How a Single Agent Could Compromise an Entire Project Security researchers at Varonis uncovered a critical vulnerability in Google Dialogflow CX that could have allowed attackers...
RedWing Android malware: A new Telegram rental for bank fraud A fresh Android malware operation, dubbed RedWing, is being rented out on Telegram as a ready-made...
The Pitch: Million-Dollar Bounties for Hacker Talent An aggressive new player has entered the high-stakes world of zero-day acquisitions. IRIS C2, a self-described cybersecurity firm based...
More Than 100 Open Source Packages Weaponized in Ongoing Campaign Since December 2025, a threat group linked to North Korea has been systematically compromising open source...
The Flaw That Let a Rogue Agent Run Wild In late 2025, security researchers at Varonis uncovered a troubling vulnerability in Google’s Dialogflow CX, the enterprise-grade...
Critical Security Holes Closed Across Ubiquiti’s Ecosystem Ubiquiti has shipped urgent security updates for five of its UniFi product lines — Connect, Talk, Access, Protect, and...
A Targeted Assault on Academic Email A threat group with suspected ties to China has been caught exploiting known vulnerabilities in Roundcube, an open-source webmail platform,...
A previously undocumented advanced persistent threat (APT) group has been quietly breaching government agencies and electric power providers across at least three countries. Dubbed Armored Likho...
Another Citrix Flaw, Another Race to Patch It didn’t take long. Just hours after security researchers published a working proof-of-concept exploit for a newly disclosed memory...
A New Phishing Wave Hits Marketing Professionals A sophisticated phishing campaign is making the rounds, and it has a very specific target: marketing professionals. The hook?...