PhantomRaven Attack: 126 Malicious npm Packages Compromise Developer Credentials In a sophisticated cyber assault identified as the PhantomRaven attack, malicious actors have infiltrated the npm […]
Month: October 2025
Critical Vulnerability Brash Causes Rapid Crashes in Chromium-Based Browsers, Poses Global Risk
Critical Flaw in Chromium’s Blink Engine Allows Rapid Browser Crashes A significant vulnerability, dubbed Brash, has been identified in Google’s Blink rendering engine, which underpins […]
Critical Jenkins Vulnerabilities Threaten CI/CD Pipelines with Security Risks; Urgent Admin Action Needed
Critical Jenkins Vulnerabilities Expose CI/CD Pipelines to Security Risks On October 28, 2025, the Jenkins project issued Security Advisory 2025-10-29, revealing multiple vulnerabilities across 13 […]
Malicious VSCode Extensions Threaten Developer Security, Steal Code and Credentials
Malicious VSCode Extensions Compromise Developer Security The Visual Studio Code (VSCode) Marketplace, a hub for developers seeking extensions to enhance their coding experience, has recently […]
Sophisticated Malware Targets WooCommerce Sites, Steals Credit Card Data
Sophisticated Malware Campaign Targets WooCommerce Sites, Stealing Credit Card Data A sophisticated malware campaign has emerged, specifically targeting WordPress e-commerce websites that utilize the WooCommerce […]
CISA Releases Guide to Strengthen Microsoft Exchange Servers Amid Growing Cyber Threats
CISA Unveils Comprehensive Guide to Fortify Microsoft Exchange Servers Against Emerging Threats In response to the escalating cyber threats targeting email infrastructures, the Cybersecurity and […]
Critical RediShell Vulnerability Threatens Thousands of Redis Servers with Remote Code Execution
Critical RediShell Vulnerability Exposes Thousands of Redis Servers to Remote Code Execution In October 2025, a significant security flaw known as RediShell (CVE-2025-49844) was publicly […]
Over 700 Malicious Android Apps Exploit NFC to Steal Banking Credentials, Affecting Users Globally
Over 700 Malicious Android Apps Exploit NFC to Steal Banking Credentials A sophisticated malware campaign leveraging Near Field Communication (NFC) technology on Android devices has […]
Airstalk Malware Emerges as Advanced Threat to Windows Systems via Legitimate MDM Exploitation
Airstalk Malware: The New Covert Threat Targeting Windows Systems A newly identified malware family, dubbed Airstalk, has emerged as a significant threat to Windows systems, […]
Agent-Aware Cloaking Exploits AI Browsers to Spread Misinformation and Manipulate Data
Agent-Aware Cloaking: Manipulating AI Browsers to Deliver Deceptive Content In the rapidly evolving landscape of artificial intelligence, a new technique known as agent-aware cloaking has […]