Hackers target Microsoft 365 accounts with 81 million login attempts
Ousaban Banking Trojan Targets Iberian Bank Users with Fake PDF Lures
It opens with a phishing PDF disguised as a corrupted file, checks that the visitor is really in Spain or Portugal, and hides its real payload inside an image.
The goal is the usual one: steal banking logins and take
Adobe Patches 7 CVSS 10.0 Flaws in ColdFusion and Campaign Classic
The ColdFusion updates “resolves critical and important vulnerabilities that could lead to arbitrary code execution, privilege escalation, arbitrary file system read, and security feature bypass,” Adobe said in an alert released Tuesday.
The vulnerabilities are listed
Critical Cursor Flaws Could Let Prompt Injection Escape Sandbox and Run Commands
Cato AI Labs found the pair and named them DuneSlide. They are tracked as CVE-2026-50548 and CVE-2026-50549, both rated 9.8 out of 10 (or 9.3
Turning Indicators into Intelligence in OpenCTI with Criminal IP
Progress Kemp LoadMaster Pre-Auth RCE Flaw Faces Active Exploitation Attempts
The Canadian cybersecurity company said it identified exploitation attempts targeting CVE-2026-8037 (CVSS score: 9.6), an operating system (OS) command injection flaw that could be exploited to achieve
AI-Generated Browser Ransomware Abuses Chromium API on Windows and Android
“This is the first documented case where a frontier AI model
