Aggregator
NCSC Warns of an AI-Fuelled “Vulnerability Patch Wave”
Звонки из-за границы пометят, Госуслуги закроют крепче. Володин анонсировал новый пакет мер против мошенников
Instagram’s to End Encrypted Chats for Direct Messages
Meta has announced that Instagram will officially discontinue its optional end-to-end encrypted direct message feature on May 8, 2026. The feature was initially rolled out for testing in 2021 to provide users with a secure communication channel accessible only by the sender and recipient. Meta cites very low adoption rates among its user base as […]
The post Instagram’s to End Encrypted Chats for Direct Messages appeared first on Cyber Security News.
CVE-2026-3454 | edge22 GenerateBlocks Plugin up to 2.2.0 on WordPress REST Endpoint dynamic-tag-replacements ID authorization (EUVD-2026-27225)
CVE-2026-5192 | wpmudev Forminator Forms Plugin up to 1.52.1 on WordPress File Upload file_path path traversal (EUVD-2026-27229)
CVE-2026-2729 | wpmudev Forminator Forms Plugin up to 1.52.0 on WordPress authorization (EUVD-2026-27223)
CVE-2026-40797 | Saleswonder WebinarIgnition Plugin up to 4.08.253 on WordPress sql injection (EUVD-2026-27227)
Microsoft warns of global campaign stealing auth tokens from 35K users
ScarCruft Hacks Gaming Platform to Deploy BirdCall Malware on Android and Windows
ScarCruft hackers push BirdCall Android malware via game platform
Сервер может «упасть» от одного запроса. И это не кликбейт, а уязвимость в Apache
North Korean hackers trojanize gaming platform to spy on ethnic Koreans in China
A gaming platform built for ethnic Koreans in China has been serving backdoored Windows and Android software to its users since late 2024. The platform, sqgame[.]net, hosts traditional card and board games for a community that sits along the North Korean border and includes many refugees and defectors. ESET researchers tied the operation to ScarCruft, a North Korea-aligned espionage group also tracked as APT37 and Reaper, which has been active since at least 2012. How … More →
The post North Korean hackers trojanize gaming platform to spy on ethnic Koreans in China appeared first on Help Net Security.
A rigged game: ScarCruft compromises gaming platform in a supply-chain attack
Trellix Reveals Unauthorized Access to Source Code
4 года на полную зачистку: Росмолодежь берет интернет под контроль ради традиционных ценностей
Supply Chains in the Crosshairs: Scan and Simulate Multi-Stage Attacks with Trajan
Trajan: CI/CD Security Scanner Trajan scans CI/CD pipelines for security vulnerabilities that attackers use to compromise software supply
The post Supply Chains in the Crosshairs: Scan and Simulate Multi-Stage Attacks with Trajan appeared first on Penetration Testing Tools.
Beware of Fake ‘Notepad++ for Mac’ Website, Possibly Could Harm your Machine
A fake website claiming to offer an official macOS version of the popular text editor Notepad++ has been making rounds online, raising serious cybersecurity concerns across the tech community. The site, operating under the domain notepad-plus-plus-mac.org, falsely presents itself as the official release of Notepad++ for Apple devices, misleading thousands of users who simply want […]
The post Beware of Fake ‘Notepad++ for Mac’ Website, Possibly Could Harm your Machine appeared first on Cyber Security News.