Cisco Secure Email Gateway Flaw Exploited in the Wild, Enables Root Command Execution

Cisco has warned that a new critical vulnerability impacting AsyncOS Software for Cisco Secure Email Gateway has come under active exploitation in the wild.

The vulnerability, tracked as CVE-2026-76461, carries a CVSS score of 9.8 out of a maximum of … Continue reading Cisco Secure Email Gateway Flaw Exploited in the Wild, Enables Root Command Execution→

Posted in Uncategorized

China-Linked Hackers Exploit Chrome-Windows Zero-Day Chain to Deploy GRIMWEDGE

A Chinese threat actor has been attributed to a spear-phishing campaign that exploits recently patched security flaws in Google Chrome and Microsoft Windows to deliver a malicious JavaScript backdoor called GRIMWEDGE.

Volexity, which is tracking the t… Continue reading China-Linked Hackers Exploit Chrome-Windows Zero-Day Chain to Deploy GRIMWEDGE→

Posted in Uncategorized

3BB Attacker Used MeshCentral Backdoor for Root Access, Targeted Subscriber Credentials

An attacker was operating inside the network of 3BB, one of Thailand’s largest broadband providers, and maintained remote control of internal machines using a legitimate management tool called MeshCentral, threat intelligence firm Hunt.io said.

The co… Continue reading 3BB Attacker Used MeshCentral Backdoor for Root Access, Targeted Subscriber Credentials→

Posted in Uncategorized

Telegram Desktop Flaw Lets Hidden JavaScript Exfiltrate Messages From HTML Exports

A flaw in Telegram Desktop let a bot’s message plant hidden JavaScript inside chats that users exported to HTML files, security researchers at ExPatch said in a writeup published on September 12.

In Telegram, the message looked ordinary, wit… Continue reading Telegram Desktop Flaw Lets Hidden JavaScript Exfiltrate Messages From HTML Exports→

Posted in Uncategorized

Red Heron Exploits Gitea RCE to Compromise 13 Organizations Across Six Countries

A Chinese threat actor tracked as Red Heron has been attributed to the rapid exploitation of a recently disclosed security vulnerability in Gitea to compromise internet-facing instances as part of a multi-national campaign.

“Red Heron scanned 1,386 Gi… Continue reading Red Heron Exploits Gitea RCE to Compromise 13 Organizations Across Six Countries→

Posted in Uncategorized

WordPress Adds Automated Plugin Reviews to Block High-Risk Updates Before Distribution

WordPress has announced it’s launching an automated security review for every release of a plugin before it’s distributed through the WordPress.org update API so as to analyze it for potential security issues and ensure there are no risks involved.

“N… Continue reading WordPress Adds Automated Plugin Reviews to Block High-Risk Updates Before Distribution→

Posted in Uncategorized

⚡ Weekly Recap: Rogue AI Agents, WeChat Worm, PaperCut Attacks, AI Espionage, and Rootkits

AI keeps showing up in the wrong places. Attackers are using it to speed up exploits, test defenses, and automate more of the job. Some models are also crossing lines on their own. That is not a great combination.

The rest of the week is more familiar… Continue reading ⚡ Weekly Recap: Rogue AI Agents, WeChat Worm, PaperCut Attacks, AI Espionage, and Rootkits→

Posted in Uncategorized

Malicious Twitch Browser Extension Leaks OAuth Tokens From Nearly 31,000 Users

A malicious cross-store Twitch browser extension has leaked OAuth tokens associated with nearly 31,000 users to proxy servers operated by a Russian commercial bot service.

The extension, named “Twitch Enhanced Viewer | JeetBot,” lists HISHIMIRO/jeetbo… Continue reading Malicious Twitch Browser Extension Leaks OAuth Tokens From Nearly 31,000 Users→

Posted in Uncategorized