#Blog


Gigascale KEV Analysis: Human Security Fails?

Apr 10, 2026 // 17:57

By: Saeed Abbasi, Threat Research Unit’s Senior Manager at Qualys With exploits appearing before patches and AI-driven threats intensifying, minor improvements aren’t enough. We need […]

GlassWorm campaign exploits IDEs via Zig dropper for widespread developer infection.

Apr 10, 2026 // 17:47

Cybersecurity experts are warning about a new iteration of the ongoing GlassWorm campaign. This version uses a novel Zig dropper to discreetly infect all integrated […]

Payroll scams target Microsoft’s Canadian workforce.

Apr 10, 2026 // 14:57

A financially driven cybercriminal group known as Storm-2755 is intercepting salary payments of Canadian workers by taking over their accounts through payroll scams. The attackers […]

Untapped AI: Browser Extensions Are the Future Consumption.

Apr 10, 2026 // 14:03

While much focus in AI security is on protecting ‘shadow’ AI and GenAI use, a significant vulnerability remains unaddressed: AI browser extensions. A new report […]

Gmail mobile gets end-to-end encryption. Google extends secure email option to handheld devices.

Apr 10, 2026 // 13:57

Google has released Gmail’s end-to-end encryption (E2EE) for all Android and iOS devices, giving business users the ability to read and write encrypted emails directly, […]

Marimo RCE (CVE-2026-39987) exploited in under 10 hours after vulnerability revealed.

Apr 10, 2026 // 13:42

A serious security flaw in Marimo, a free and open Python tool for data work, was targeted just 10 hours after it was revealed publicly, […]

Chrome 146: Session theft protection (DBSC) now on Windows, courtesy of Google.

Apr 10, 2026 // 11:03

Google has released Device Bound Session Credentials (DBSC) to all Chrome for Windows users, following its beta testing. Currently, only Windows Chrome 146 users have […]

Compromised Nextend servers distributed backdoored Smart Slider 3 Pro update.

Apr 10, 2026 // 09:33

Cybercriminals compromised the update mechanism of the Smart Slider 3 Pro plugin for WordPress and Joomla, delivering a malicious update with a backdoor. Patchstack, a […]

LucidRook malware targets NGOs & universities in new cyberattacks.

Apr 10, 2026 // 01:17

A new piece of malware written in Lua, named LucidRook, is being used in targeted phishing attacks against NGOs and universities in Taiwan. Cisco Talos […]

VENOM phishing targets top execs, grabbing Microsoft logins.

Apr 10, 2026 // 00:57

A new phishing-as-a-service (PhaaS) platform dubbed “VENOM” is being used by malicious actors to steal credentials from high-level executives (like CEOs) in various sectors. This […]

Previous 1 … 336 337 338 339 340 … 383 Next