U.S. Seizes NightmareStresser Domains Linked to Hundreds of Thousands of DDoS Attacks

The U.S. Department of Justice (DoJ) on Tuesday announced the court-authorized seizure of internet domains associated with a distributed denial-of-service (DDoS)-for-hire service known as NightmareStresser.

The domains in question are: nightmare-stres… Continue reading U.S. Seizes NightmareStresser Domains Linked to Hundreds of Thousands of DDoS Attacks→

Posted in Uncategorized

Attackers Exploit Issabel Framework Flaw Enabling Unauthenticated OS Command Execution

A critical security flaw in Issabel Framework, a web-based framework for the open-source unified communications PBX software, has come under active exploitation.

The vulnerability in question is CVE-2026-89026 (CVSS v3.1 score: 9.8/CVSS v4.0 score: 9…. Continue reading Attackers Exploit Issabel Framework Flaw Enabling Unauthenticated OS Command Execution→

Posted in Uncategorized

Three Threat Groups Target Russian Enterprises With Backdoors, Ransomware, and Wipers

Enterprises in Russia have emerged as the target of three threat activity clusters tracked as NightEagle, Hacking Cat, and Toy Ghouls, according to multiple reports from Kaspersky.

The cybersecurity vendor said it has identified attacks mounted by Nig… Continue reading Three Threat Groups Target Russian Enterprises With Backdoors, Ransomware, and Wipers→

Posted in Uncategorized

One Extension Could Hijack AI Assistants Across Chrome, Comet, Edge, Opera Neon and Claude

Security researchers at Forever Security have shown that one ordinary browser extension could take control of the AI assistants built into five Chromium-based products: Gemini Live in Chrome, Perplexity Comet, Microsoft Edge, Opera Neon and t… Continue reading One Extension Could Hijack AI Assistants Across Chrome, Comet, Edge, Opera Neon and Claude→

Posted in Uncategorized

Attacker Hijacks AI Coding Assistant Session, Spreads Shai-Hulud Across About 100 Repositories

Mandiant says an attacker hijacked an active AI coding-assistant session at an unnamed software-as-a-service provider and later spread Shai-Hulud across about 100 internal code repositories.

Before the repository spread, the assistant recomm… Continue reading Attacker Hijacks AI Coding Assistant Session, Spreads Shai-Hulud Across About 100 Repositories→

Posted in Uncategorized

Parallels Desktop Flaw Lets Non-Admin Mac Users Gain Root, but Intel Macs Can’t Install Fix

Parallels Desktop for Mac has a flaw that lets an ordinary local account run code as root, the highest level of access on a Mac, software company JFrog said this week.

The attack needs code already running on the machine as a normal user, so it does n… Continue reading Parallels Desktop Flaw Lets Non-Admin Mac Users Gain Root, but Intel Macs Can’t Install Fix→

Posted in Uncategorized

N0va Phishkit Targets US and EU Businesses: A New Challenge for Identity Security

N0va is targeting organizations across North America and Europe with phishing campaigns that impersonate trusted services and abuse legitimate authentication flows. Successful attacks can give threat actors access to valid accounts without relying on o… Continue reading N0va Phishkit Targets US and EU Businesses: A New Challenge for Identity Security→

Posted in Uncategorized

N0va Phishkit Targets US and EU Businesses: A New Challenge for Identity Security

N0va is targeting organizations across North America and Europe with phishing campaigns that impersonate trusted services and abuse legitimate authentication flows. Successful attacks can give threat actors access to valid accounts without relying on o… Continue reading N0va Phishkit Targets US and EU Businesses: A New Challenge for Identity Security→

Posted in Uncategorized

Google Patches Pixel Modem Flaw Amid Signs of Limited Targeted Exploitation

Google has disclosed that a high-severity security flaw in its Pixel Cellular Modem has come under exploitation in the wild.

The vulnerability, tracked as CVE-2026-58704 (CVSS score: 8.0), is a privilege escalation flaw.

“In Cellular Modem, there is … Continue reading Google Patches Pixel Modem Flaw Amid Signs of Limited Targeted Exploitation→

Posted in Uncategorized