Search Results For: attacker

iOS users may already be aware of the commercial spyware dubbed Predator, but may not know exactly what it's capable. Fortunately, malware researchers Nir Avraham and Hu Ke have published a detailed write-up on how the Predator spyware... Read more...
Cybersecurity professionals at Threat Fabric have uncovered a campaign utilizing a new piece of malicious software to target Android users. Massiv, a banking trojan, is described by the security researchers as a new Device Takeover malware... Read more...
Attention all Chrome users, Google is rolling out an emergency patch to address a high-severity zero-day security flaw in the world's most popular browser (by market share), and it's not one you want to ignore. That is because Google... Read more...
Microsoft is addressing nearly 60 CVEs with its upcoming "Patch Tuesday" update for Windows 11, six of which are actively-exploited zero-day vulnerabilities. PerKrebsOnSecurity, the most sever CVEs are CVE-2026-21510, CVE-2026-21513... Read more...
As terrifying proof of how much artificial intelligence can compress the cyberattack lifecycle, researchers have documented a real-world AWS cloud intrusion that went from a simple credential leak to full administrative control in under 10... Read more...
Users of Bluetooth accessories bewarea vulnerability was found in the commonly-used Google Fast Pair standard in August of 2025, and an active exploit dubbed WhisperPair is out in the wild. The WhisperPair exploit allows for... Read more...
As AI gets more heavily integrated into Windows, enhanced cybersecurity is required to prevent it from being used against us. Take Reprompt, for example. Reprompt is a Copilot exploit, that can use multi-stage prompts to steal user data... Read more...
Anyone who owns a modern or even semi-modern iPhone or iPad should stop what they're doing and urgently apply Apple's newly released iOS 26.2 update, as it's packed with over two dozen security patches, including multiple ones that are... Read more...
HP Threat Research just issued a new security report detailing a growing trend by attackers towards hijacking session cookies as an alternative means to tried-and-true credential theft. The reason hackers are finding a bigger appetite for sessions cookies is because today's hybrid work... Read more...
The holidays may be upon us, but that isnt slowing down threat actors. Zimperiums zlabs research team has discovered a new piece of malware targeting Android users, dubbed DroidLock, that aims to completely hijack a device and enable the... Read more...
Android users need to be checking their devices for available updates after Googles recent security bulletin listed 107 security flaws in the mobile operating system, which will be fixed in the security patches of 2025-12-05 or later. Two... Read more...
It has been a busy year for the Chrome development team, as they've had to contend with several zero-day security flaws. This latest set of vulnerabilities is of particular concern because Google has evidence of one of them being actively... Read more...
Security researchers have found several alarming security flawsin tooling used by containerization tool Docker that allows attackers to attack the host machine. The flaws specifically relate to runC, which Docker describes as the... Read more...
A new threat in is the wild affecting sites that run WordPress, a popular content management system. Wordfence, a company that focuses onsecurity research in the WordPress ecosystem, is reporting that a vulnerability is affecting the... Read more...
In an unexpected but also unsurprising turn of events, OpenAI's new ChatGPT Atlas AI browser has already been jailbroken, and the security exploit was uncovered within a week of the application's release. As is the case with other AI... Read more...
Android users bewarea new form of Android malware dubbed Pixnapping has been revealed to the public, and in theory, all current Android devices running Android 13 or newer are vulnerable since "the core mechanisms enabling the attack are... Read more...
A financially-motivated hacking group, tracked by Microsoft as Storm-2657, has so far successfully compromised employee accounts at three U.S. universities to steal their salaries in what campaign experts are deeming "payroll pirate"... Read more...
Discord's latest security screw-up is exactly the kind of nightmare privacy advocates have been warning about since platforms started demanding government IDs for "safety." The company confirmed this week that a breach at one of its... Read more...
Oxford University Computer Science Alumni and Artificial Intelligence researcher, Eito Miyamura, revealed that his team was able to trick ChatGPT into divulging sensitive email data, using some relatively simple methods. They were able to... Read more...
Passkeys are just as vulnerable to browser-side attacks as more traditional forms of authentication, per SquareX. SquareX is a cybersecurity firm known best for its BDR ("Browser Detection and Response") enterprise security solutions, and... Read more...
Everyone's favorite file archiving utility isn't often in the news, but today is an exception. The WinRAR archiving utility has been the target of a couple of large-scale attacks that leverage a 0-day security vulnerability. The news... Read more...
Microsoft Systems administrators everywhere, it looks like you get a Patch Monday as a side dish to the usual Patch Tuesdaythis week. There's a full remote code vulnerability (RCE) exploit for SharePoint running around, letting any... Read more...
1 2 3 4 5 Next