ManageEngine AD360 SSO Bug Lets Attackers Hijack User Accounts
A high-severity vulnerability tracked as CVE-2026-11374 has...
Gravity SMTP Flaw Under Active Exploitation Across WordPress Sites
Security researchers are warning WordPress administrators...
UNC3753 Targets U.S. Law Firms With Hybrid Extortion Attacks
A financially motivated threat actor tracked as UNC3753,...
OptinMonster Supply Chain Attack Hits 1.2M WordPress Sites
A sophisticated supply chain attack targeting the widely...
Microsoft Defender Now Monitors RPC Activity for Attacks
Microsoft has significantly expanded its Defender platform...
Linux Kernel nftables Bug Allows Local Privilege Escalation
A critical Linux kernel vulnerability, tracked...
Google Enables DBSC Security Feature to Fight Session Hijacking
Google has officially rolled out the DBSC security feature...
GREYVIBE Cyberattacks Use AI to Target Ukraine
A newly uncovered cyber espionage operation dubbed GREYVIBE...
Typosquatted npm Packages Steal Cloud and CI/CD Secrets
A new campaign involving typosquatted npm packages is...
npm Revokes All 2FA-Bypass Tokens After Supply Chain Attack
npm has revoked every granular access token with write...