#Blog


N. Korean Hackers Injected 1700+ Malicious Packages Across Multiple Repositories.

Apr 8, 2026 // 10:49

The persistent North Korea-linked campaign, also known as Contagious Interview, has expanded its reach by disseminating harmful packages that target the Go, Rust, and PHP systems. […]

Critical Flowise flaw (RCE) actively targeted in real-world attacks.

Apr 8, 2026 // 01:18

Cybercriminals are taking advantage of a critical vulnerability, identified as CVE-2025-59528, in Flowise, an open-source platform that allows users to visually create LLM apps and […]

US alerts to Iranian cyber threats against vital systems.

Apr 8, 2026 // 01:17

Hackers with ties to Iran are targeting publicly accessible Rockwell/Allen-Bradley PLCs found in the infrastructure networks of American organizations deemed critical. This warning was issued […]

SaaS breach leads to Snowflake customer data theft; attacks reported.

Apr 8, 2026 // 01:17

A security breach at a SaaS integration vendor led to the theft of authentication tokens, impacting over a dozen companies with data theft incidents. Stolen […]

Cybercrime cost Americans a staggering $21B last year, an FBI report reveals.

Apr 8, 2026 // 01:17

According to the Federal Bureau of Investigation, Americans were defrauded of approximately $21 billion through online crimes last year, mainly through investment schemes, compromised business […]

Ninja Forms plugin vulnerability exploited by hackers. Urgent patching required!

Apr 8, 2026 // 01:17

A serious security hole exists in the Ninja Forms File Uploads add-on for WordPress, allowing unauthorized users to upload any type of file, potentially leading […]

APT28 (Russia) hijacks global DNS via SOHO router exploits.

Apr 8, 2026 // 01:03

A Russian hacking group, APT28 (also known as Forest Blizzard), is suspected of running a new campaign. They infiltrated vulnerable MikroTik and TP-Link routers, changing […]

Authorities halt router attacks redirecting DNS to capture Microsoft 365 credentials.

Apr 7, 2026 // 18:57

An international effort involving law enforcement and private companies has stopped FrostArmada, an APT28 operation that hijacked local traffic from MikroTik and TP-Link routers to […]

Docker Flaw (CVE-2026-34040): Authorization Bypass Leads to Host Control.

Apr 7, 2026 // 18:18

A critical flaw has been found in Docker Engine, potentially enabling attackers to bypass security authorization plugins (AuthZ) in certain situations. Identified as CVE-2026-34040 (CVSS […]

Automated Pentest Failed: Reasons & Roadblocks.

Apr 7, 2026 // 17:17

By Sila Ozeren Hacioglu, a Security Research Engineer at Picus Security. This is a common story in cybersecurity. A new automated pentesting tool is implemented, […]

Previous 1 … 339 340 341 342 343 … 383 Next