Operation Nomad Leopard: Spear-Phishing Campaign Targets Afghan Government Systems with Stealthy ISO-Based Malware
Security team published an analysis of an ongoing targeted spear-phishing campaign—Operation Nomad Leopard—designed to infiltrate government computers…
continue reading..
Researchers Warn LLMs Are Driving the Industrialisation of Software Exploits
The world of offensive cybersecurity is on the brink of a profound transformation. Recent experiments with advanced…
continue reading..
When Trust Becomes the Weapon: How Open-Source Python Tools Are Powering Social Media Phishing Attacks
Cybersecurity researchers have uncovered an increasingly sophisticated phishing campaign that leverages two seemingly innocuous technologies — open-source…
continue reading..
Security Flaws in Anthropic MCP Git Server Expose File Access and Enable Code Execution
The git_init tool in the server would accept an arbitrary filesystem path and turn that path into…
continue reading..
Raaga Suffers Major Data Breach, Exposing Personal Information of 10.2 Million Users
Indian music streaming platform Raaga has suffered a major data breach that exposed the personal information of…
continue reading..
Critical Flaw in TP-Link VIGI Cameras Lets Local Network Attackers Reset Admin Passwords Without Authentication
CVE-2026-0629 is a high-severity authentication bypass vulnerability affecting multiple VIGI and VIGI InSight IP camera models. The…
continue reading..
CVE-2026-23944: Unauthenticated Remote Environment Access in Arcane Docker Manager
Vulnerability overview CVE ID: CVE-2026-23944Product: Arcane (Docker management platform)Vulnerability type: Authentication Bypass / Missing AuthenticationAffected versions: All…
continue reading..
Critical SQL Injection Flaws Expose Yonyou KSOA 9.0 to Remote Database Takeover
Product Details (At a Glance) Yonyou KSOA 9.0 contains multiple SQL Injection vulnerabilities in different JSP components.…
continue reading..
Critical Alert: Unauthenticated Remote Command Execution in Tosei Online Store Management System (CVE-2026-1192)
CVE ID: CVE-2026-1192Product: Tosei Online Store Management System (version 1.01)Vulnerability Type: Remote command injectionSeverity (CVSS v3.1): High…
continue reading..
