Aggregator
When the Watchman Gets Watched: Trellix Discloses Source Code Breach
Смартфон притворился мёртвым, но продолжил за вами следить. Разбор шпионского софта Cerberus
Progress Patches Critical MOVEit Automation Bug Enabling Authentication Bypass
New MicroStealer Malware Actively Attacking Telecom & Education Sectors
A new infostealer malware called MicroStealer has quietly entered the threat landscape and is already showing a worrying reach. First spotted in December 2025, the malware has picked up speed fast, showing up across sandbox environments within weeks of its initial appearance in the wild. What makes it stand out is its ability to fly […]
The post New MicroStealer Malware Actively Attacking Telecom & Education Sectors appeared first on Cyber Security News.
Close the security gap with higher accuracy
Trellix discloses data breach after source code repository hack
Interlock
You must login to view this content
Bluekit Phishing Kit Automates Domains, 2FA Lures, and Session Hijacking in One Panel
A newly identified phishing kit called Bluekit is changing how cybercriminals carry out phishing attacks by packing multiple attack capabilities into a single, easy-to-use operator panel. Rather than relying on separate tools stitched together from different sources, Bluekit gives attackers one centralized platform to manage everything from fake website creation to session hijacking. For years, […]
The post Bluekit Phishing Kit Automates Domains, 2FA Lures, and Session Hijacking in One Panel appeared first on Cyber Security News.
CVE-2026-7785 | A-G-U-P-T-A wireshark-mcp pyshark_mcp.py quick_capture os command injection
CVE-2025-70071 | Assimp 6.0.2 FBXParser.cpp ParseVectorDataArray denial of service (EUVD-2025-209624)
CVE-2026-36365 | Lymphatus caesium-image-compressor up to 02da2c6 PostCompressionActions.cpp shutdownMachine/putMachineToSleep Local Privilege Escalation (EUVD-2026-26976)
CVE-2026-37458 | FRRouting FRR up to 10.6 MP_REACH_NLRI denial of service (EUVD-2026-26977)
Инопланетяне не шепчут, а стреляют лазером: почему SETI десятилетиями мог слушать не то
CVE-2026-7784 | RTGS2017 NagaAgent up to 5.1.0 Skills Endpoint extensions.py Name path traversal (Issue 311)
Submit #807745: A-G-U-P-T-A wireshark-mcp 400c3da70074f22f3cce7ccb65304cafc7089c89 Command Injection [Accepted]
CVE-2026-7783 | CodeCanyon Perfex CRM up to 3.4.1 Admin Kanban Endpoint AbstractKanban.php applySortQuery this sql injection
CVE-2026-7782 | CodeCanyon Perfex CRM up to 3.4.1 Tenant Clients.php Clients::project ID authorization
A college student is suing a dating app that allegedly used her TikTok videos to target men in her dormitory
The woman’s lawyer told CyberScoop they believe the company edited her video to suggest she was a “friend with benefits” and intentionally geofenced it to men around her.
The post A college student is suing a dating app that allegedly used her TikTok videos to target men in her dormitory appeared first on CyberScoop.