Aggregator
CVE-2025-15548 | TP-Link VX800v 1.0 missing encryption (EUVD-2025-206535)
CVE-2026-1457 | TP-Link VIGI C485 V1 stack-based overflow (EUVD-2026-4967)
CVE-2025-15545 | TP-Link Archer RE605X prior (EU)_V3_20260113/(US)_V3_20260126 Backup Restore input validation (EUVD-2025-206536)
CVE-2025-15541 | TP-Link VX800v 1.0 SFTP Service link following (EUVD-2025-206516)
CVE-2025-15542 | TP-Link VX800v 1.0 INVITE Message unusual condition (EUVD-2025-206533)
CVE-2025-15543 | TP-Link VX800v 1.0 USB HTTP Access Path link following (EUVD-2025-206534)
CVE-2026-26736 | Totolink A3002RU 3.0.0-B20220304.1804 formIpv6Setup static_ipv6 stack-based overflow
CVE-2026-1638 | Tenda AC21 1.1.1.1/1.dmzip/16.03.08.16 /goform/mDMZSetCfg dmzIp command injection (CNNVD-202601-4966)
MaaS VIP Keylogger Campaign Uses Steganography and In-Memory Execution to Steal Credentials at Scale
A sophisticated credential-stealing campaign built around a tool called VIP Keylogger has emerged as a serious threat to organizations and individuals. Unlike conventional malware that drops files onto a victim’s hard drive, this keylogger runs entirely in memory, making it far harder for traditional security tools to detect. The campaign was first spotted through suspicious […]
The post MaaS VIP Keylogger Campaign Uses Steganography and In-Memory Execution to Steal Credentials at Scale appeared first on Cyber Security News.
Fake CleanMyMac Site Uses ClickFix Trick to Install SHub Stealer on macOS
Sean Cairncross lays out what’s coming next for Trump’s cyber strategy
The national cyber director is pitching an approach that blends cyber operations with diplomacy, law enforcement and pressure on CEOs to shore up their organizations.
The post Sean Cairncross lays out what’s coming next for Trump’s cyber strategy appeared first on CyberScoop.