Overview Earlier this month, security sleuth and researcher “Chaotic Eclipse” (also known as Nightmare-Eclipse) published a zero-day exploit known as YellowKey, which allowed them to access BitLoc...
Overview of the First VPN Service 🚀 The Federal Bureau of Investigation (FBI) has released a FLASH report to share indicators of compromise (IOCs) and tactics related to the First VPN Service. Thi...
🚨 Important Security Alert! An attachment in an email impersonating DHL about a shipment contains a link to a preconfigured SimpleHelp remote access tool—an ideal starting point for attackers to e...
KDDI Data Breach Affects 14.2 Million Email Accounts
KDDI Data Breach 🚨 KDDI Corporation has disclosed a significant data breach that has exposed up to 14.2 million email accounts across six Japanese internet service providers. The company detected ...
2026-06-28 Daily Vulns
New Bucket Hijacking Attack Allows Hackers to Reroute Cloud Data Streams to External Storage
New Bucket Hijacking Attack 🚨 A critical cloud storage attack technique dubbed “bucket hijacking” enables threat actors to silently redirect an organization’s active cloud data streams, including ...
Someone Hacked Johnson & Johnson's Internal Systems to Teach It a Lesson
Cybersecurity Incident 🚨 A cybersecurity researcher, known as Eaton, has uncovered serious vulnerabilities in Johnson & Johnson’s (J&J) internal systems. This breach allowed access to sens...
macOS Flaw Allowed Standard Users to Disable CrowdStrike and Kandji Security Tools
Major macOS Vulnerability Discovered! 🚨 Cybersecurity defense firm XM Cyber has identified a significant security flaw in the Apple macOS operating system. This vulnerability lies within the core ...
The Latest Addition to Turla's Intelligence Gathering Apparatus
The Latest Addition to Turla’s Intelligence Gathering Apparatus 🚀 Google Threat Intelligence Group (GTIG) has conducted an in-depth analysis of a .NET backdoor, tracked as STOCKSTAY, that has been...
New SharkLoader Malware Deploys Cobalt Strike in StrikeShark Cyberattacks
New SharkLoader Malware Deploys Cobalt Strike in StrikeShark Cyberattacks 🚨 A newly discovered cyber attack campaign has been observed delivering a previously undocumented malware family called Sh...
AsyncRAT Family Threat Overview
AsyncRAT Family Threat Overview AsyncRAT is a family of open-source Windows remote access trojans (RATs) that has been forked into numerous descendant malware families. Its most prolific descendan...
2026-06-26 Daily Vulns
Tata Electronics Confirms Data Breach After 630GB Leak Claim Targets Apple and Tesla
Tata Electronics Confirms Data Breach 🚨 Tata Electronics has confirmed a significant data breach after hackers claimed to have stolen 630GB of sensitive data, which allegedly includes documents re...
STOCKSTAY The Latest Addition to Turla's Intelligence Gathering Apparatus
STOCKSTAY: The Latest Addition to Turla’s Intelligence Gathering Apparatus 🚀 A significant proportion of STOCKSTAY operations observed by GTIG have been targeted at government or military organiza...
Fake Domain Renewal Emails Trick Website Owners into Paying Scammers
Beware of Fake Domain Renewal Emails! 🚨 You may receive an email warning that your website’s domain name is about to expire. Renew now, it says, or your website and email could stop working. The l...
Introduction to COM Usage by Windows Threats
Introduction to COM Usage by Windows Threats Component Object Model (COM) is a fundamental Windows technology used by legitimate applications for object activation, inter-process communication, au...
Information Sought on UNC5792 Cyber Group
Information Sought on UNC5792 Cyber Group 🚨 Rewards for Justice (RFJ) is actively seeking information on UNC5792, a malicious cyber group linked to the Russian Federal Security Service (FSB) Borde...
Critical Vulnerability in Delta Electronics DTM Soft
Critical Vulnerability in Delta Electronics DTM Soft A critical vulnerability, CVE-2026-12578, has been identified in Delta Electronics DTM Soft, impacting all versions of DTMSoft. 🚨 Successful ex...
One-two Punch Delivered in Global Operation Disrupts Cybercrime Assembly Line
One-two Punch Delivered in Global Operation Disrupts Cybercrime Assembly Line International authorities and a raft of private technology companies have successfully disrupted a cybercrime “assembl...
Malicious Edge Extension Abuses Native Messaging as Bridge to Malware
Malicious Edge Extension Abuses Native Messaging as Bridge to Malware A malicious Microsoft Edge extension dubbed ‘Edgecution’ has been used in a ransomware attack to escape the browser sandbox an...