#News


New GPUThor attack defeats NVIDIA ECC protection for root access

Aug 27, 2026 // 00:57

A newly disclosed Rowhammer attack called GPUThor can bypass error-correcting code (ECC) protections on NVIDIA GPUs, enabling denial-of-service (DoS) and root-level privilege escalation. In a […]

Critical Avada WordPress theme flaw enables zero-click RCE

Aug 27, 2026 // 00:57

A critical vulnerability chain in the popular Avada theme for WordPress can be exploited by an unauthenticated attacker to execute arbitrary PHP code on the […]

NovaCookies Campaigns Abuse Genuine Docusign Notifications to Steal Microsoft 365 Sessions

Aug 27, 2026 // 00:41

Cybersecurity researchers have disclosed details of a new adversary-in-the-middle (AitM) phishing toolkit called NovaCookies that’s used as a proxy to redirect Microsoft 365 sign-ins, while […]

Nimbus Manticore Expands Toolset With TWOSTROKE-Like Backdoor and SSH Tunneler

Aug 27, 2026 // 00:40

Cybersecurity researchers have discovered additional infrastructure and previously undocumented malware associated with Nimbus Manticore, an Iranian state-sponsored hacking group affiliated with the Islamic Revolutionary Guard […]

FBI Disrupts China-Linked QTFY Infrastructure Used to Steal Data From U.S. Organizations

Aug 27, 2026 // 00:40

The U.S. Department of Justice (DoJ) on Wednesday announced the disruption of two hacking platforms named QScan and QTRouter operated by Chinese threat actors to […]

Ubiquiti patches three max severity security vulnerabilities

Aug 26, 2026 // 16:37

Ubiquiti has released security patches for three new maximum-severity vulnerabilities that threat actors can exploit remotely without privileges. The first (tracked as CVE-2026-77537) lets unauthenticated […]

CISA Red Team Compromised Two Critical Infrastructure Orgs, One Detected Nothing

Aug 26, 2026 // 16:10

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has published the results of two red team assessments it conducted simultaneously against two critical infrastructure organizations, […]

Unpatched Kaltura mwEmbed Flaws Could Let Remote Attackers Read Files and Run Code

Aug 26, 2026 // 15:00

The CERT Coordination Center (CERT/CC) has disclosed two unpatched vulnerabilities in Kaltura’s HTML5 video player library that allow a remote, unauthenticated attacker to read arbitrary […]

Imagine the SOC Without a Queue: From Alert Backlog to AI Hypothesis Engine

Aug 26, 2026 // 14:40

The SOC we’ve always known was built around a model that guarantees most of the alert queue will never receive analyst review. There’s never time. […]

Hackers now exploit critical Gitea flaw in code injection attacks

Aug 26, 2026 // 14:16

Attackers are actively exploiting a critical-severity vulnerability in the Gitea self-hosted Git service, according to the U.S. Cybersecurity and Infrastructure Security Agency (CISA). Like cloud-hosted […]

Previous 1 26 27 28 29 30 353 Next