Microsoft has achieved a significant milestone by awarding over $20 million to 562 security researchers through its bug bounty program, marking the largest annual payout […]
Category: Cybersecurity News
Stay informed about the ever-evolving world of digital threats and defenses with our Cyber Security News category. Here, you’ll find the latest breaking news, in-depth analysis, and expert insights on everything related to cybersecurity. From data breaches and ransomware attacks to emerging threats and innovative security solutions, we cover the critical issues impacting individuals, businesses, and governments worldwide. Keep up-to-date on the latest vulnerabilities, best practices, and trends shaping the future of online security.
Poison Claude Offers Discounted AI Access, Compromising User Privacy
Cybersecurity researchers have identified multiple illicit services advertising unauthorized access to artificial intelligence (AI) models on underground forums and messaging platforms. One prominent service, known […]
Paperclip AI Vulnerabilities Allow Remote Code Execution via Malicious Agent Imports
Recent security assessments have uncovered critical vulnerabilities in Paperclip, an open-source control plane designed for managing teams of artificial intelligence (AI) agents. These flaws could […]
77 Malicious Open VSX Extensions Exfiltrate Developer Data
A recent discovery has unveiled a significant security threat within the Open VSX registry, where 77 counterfeit extensions have been identified exfiltrating sensitive developer data. […]
Trojanized npm Packages Use Ethereum Addresses to Conceal C2 Servers
Cybersecurity researchers have identified a sophisticated evolution in malware deployment techniques, where attackers embed command-and-control (C2) server IP addresses within Ethereum transaction recipient fields. This […]
Django Releases Critical Security Updates: Immediate Upgrade Recommended
The Django development team has released versions 6.0.8 and 5.2.17 to address four security vulnerabilities affecting the widely used Python web framework. Developers and administrators […]
Phishing-as-a-Service Kits Bypass MFA to Target US Organizations
Phishing-as-a-Service (PhaaS) platforms are increasingly targeting U.S. organizations by exploiting vulnerabilities in multi-factor authentication (MFA) systems, particularly within Microsoft 365 environments. Three notable PhaaS kits—Sneaky […]
SMOKE#SCREEN Campaign Exploits RMM Tools to Hijack Systems
A sophisticated cyber campaign, dubbed SMOKE#SCREEN, has been identified, leveraging legitimate remote monitoring and management (RMM) tools to gain unauthorized access to both Windows and […]
OVSwrap Vulnerability Exposes Linux Systems to Root Exploits
A newly identified security flaw in the Linux kernel, designated as CVE-2026-64531 and referred to as OVSwrap, enables unprivileged local users to escalate their privileges […]
Kali365 Exploits Microsoft Authentication to Target US Companies
Kali365, a sophisticated phishing-as-a-service platform, has been identified as exploiting Microsoft’s legitimate authentication processes to infiltrate U.S. organizations. By manipulating device codes, attackers can gain […]