exploits
- APPLICATIONS
Critical Vulnerability in Anthropic’s MCP Exposes Developer Machines to Remote Exploits
Cybersecurity researchers have discovered a critical security vulnerability in artificial intelligence (AI) company Anthropic’s Model Context Protocol (MCP) Inspector project…
Read More » - APPLICATIONS
SonicWall NetExtender Trojan and ConnectWise Exploits Used in Remote Access Attacks
î ‚Jun 25, 2025î „Ravie LakshmananVPN Security / Malware Unknown threat actors have been distributing a trojanized version of SonicWall’s SSL VPN…
Read More » - APPLICATIONS
China-linked Salt Typhoon Exploits Critical Cisco Vulnerability to Target Canadian Telecom
î ‚Jun 24, 2025î „Ravie LakshmananCyber Espionage / Chinese Hackers The Canadian Centre for Cyber Security and the U.S. Federal Bureau of…
Read More » - APPLICATIONS
XDigo Malware Exploits Windows LNK Flaw in Eastern European Government Attacks
î ‚Jun 23, 2025î „Ravie LakshmananCyber Espionage / Vulnerability Cybersecurity researchers have uncovered a Go-based malware called XDigo that has been used…
Read More » - APPLICATIONS
Russian APT29 Exploits Gmail App Passwords to Bypass 2FA in Targeted Phishing Campaign
î ‚Jun 19, 2025î „Ravie LakshmananEmail Security / Identity Protection Threat actors with suspected ties to Russia have been observed taking advantage…
Read More » - APPLICATIONS
New Flodrix Botnet Variant Exploits Langflow AI Server RCE Bug to Launch DDoS Attacks
î ‚Jun 17, 2025î „Ravie LakshmananBotnet / Vulnerability Cybersecurity researchers have called attention to a new campaign that’s actively exploiting a recently…
Read More » - REVIEWS
Found in the wild: 2 Secure Boot exploits. Microsoft is patching only 1 of them.
Researchers have unearthed two publicly available exploits that completely evade protections offered by Secure Boot, the industry-wide mechanism for ensuring…
Read More » - APPLICATIONS
New Atomic macOS Stealer Campaign Exploits ClickFix to Target Apple Users
Cybersecurity researchers are alerting to a new malware campaign that employs the ClickFix social engineering tactic to trick users into…
Read More » - APPLICATIONS
Cryptojacking Campaign Exploits DevOps APIs Using Off-the-Shelf Tools from GitHub
Cybersecurity researchers have discovered a new cryptojacking campaign that’s targeting publicly accessible DevOps web servers such as those associated with…
Read More » - APPLICATIONS
APT Intrusions, AI Malware, Zero-Click Exploits, Browser Hijacks and More
î ‚Jun 02, 2025î „Ravie LakshmananCybersecurity / Hacking News If this had been a security drill, someone would’ve said it went too…
Read More »