Skip to content

  • Home
  • Tools
    • IOC Defang/Refang Tool
    • Universal Encoder Decoder
    • File Hash Calculator
    • Password Crack Time Simulator
    • Multi-URL IOC Checker
  • CyberSecurity News
  • Latest Cyber Attack
  • Vulnerabilities
  • Threat Advisories
  • MITRE ATT&CK
    • Collection
    • Command and Control
    • Credential Access
    • Defense Evasion
    • Discovery
    • Execution
    • Exfiltration
    • Impact
    • Initial Access
    • Lateral Movement
    • Persistence
    • Privilege Escalation
    • Reconnaissance
    • Resource Development
  • Ransomware
  • Malware
  • Cyber Kill Chain

  • Home
  • Tools
    • IOC Defang/Refang Tool
    • Universal Encoder Decoder
    • File Hash Calculator
    • Password Crack Time Simulator
    • Multi-URL IOC Checker
  • CyberSecurity News
  • Latest Cyber Attack
  • Vulnerabilities
  • Threat Advisories
  • MITRE ATT&CK
    • Collection
    • Command and Control
    • Credential Access
    • Defense Evasion
    • Discovery
    • Execution
    • Exfiltration
    • Impact
    • Initial Access
    • Lateral Movement
    • Persistence
    • Privilege Escalation
    • Reconnaissance
    • Resource Development
  • Ransomware
  • Malware
  • Cyber Kill Chain

January 2026

CVE-2026-21881: One Header Away From Full Kanboard Admin Takeover

  • Vulnerabilities
AegironJanuary 8, 2026January 8, 20268 mins0
Vulnerability Overview CVE ID: CVE-2026-21881Product: KanboardAffected Versions: All versions up to and including 1.2.48Fixed Version: 1.2.49Vulnerability Type:…
continue reading..

CVE-2026-21875: Critical Unauthenticated Blind SQL Injection Exposes ClipBucket Databases

  • Vulnerabilities
AegironJanuary 8, 2026January 8, 20268 mins0
Product: ClipBucket (v5)Vulnerability Type: Blind SQL InjectionSeverity: CriticalCVSS Score: 9.8Attack Vector: Remote (Network)Authentication Required: No (in default…
continue reading..

CVE-2025-15346: When “Mutual” TLS Isn’t Mutual — Client Authentication Completely Bypassed

  • Vulnerabilities
AegironJanuary 8, 2026January 8, 20269 mins0
CVE ID: CVE-2025-15346Product: wolfSSL Python bindings (wolfssl-py)Vulnerability Type: Authentication Bypass (Mutual TLS)Severity: CriticalCVSS Score: 9.3Attack Vector: NetworkAttack…
continue reading..

ClayRat Android Spyware Turns Trusted Contacts Into Silent Attackers, Hijacking Phones to Spy, Steal, and Self-Propagate Across Russia

  • Cyber Threat Intelligence
AegironJanuary 8, 2026January 8, 20269 mins0
Executive Summary ClayRat is an Android spyware campaign uncovered in early January that primarily targets Russian-speaking users.…
continue reading..

Trusted Messages, Compromised Systems: UAC-0184’s Viber-Based Espionage Campaign

  • Cyber Threat Intelligence
AegironJanuary 8, 2026January 8, 202610 mins0
What actually happened The attackers initiated contact with victims through Viber messages that appeared legitimate and contextually…
continue reading..

Ghost Tap: The Silent Android Malware Turning Smartphones into Remote Tap-to-Pay Fraud Devices

  • Cyber Threat Intelligence
AegironJanuary 8, 2026January 8, 202612 mins0
Incident Discovery Date: January 7, 2026Threat Type: Android malware / NFC relay fraud / Mobile payment abuseImpact…
continue reading..

CVE-2009-0556: CISA Flags Legacy PowerPoint Vulnerability Due to Ongoing Exploitation Risk

  • Vulnerabilities
AegironJanuary 8, 2026January 8, 20269 mins0
Technical Description CVE-2009-0556 affects the way Microsoft PowerPoint handles certain internal references while opening a presentation. The…
continue reading..

CVE-2025-37164: Unauthenticated Remote Code Execution in HPE OneView Puts Core Infrastructure at Risk

  • Vulnerabilities
AegironJanuary 8, 2026January 8, 20269 mins0
What Is the Issue? Hewlett Packard Enterprise OneView is a centralized infrastructure management platform used to manage…
continue reading..

OpenAI has introduced a new feature called ChatGPT Health, no use of users personal data to train model

  • CyberSecurity News
CyberDefenderJanuary 8, 2026January 8, 20263 mins0
OpenAI has introduced a feature called ChatGPT Health, a dedicated space within ChatGPT for health-related conversations and…
continue reading..

Microsoft to Enforce MFA for Microsoft 365 Admin Center Sign-Ins

  • CyberSecurity News
CyberDefenderJanuary 8, 2026January 8, 20264 mins0
Microsoft has announced that it will begin enforcing multi-factor authentication (MFA) for all users signing in to…
continue reading..
  • 1
  • …
  • 58
  • 59
  • 60
  • 61
  • 62
  • …
  • 75

Recent Posts

  • Ransomware Group ‘Gentlemen’ Industrializes EDR Evasion with Kernel-Le…
    Jun 22, 2026
  • SmartApeSG Compromises Okendo Reviews Widget, Exposing Thousands of E-…
    Jun 22, 2026
  • Cybercriminals Exploit Fake Microsoft Teams Transcripts to Deploy Pers…
    Jun 22, 2026
  • Thousands Targeted, Hundreds Compromised: Inside the FortiBleed Creden…
    Jun 22, 2026
  • Novel GhoLoader malware campaign detected, using unique ’10 mous…
    Jun 22, 2026
  • INC Ransomware Emerges as a Major Global Cyber Threat, Rapidly Expandi…
    Jun 19, 2026
  • Dropping Elephant Deploys Advanced Fileless Malware, Neutralizing AMSI…
    Jun 19, 2026
  • ShinyHunters Exploits Oracle PeopleSoft Zero-Day, Compromises Universi…
    Jun 19, 2026
  • Cybercriminals Weaponize Wallpaper Engine to Hijack Steam Accounts in …
    Jun 19, 2026
  • AI-Powered ClickFix Campaign Targets Brazilian Banks, Deploys SmartRAT…
    Jun 19, 2026

Popular Posts

No posts found.

Find Me On

©Cyber Security Priority 1(P1) News 2026. All Rights Reserved.
  • Contact
  • Privacy Policy
  • Terms of Service