“The sites are well-designed and often look like legitimate project portals at a glance, sometimes referencing
Hackers Spied on a Stock Exchange Executive’s Outlook Mailbox for Five Months
Symantec and Carbon Black’s Threat Hunter Team reported the campaign this week. This points to espionage, not a money grab:
Cisco Warns of Available PoC for Critical Unified CM Vulnerability
The high-severity flaw can be exploited remotely, without authentication, in server-side request forgery (SSRF) attacks.
The post Cisco Warns of Available PoC for Critical Unified CM Vulnerability appeared first on SecurityWeek.
VS Code Vulnerability Allows One-Click GitHub Token Theft
A researcher has disclosed the full details of the vulnerability and released a PoC without notifying Microsoft in advance.
The post VS Code Vulnerability Allows One-Click GitHub Token Theft appeared first on SecurityWeek.
CISA Adds Exploited Magento RCE Flaw CVE-2026-45247 to KEV Catalog
The vulnerability, tracked as CVE-2026-45247 (CVSS score: 9.8), is a case of deserialization of untrusted
DoJ Disrupts Southeast Asia Crypto Fraud Networks, Freezes $3.8 Million in Assets
The “Disruption Week” operation began May 18, 2026, leading to the takedown of millions of social media, email, and internet access accounts used by transnational
Chinese hackers use new Atlas RAT malware in European cyberattacks
The U.S. sanctions Nobitex crypto exchange used by ransomware
CISA warns of cyberattacks targeting fuel tank monitoring systems
WhatsApp, Slack Notifications Could Hijack Google Gemini on Android
No malicious app on the phone is required. The assistant just had to treat a hostile
