#apps.


Signal adds encypted local backup support to iOS, desktop apps

Sep 30, 2026 // 00:36

Signal, the secure messaging app, released version 8.30, completing the rollout of its secure backups feature across all supported operating systems (Android, iOS, Linux, macOS, […]

Unpatched OnePlus Flaws Let Installed Android Apps Gain Root Without Permissions

Sep 24, 2026 // 23:37

A OnePlus 15 running the latest OxygenOS can be rooted by a malicious app the owner installs, one that asks for no special permissions. A […]

BigCommerce alerts merchants of data breach linked to Ribon apps

Sep 22, 2026 // 00:36

Ecommerce platform BigCommerce has alerted multiple merchants to data breaches after attackers compromised credentials for third-party Ribon applications and used them to inject malicious scripts […]

Webinar: How malicious OAuth apps can lead to Google Workspace breaches

Sep 14, 2026 // 15:17

Google Workspace attackers don’t necessarily need to exploit a software vulnerability or steal a user’s password to gain access to an organization’s data. On September […]

Hackers abused Claude to extract secrets from 1.8M Android apps

Sep 12, 2026 // 01:36

Anthropic says multiple threat groups, including the financially motivated and state-sponsored espionage groups linked to Russia and China, tried to abuse its Claude AI model […]

Google Play Early Access Abused to Push Thousands of Deceptive Android Apps

Sep 10, 2026 // 17:39

Bad actors are misusing Google Play’s Early Access program to push deceptive apps that claim to offer money, rewards, casino winnings, and premium content. Early […]

Microsoft Copilot Personal Flaws Could Let One Click Exfiltrate Data From Connected Apps

Aug 18, 2026 // 23:28

Varonis Threat Labs has disclosed three vulnerabilities in Microsoft Copilot Personal that it said could allow a single click on a crafted link to silently […]

Cavern C2 Uses DNS and Google Apps Script to Blend Into Legitimate Traffic

Aug 17, 2026 // 23:54

Cybersecurity researchers have traced the continued evolution of the Cavern (aka Cav3rn) command-and-control (C2) framework used by Iranian nation-state hackers in attacks targeting entities in […]

CryptoJS Weak RNG Behind $5.7 Million in Drains Affects Five Crypto Wallet Apps

Aug 6, 2026 // 14:58

Coinspect has identified CryptoJS.lib.WordArray.random() as the weak random number generator behind the Ill Bloom wallet drains. Introduced in the JavaScript cryptography library 12 years ago, […]

New ClickLock macOS Stealer Kills Apps Every 210ms Until Victims Type Their Password

Jul 16, 2026 // 15:37

ClickLock Stealer, a new macOS infostealer, answers a victim’s refusal by killing their apps on a loop until they hand over the login password. It […]

1 2 3 Next