Middle East Energy Sector on Alert as Emerging Cyber Group ‘Nasir Security’ Targets Supply Chains with Misinformation Tactics
A relatively lesser-known cyber group, Nasir Security, has recently drawn attention within the cybersecurity community due to…
continue reading..
Stealth Identity Attack Exposed: “Ghost SPN” Kerberoasting Technique Evades Traditional Security Defenses
Modern organizations are steadily moving toward identity-centric security models. Instead of focusing only on endpoints or networks,…
continue reading..
Critical Oracle Middleware Flaw (CVE-2026-21992) Exposes Systems to Unauthenticated Remote Code Execution
Executive Summary A recently disclosed security vulnerability, identified as CVE-2026-21992, has been detected in Oracle Identity Manager…
continue reading..
Researchers Uncover Advanced Phishing Operation Harvesting Camera, Audio, and Device Data
Researchers have uncovered a large-scale and ongoing social engineering campaign that is mainly hosted on infrastructure associated…
continue reading..
Google Releases Emergency Chrome Update to Patch Actively Exploited Vulnerabilities CVE-2026-3909 and CVE-2026-3910
Google has released emergency security patches to address two high-severity vulnerabilities affecting the Chrome web browser. These…
continue reading..
Microsoft Authenticator Flaw (CVE-2026-26123) Could Expose One-Time Login Codes on iOS and Android
A recently identified vulnerability in Microsoft Authenticator—affecting both iOS and Android versions—has raised concerns about the potential…
continue reading..
Beyond Simple Backdoors: New Research Reveals the Expanding Webshell Threat Landscape
Webshells are often portrayed as a simple cyber threat: an attacker compromises a web application and installs…
continue reading..
Security Researchers Uncover Proxy Trust Flaw Enabling Authentication Bypass Across Platforms
Many reverse-proxy attack techniques reveal a dangerous assumption embedded in modern web architectures: backend systems often trust…
continue reading..
Iran-Linked Handala Hack Expands Attacks to U.S. Firms with Destructive Wiper Operations
Handala Hack, identified by Check Point Research as Void Manticore, is an Iranian cyber threat group known…
continue reading..
