Tenet Security showed how a publicly exposed error-tracking credential and an MCP integration chain into remote code ...
Thomas Braziel, whose firm brokered close to US$1-billion of FTX bankruptcy claims, is bringing together victims of the ...
A massive supply chain attack on the Node Package Manager (npm) registry has infected over 400 packages with over 2 billion downloads with the ...
Microsoft 365 phishing campaign disclosed by Arctic Wolf Labs abuses Google Meet and Amazon S3 to bypass enterprise email ...
Laundry Bear exploits security flaw in unpatched Zimbra servers, stealing 90 days of emails and authentication data without ...
WordPress fixes CVE-2026-64638, a pre-auth login XSS affecting every version, with a demonstrated path to PHP execution under ...
A new Mini Shai-Hulud wave hit keyv and 800+ npm packages. The malware now scans 469 secret locations, including AI agents, ...
Bitcoin Red Team filed 4,962 findings across 390 projects. One codebase came back clean. One hour absorbed 4,101 of them, a ...
A 19-year-old man and a 15-year-old male have been arrested and charged in the shooting at the U.S. consulate building in Toronto last week, a case police investigators have tied to wider gun-for-hire ...
QuickFox VPN users might be at risk. Researchers discovered that attackers trojanized the software's Windows installer for ...
Fake alerts about Adobe and Zoom trick users into installing remote access software that gives attackers control of infected devices ...
FortiGuard exposes year-long QuickFox VPN supply chain attack deploying FDMTP implant on corporate Windows machines only.