Skip to content

  • Home
  • Tools
    • IOC Defang/Refang Tool
    • Universal Encoder Decoder
    • File Hash Calculator
    • Password Crack Time Simulator
    • Multi-URL IOC Checker
  • CyberSecurity News
  • Latest Cyber Attack
  • Vulnerabilities
  • Threat Advisories
  • MITRE ATT&CK
    • Collection
    • Command and Control
    • Credential Access
    • Defense Evasion
    • Discovery
    • Execution
    • Exfiltration
    • Impact
    • Initial Access
    • Lateral Movement
    • Persistence
    • Privilege Escalation
    • Reconnaissance
    • Resource Development
  • Ransomware
  • Malware
  • Cyber Kill Chain

  • Home
  • Tools
    • IOC Defang/Refang Tool
    • Universal Encoder Decoder
    • File Hash Calculator
    • Password Crack Time Simulator
    • Multi-URL IOC Checker
  • CyberSecurity News
  • Latest Cyber Attack
  • Vulnerabilities
  • Threat Advisories
  • MITRE ATT&CK
    • Collection
    • Command and Control
    • Credential Access
    • Defense Evasion
    • Discovery
    • Execution
    • Exfiltration
    • Impact
    • Initial Access
    • Lateral Movement
    • Persistence
    • Privilege Escalation
    • Reconnaissance
    • Resource Development
  • Ransomware
  • Malware
  • Cyber Kill Chain

January 2026

CVE-2026-22812 & CVE-2026-22813: OpenCode Local API and Web UI Flaws Enable Silent Command Execution on Developer Machines

  • Uncategorized
AegironJanuary 13, 2026January 13, 20268 mins0
Product Overview – OpenCode OpenCode is a locally deployed, open-source AI coding assistant designed for developers. It…
continue reading..

CVE-2025-12420: Critical ServiceNow AI Platform Flaw Enables Unauthenticated User Impersonation

  • Vulnerabilities
AegironJanuary 13, 2026January 13, 202612 mins0
CVE-2025-12420 — ServiceNow AI Platform Impersonation Severity: CriticalCVSS: 10.0 (Highest severity)Impact: Full impersonation of any user without…
continue reading..

deVixor: The Android Malware That Steals Your Money — Then Locks Your Phone for Ransom

  • CyberSecurity News
AegironJanuary 13, 2026January 13, 20269 mins0
Date observed: 13 January 2026Threat type: Mobile malware (Banking RAT + optional ransomware/locker)Target platform: AndroidGeographic focus: IranSeverity:…
continue reading..

CISA Flags Active Exploitation: Critical Gogs Path Traversal (CVE-2025-8110) Added to KEV

  • CyberSecurity News
AegironJanuary 13, 2026January 13, 202610 mins0
Product: Gogs (self-hosted Git service)CVE ID: CVE-2025-8110CVSS v3.1 Score: 9.8 / 10Severity: CriticalExploitability: High (low attack complexity,…
continue reading..

CrazyHunter Ransomware Escalates: Credential Abuse, Data Theft, and Healthcare Disruption in Taiwan

  • Cyber Threat Intelligence
AegironJanuary 12, 2026January 12, 202610 mins0
Incident Overview On January 12, 2026, new findings revealed a significant escalation in the capabilities and operational…
continue reading..

ValleyRAT_S2: The Silent Financial Spy Hiding Inside Trusted Systems

  • Cyber Threat Intelligence
AegironJanuary 12, 2026January 12, 202610 mins0
Incident Overview Campaign Name: ValleyRAT_S2Date Observed: January 12, 2026Threat Type: Financial espionage, credential theft, persistent backdoor deploymentPrimary…
continue reading..

Fake Performance Reviews, Real Compromise: Inside the January 2026 Guloader–Remcos Phishing Campaign

  • Cyber Threat Intelligence
AegironJanuary 12, 2026January 12, 202610 mins0
Overview of the Incident In January 2026, multiple security operations teams identified an active phishing campaign designed…
continue reading..

No Systems Were Hacked — Users Were: Inside the Surge of ‘Scam-Yourself’ Cyber Attacks

  • CyberSecurity News
AegironJanuary 12, 2026January 12, 20269 mins0
Over the past several weeks, cybersecurity teams across financial services, healthcare, retail, logistics, and professional services have…
continue reading..

Silent Call, Full Compromise: Inside the WhatsApp Zero-Day Voice Exploit Targeting Banking Customers

  • Cyber Threat Intelligence
AegironJanuary 12, 2026January 12, 202610 mins0
Incident Overview On January 12, 2026, cybersecurity authorities in the UAE issued a high-priority warning to banking…
continue reading..

Prompt Injection Threatens Agentic AI: How Hidden Instructions Turn Autonomous Systems Rogue

  • Cyber Threat Intelligence
AegironJanuary 12, 2026January 12, 202613 mins0
Overview In early January 2026, security researchers disclosed a series of serious vulnerabilities affecting agentic AI systems—autonomous…
continue reading..
  • 1
  • …
  • 49
  • 50
  • 51
  • 52
  • 53
  • …
  • 75

Recent Posts

  • Ransomware Group ‘Gentlemen’ Industrializes EDR Evasion with Kernel-Le…
    Jun 22, 2026
  • SmartApeSG Compromises Okendo Reviews Widget, Exposing Thousands of E-…
    Jun 22, 2026
  • Cybercriminals Exploit Fake Microsoft Teams Transcripts to Deploy Pers…
    Jun 22, 2026
  • Thousands Targeted, Hundreds Compromised: Inside the FortiBleed Creden…
    Jun 22, 2026
  • Novel GhoLoader malware campaign detected, using unique ’10 mous…
    Jun 22, 2026
  • INC Ransomware Emerges as a Major Global Cyber Threat, Rapidly Expandi…
    Jun 19, 2026
  • Dropping Elephant Deploys Advanced Fileless Malware, Neutralizing AMSI…
    Jun 19, 2026
  • ShinyHunters Exploits Oracle PeopleSoft Zero-Day, Compromises Universi…
    Jun 19, 2026
  • Cybercriminals Weaponize Wallpaper Engine to Hijack Steam Accounts in …
    Jun 19, 2026
  • AI-Powered ClickFix Campaign Targets Brazilian Banks, Deploys SmartRAT…
    Jun 19, 2026

Popular Posts

No posts found.

Find Me On

©Cyber Security Priority 1(P1) News 2026. All Rights Reserved.
  • Contact
  • Privacy Policy
  • Terms of Service