“Eye” Spy: Cyclops Blink Returns with Extended Capabilities 🚀 In August 2026, Counter Threat Unit™ (CTU) researchers analyzed a malicious 64-bit Linux executable named timezone_check that was disc...
Overview Earlier this month, security sleuth and researcher “Chaotic Eclipse” (also known as Nightmare-Eclipse) published a zero-day exploit known as YellowKey, which allowed them to access BitLoc...
Overview of the First VPN Service 🚀 The Federal Bureau of Investigation (FBI) has released a FLASH report to share indicators of compromise (IOCs) and tactics related to the First VPN Service. Thi...
🚨 Important Security Alert! An attachment in an email impersonating DHL about a shipment contains a link to a preconfigured SimpleHelp remote access tool—an ideal starting point for attackers to e...
2026-09-29 Daily Vulns
NEW: CVE vendor-product description metric Referenceurl title GithubURL CVE-2026-52744 gocd - gocd GoCD...
NeedyMantis Unpacking a Post-Compromise Malware Family
NeedyMantis: Unpacking a Post-Compromise Malware Family Microsoft Threat Intelligence has identified NeedyMantis, a modular post-compromise malware family observed in a limited number of targeted ...
Why I Find Linux Keyrings Actually Very Useful 5 Reasons
Why I Find Linux Keyrings Actually Very Useful: 5 Reasons If you’ve used Linux, your desktop may have reminded you to set up your keyring. Keyring apps, such as KDE Wallet or Seahorse (GNOME), aut...
Times Car Confirms Data Breach Affecting 6.6 Million User Accounts
Times Car Confirms Data Breach Affecting 6.6 Million User Accounts 🚨 Japanese car-sharing service Times Car has confirmed that approximately 6.6 million user accounts were compromised in a cyberat...
Over 16,000 Supabase Databases Expose PII, Passwords, Auth Tokens
Over 16,000 Supabase Databases Expose PII, Passwords, Auth Tokens 🚨 Researchers have discovered that over 16,000 misconfigured Supabase databases are exposing readable tables containing personally...
Former US Soldier Sentenced for Hacking and Extortion Scheme
Former US Soldier Sentenced for Hacking and Extortion Scheme Cameron John Wagenius, 22, a former Army soldier, was sentenced today to 70 months in prison and ordered to pay $294,978 in restitution...
Kothamine Malware Uses Tailscale's Tailcat to Evade Network Detection
Kothamine Malware Uses Tailscale’s Tailcat to Evade Network Detection 🚨 We discovered an undocumented remote-access Trojan (RAT) called Kothamine Agent. It supports more than 30 commands and gives...
Zero-Click Vulnerabilities in Salesforce Agentforce Expose Wider AI Agent Risk
Zero-Click Vulnerabilities in Salesforce Agentforce Expose Wider AI Agent Risk Security researchers at Zenity Labs have disclosed a set of zero-click vulnerabilities in Salesforce Agentforce that ...
Threat Actors Use Google Ads To Target Ledger Users
Threat Actors Use Google Ads To Target Ledger Users 🚨 In August 2026, Zscaler ThreatLabz analyzed a phishing campaign that used fraudulent Google ads to target Ledger hardware wallet users. The ad...
Researchers Identify AliExpress Phishing Domains Before Registration
Researchers Identify AliExpress Phishing Domains Before Registration Security researchers have reported flagging 10 web addresses weeks before they were registered, then watching them go live as e...
Multiple Vulnerabilities in baserCMS
Multiple Vulnerabilities in baserCMS 🚨 The baserCMS provided by the baserCMS User Community contains multiple vulnerabilities that could pose significant risks to users. Specifically, baserCMS ver...
Imminent Zero-Day Attack KiteWorks Urges Customers to Shut Down Servers
Imminent Zero-Day Attack 🚨 The American software company KiteWorks has warned its customers of an imminent cyberattack. In an email obtained by Heise Security, the KiteWorks CISO urges its custome...
5G-Shark Lures Phones to Rogue 5G Cells Without Network Jamming
5G-Shark Lures Phones to Rogue 5G Cells Without Network Jamming Source: Hackread Date Published: September 25, 2026 Security researchers have developed a method that can pull nearby 5G phones ont...
Botslab G980H Dashcams Vulnerabilities
Botslab G980H Dashcams Vulnerabilities 🚨 The Botslab G980H Dashcams have been found to have several critical vulnerabilities that could be exploited by attackers. Successful exploitation may allow...
Poland Says Fire at Starlink Station is Sabotage as Denmark Warns of Rising Russian Threat
Poland Says Fire at Starlink Station is Sabotage as Denmark Warns of Rising Russian Threat A fire at a Starlink satellite station in central Poland was a deliberate “act of sabotage”, according to...
One URL, Three Different Tricks
One URL, Three Different Tricks Yesterday, we received a phishing email with an interesting link. At first sight, it looks like garbage, but every piece of it has been carefully crafted to confuse...