CVE-2025-12420: Critical ServiceNow AI Platform Flaw Enables Unauthenticated User Impersonation
CVE-2025-12420 — ServiceNow AI Platform Impersonation Severity: CriticalCVSS: 10.0 (Highest severity)Impact: Full impersonation of any user without…
continue reading..
deVixor: The Android Malware That Steals Your Money — Then Locks Your Phone for Ransom
Date observed: 13 January 2026Threat type: Mobile malware (Banking RAT + optional ransomware/locker)Target platform: AndroidGeographic focus: IranSeverity:…
continue reading..
CISA Flags Active Exploitation: Critical Gogs Path Traversal (CVE-2025-8110) Added to KEV
Product: Gogs (self-hosted Git service)CVE ID: CVE-2025-8110CVSS v3.1 Score: 9.8 / 10Severity: CriticalExploitability: High (low attack complexity,…
continue reading..
CrazyHunter Ransomware Escalates: Credential Abuse, Data Theft, and Healthcare Disruption in Taiwan
Incident Overview On January 12, 2026, new findings revealed a significant escalation in the capabilities and operational…
continue reading..
ValleyRAT_S2: The Silent Financial Spy Hiding Inside Trusted Systems
Incident Overview Campaign Name: ValleyRAT_S2Date Observed: January 12, 2026Threat Type: Financial espionage, credential theft, persistent backdoor deploymentPrimary…
continue reading..
Fake Performance Reviews, Real Compromise: Inside the January 2026 Guloader–Remcos Phishing Campaign
Overview of the Incident In January 2026, multiple security operations teams identified an active phishing campaign designed…
continue reading..
No Systems Were Hacked — Users Were: Inside the Surge of ‘Scam-Yourself’ Cyber Attacks
Over the past several weeks, cybersecurity teams across financial services, healthcare, retail, logistics, and professional services have…
continue reading..
Silent Call, Full Compromise: Inside the WhatsApp Zero-Day Voice Exploit Targeting Banking Customers
Incident Overview On January 12, 2026, cybersecurity authorities in the UAE issued a high-priority warning to banking…
continue reading..
Prompt Injection Threatens Agentic AI: How Hidden Instructions Turn Autonomous Systems Rogue
Overview In early January 2026, security researchers disclosed a series of serious vulnerabilities affecting agentic AI systems—autonomous…
continue reading..
