survey: 94% of Incidents Involve Anonymized Infrastructure. Teams Are Still Reactive
Yet despite this abundance of information, many organizations continue to face a fundamental challenge: sifting through the noise to understand who is behind an IP and
Attackers Exploit Three Fortinet FortiSandbox Flaws, One Patched Last Week
In a post shared on X, the company said it has observed exploitation of CVE-2026-39813, CVE-2026-39808, and CVE-2026-25089 over the past 24 hours.
CVE-2026-39813 (CVSS score: 9.1) refers to a path traversal vulnerability in FortiSandbox JRPC API that could
China-Linked SprySOCKS Backdoor Expands to Windows with Driver-Based Stealth
“The Windows variants discovered are internally marked as WIN_DRV and WIN_PLUS,” ESET said in a report shared with The Hacker News. “Both come with a hard-coded C&C [command-and-control] configuration and support communication over TCP, UDP,
Fake Microsoft Alerts Used to Deploy North Korean NarwhalRAT Malware
“The attack email contained a message impersonating an MS account security alert,” the Genians Security Center (GSC) said. “It was designed to create concern over possible
Cisco Releases Security Updates for Actively Exploited SD-WAN Manager Flaw
The vulnerability, tracked as CVE-2026-20262, carries a CVSS score of 6.5 out of 10.0.
“A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an authenticated, remote attacker to create a file or
