eScan Antivirus Update Server Compromised in Supply Chain Attack, Malware Distributed to Users
On January 20, a supply chain compromise was identified involving the eScan antivirus product developed by MicroWorld…
continue reading..
Trusted Tool Turned Trojan: EmEditor Official Installer Hijacked in Sophisticated Supply-Chain Attack
In late December 2025, a sophisticated software supply chain compromise was discovered affecting EmEditor, a widely-used Windows…
continue reading..
175,000 Ollama AI Servers Found Exposed Online, Raising Global Security Concerns
A joint investigation by SentinelOne’s SentinelLABS and Censys has uncovered approximately 175,000 publicly accessible Ollama AI server…
continue reading..
New Critical SmarterMail Vulnerability Allows Attackers to Take Over Mail Servers Without Authentication
CVE-2026-24423 is a critical unauthenticated remote code execution (RCE) vulnerability in SmarterTools SmarterMail.The flaw exists in an…
continue reading..
Wireshark 4.6.3 Patches Dissector and Parser Crashes Triggered by Malformed Traffic
The Wireshark team has released version 4.6.3 of its widely used open-source network protocol analyzer. This release…
continue reading..
Marquis Says SonicWall Cloud Backup Compromise Led to Ransomware Incident
Marquis Software Solutions, a Texas-based fintech vendor that provides services to banks and credit unions, says a…
continue reading..
Researchers Uncover Android RAT Campaign Abusing Hugging Face Infrastructure to Deliver Rapidly Evolving Malware
Security researchers have uncovered a large-scale Android remote access trojan (RAT) campaign that blends classic social engineering…
continue reading..
CISA Flags Two Actively Exploited Ivanti EPMM Zero-Day Vulnerabilities
Ivanti has disclosed two critical security flaws — CVE-2026-1281 and CVE-2026-1340 — affecting Ivanti Endpoint Manager Mobile…
continue reading..
ShinyHunters Claim Breach of Match Group, Exposing Data Linked to Hinge, Match.com, and OkCupid
A cybercriminal group known as ShinyHunters claims it has breached Match Group, the U.S.-based parent company behind…
continue reading..
