OWASP ZAP Introduces New PTK Add-On, Bringing Browser-Based Security Testing Into One Unified Workflow
The Zed Attack Proxy (ZAP), a popular open-source security testing tool, now includes native support for the…
continue reading..
Curl Ends Bug Bounty Program After Surge of AI-Generated Vulnerability Reports
The curl project, a cornerstone of modern internet infrastructure, has announced that it will end its bug…
continue reading..
Critical SmarterMail Vulnerability Under Active Attack, Admin Accounts Compromised
A critical security vulnerability has been discovered in SmarterTools’ SmarterMail email server software, and it is currently…
continue reading..
Okta Warns of Vishing-Driven Attacks Targeting SSO Accounts
Okta has publicly warned organizations about a growing wave of attacks that combine voice phishing (vishing) with…
continue reading..
Notepad and Paint Receive Feature Boost as Microsoft Pushes AI Deeper into Windows Apps
Microsoft has started rolling out fresh updates for two core Windows 11 Inbox apps — Notepad and…
continue reading..
Hackers Trigger 29 Zero-Day Flaws on Day Two of Pwn2Own Automotive Competition
Overall Competition Progress Why This Matters Pwn2Own Automotive is not just a competition — it’s a crucial…
continue reading..
Microsoft Teams Introduces Brand Impersonation Protection for Calls
Microsoft Teams is getting a new security upgrade aimed at tackling a growing and costly problem: brand…
continue reading..
Critical Telnet Flaw in GNU Inetutils Allows Remote Root Access Without Authentication
CVE-2026-24061 is a critical authentication bypass vulnerability affecting the telnetd service shipped with GNU Inetutils. The issue…
continue reading..
FortiGate Firewalls Targeted in Widespread Automated Campaign to Exfiltrate Config Files
Threat actors are actively exploiting Fortinet FortiGate firewalls in a new cluster of automated attacks that target…
continue reading..
