Critical Vulnerability in ABB AC500 V3 PLCs
Critical Vulnerability in ABB AC500 V3 PLCs 🚨 ABB has identified a critical vulnerability, tracked as CVE-2025-15467, affecting versions of its AC500 V3 programmable logic controllers (PLCs). An u...
Critical Vulnerability in ABB AC500 V3 PLCs 🚨 ABB has identified a critical vulnerability, tracked as CVE-2025-15467, affecting versions of its AC500 V3 programmable logic controllers (PLCs). An u...
ABB WebPro SNMP Card PowerValue Multiple Vulnerabilities 🚨 ABB has identified multiple vulnerabilities in the WebPro SNMP card PowerValue for certain product versions. These vulnerabilities could ...
Yarbo Responds to Robot Flaws That Could Mow Down Their Owners 🚜 A researcher found that Yarbo yard robots came with a host of vulnerabilities which, among others, allowed an attacker to harvest W...
New GhostLock Tool Abuses Windows API to Block File Access 🚀 A security researcher has released a proof-of-concept tool named GhostLock that demonstrates how a legitimate Windows file API can be a...
Darcula aka. Magic Cat - Blog The Darcula phishing framework continues to evolve, transitioning from early API-driven roots to a sophisticated “Phishing-as-a-Service” model using encrypted WebSock...
Flash Alert: EtherRat and TukTuk C2 End in The Gentleman Ransomware 🚨 In April, we observed an intrusion linked to an Atos-reported campaign where an EtherRAT was installed via a malicious MSI mas...
Critical Security Vulnerability in Ollama 🚨 Cybersecurity researchers have disclosed a critical security vulnerability in Ollama that, if successfully exploited, could allow a remote, unauthentica...
NEW: CVE vendor-product description metric Referenceurl title GithubURL CVE-2026-41496 MervinPraison - Praiso...
Let’s Encrypt Halts Certificate Issuance 🚫 Let’s Encrypt temporarily suspended all certificate issuance on May 8, 2026, after engineers identified a critical issue involving a cross-signed certifi...
NVIDIA Confirms Data Breach 🚨 NVIDIA has confirmed in a statement for BleepingComputer that GeForce NOW user information has been exposed in a data breach. The gaming and hardware giant clarified ...
🚨 Fake Call History Apps Exposed! 🚨 Cybersecurity researchers have uncovered fraudulent apps on the official Google Play Store that falsely claimed to provide access to call histories for any phon...
Active Attack: Dirty Frag Linux Vulnerability Expands Post-Compromise Risk 🚨 A newly disclosed Linux local privilege escalation vulnerability known as “Dirty Frag” enables escalation from an unpri...
Unpacking Russian-Iranian Private-Sector Cyber Connections Source: Margin Research Published on: May 7, 2026 🚨 Key Highlights: Ukraine claims that Russia is providing Iran with cyber support. ...
Trellix Discloses Data Breach 🚨 Cybersecurity firm Trellix has disclosed a data breach after attackers gained access to a portion of its source code repository. Trellix, formed from the merger of ...
OceanLotus Distributing ZiChatBot Malware via PyPI Packages 🚨 Through our daily threat hunting, we noticed that, beginning in July 2025, a series of malicious wheel packages were uploaded to PyPI ...
LuaJIT 2.1.1774638290 - Arbitrary Code Execution 🚨 An exploit titled “LuaJIT 2.1.1774638290 - Arbitrary Code Execution” was released on March 29, 2026 by author TaurusOmar. This vulnerability targ...
Critical Vulnerability in MAXHUB Pivot Client Application 🚨 A critical vulnerability, CVE-2026-6411, has been identified in the MAXHUB Pivot client application versions prior to v1.36.2. This vuln...
Bludit CMS 3.18.4 - RCE Vulnerability 🚨 A Remote Code Execution (RCE) vulnerability has been identified as CVE-2026-25099 in Bludit CMS versions prior to 3.18.4. This exploit, dated 2026-03-28, wa...
NEW: CVE vendor-product description metric Referenceurl title GithubURL CVE-2017-2404 n/a - n/a An issu...
Major Security Vulnerability in Google’s Gemini CLI 🚨 A significant security vulnerability recently threatened Google’s official Gemini-cli repository and its associated GitHub Actions, risking a ...