CISA Adds Seven Exploited Flaws as Attackers Deploy Reverse Shells and Crypto Miners

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added seven security flaws to its Known Exploited Vulnerabilities (KEV) catalog after they landed in attackers’ crosshairs.

The vulnerabilities are as follows –

CVE-2026… Continue reading CISA Adds Seven Exploited Flaws as Attackers Deploy Reverse Shells and Crypto Miners→

Posted in Uncategorized

Google, Anthropic, and OpenAI Unveil Cyber AI Models, Safeguards, and Access Programs

Google on Wednesday announced Gemini 3.8 Flash Cyber, which it described as its most capable cybersecurity model, and has made it available to a set of trusted defenders via a new initiative called the Fairwind Program.

“The Fairwind Program gives hig… Continue reading Google, Anthropic, and OpenAI Unveil Cyber AI Models, Safeguards, and Access Programs→

Posted in Uncategorized

Fake Software Installers Disable Windows Update and Weaken Microsoft Defender

An active malware campaign is using bogus software-download websites to impersonate trusted vendors and distribute malicious installers.

“The campaign has targeted users looking to download popular software and has resulted in compromises across multi… Continue reading Fake Software Installers Disable Windows Update and Weaken Microsoft Defender→

Posted in Uncategorized

Malicious .git Configs Can Make Claude, Codex, Cursor, and Other AI Agents Run Attacker Code

Manifold Security has disclosed eight security flaws across seven command-line AI coding agents in which a repository’s own Git configuration names a command that the agent runs on the developer’s machine, four of them still unpatched at publication.

… Continue reading Malicious .git Configs Can Make Claude, Codex, Cursor, and Other AI Agents Run Attacker Code→

Posted in Uncategorized

Malicious Apache Modules Hijack Brazilian Government Site Traffic to Push Betting Pages

A Chinese-speaking cybercrime cluster known as Gambling Goblin has been observed installing malicious Apache modules on compromised web servers run by Brazilian government and educational institutions, and using them to divert visitors to attacker-cont… Continue reading Malicious Apache Modules Hijack Brazilian Government Site Traffic to Push Betting Pages→

Posted in Uncategorized

BGP Hijack Delivers Malicious Virtualizor Update That Establishes Persistent Root Access

Virtualizor said hackers used a Border Gateway Protocol (BGP) hijack to divert Softaculous traffic. The hackers then used the diverted update traffic to deliver a malicious Virtualizor package to some installations. A hosting-provider account separatel… Continue reading BGP Hijack Delivers Malicious Virtualizor Update That Establishes Persistent Root Access→

Posted in Uncategorized

Meta Ads Push StreamRat Android Trojan That Can Gain Near-Complete Device Control

Cybersecurity researchers have disclosed details of a new Android banking trojan called StreamRat that was promoted to Spanish-speaking users through a fake television-streaming campaign on Meta and can give operators near-complete control of infected … Continue reading Meta Ads Push StreamRat Android Trojan That Can Gain Near-Complete Device Control→

Posted in Uncategorized

Attackers Exploit Two SonicWall SMA 1000 Zero-Days That May Form an Attack Chain

SonicWall has released security updates to address two security flaws impacting its Secure Mobile Access (SMA) 1000 series VPN appliances that have been exploited in zero-day attacks.

The vulnerabilities, discovered internally by SonicWall’s William P… Continue reading Attackers Exploit Two SonicWall SMA 1000 Zero-Days That May Form an Attack Chain→

Posted in Uncategorized

GeoNetwork Fixes Unauthenticated RCE Chain Affecting Government Geoportal Backends

Two vulnerabilities in GeoNetwork can be chained to achieve unauthenticated remote code execution (RCE) on the open-source geospatial metadata catalog, which sits behind many government and agency geoportals.

The project shipped fixes in versions 4.4…. Continue reading GeoNetwork Fixes Unauthenticated RCE Chain Affecting Government Geoportal Backends→

Posted in Uncategorized