News
-
Chrome Zero-Day CVE-2026-5281 Actively Exploited, Update Your Browser Now
Read more: Chrome Zero-Day CVE-2026-5281 Actively Exploited, Update Your Browser NowGoogle has released a major security update for Google Chrome to address 21 vulnerabilities, including a dangerous zero-day flaw identified as CVE-2026-5281 that is already being actively exploited. This vulnerability is a use-after-free bug found…
-
Claude Chrome Extension Bug Enables Zero-Click XSS Prompt Injection
Read more: Claude Chrome Extension Bug Enables Zero-Click XSS Prompt InjectionA critical vulnerability in the Claude Chrome Extension from Anthropic allowed attackers to inject malicious prompts without any user interaction. This flaw, known as ShadowPrompt, made it possible for a victim to be compromised simply…
-
FCC Bans Foreign-Made Routers Over Cybersecurity Risks
Read more: FCC Bans Foreign-Made Routers Over Cybersecurity RisksThe Federal Communications Commission (FCC) has announced a ban on new foreign-made consumer routers, citing serious cybersecurity and supply chain risks. This decision prevents newly manufactured routers from overseas vendors from being marketed or sold…
-
LeakNet Ransomware Uses ClickFix and Deno for Stealth Attacks
Read more: LeakNet Ransomware Uses ClickFix and Deno for Stealth AttacksThe LeakNet ransomware group has adopted a new attack method using ClickFix, a social engineering technique delivered through compromised websites. Instead of relying on stolen credentials, attackers trick users into running malicious commands—such as msiexec.exe—via…
-
Ubuntu CVE-2026-3888 Bug Can Lead to Root Access
Read more: Ubuntu CVE-2026-3888 Bug Can Lead to Root AccessA serious security flaw has been discovered in Ubuntu Desktop versions 24.04 and later, allowing attackers to gain root access. Tracked as CVE-2026-3888 with a CVSS score of 7.8, this vulnerability is considered high risk…
-
OpenClaw AI Agent Security Flaws Raise Risk of Prompt Injection and Data Theft
Read more: OpenClaw AI Agent Security Flaws Raise Risk of Prompt Injection and Data TheftSecurity authorities in China have issued a warning about serious vulnerabilities in OpenClaw AI agent, an open-source and self-hosted autonomous artificial intelligence platform formerly known as Clawdbot and Moltbot. The China National Computer Network Emergency…
-
CISA Adds VMware Aria Operations Vulnerability CVE-2026-22719 to KEV Catalog
Read more: CISA Adds VMware Aria Operations Vulnerability CVE-2026-22719 to KEV CatalogThe U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a newly disclosed VMware Aria Operations vulnerability (CVE-2026-22719) to its Known Exploited Vulnerabilities (KEV) catalog after reports of active exploitation in the wild. The flaw…
-
Fake Laravel Packages on Packagist Install RAT Malware on Windows, macOS, and Linux
Read more: Fake Laravel Packages on Packagist Install RAT Malware on Windows, macOS, and LinuxCybersecurity researchers have discovered malicious Laravel packages on Packagist that secretly install a Remote Access Trojan (RAT) capable of infecting Windows, macOS, and Linux systems. These packages appear to be helpful Laravel utilities but are…
-
Researchers Link CyberStrikeAI to Global FortiGate Hacks
Read more: Researchers Link CyberStrikeAI to Global FortiGate HacksResearchers have discovered that the threat actor behind a recent AI-assisted cyberattack targeting Fortinet FortiGate appliances used an open-source offensive security platform called CyberStrikeAI. According to Team Cymru, the attacker conducted automated mass scanning using…
-
Claude Code Vulnerabilities Enable RCE and API Key Theft
Read more: Claude Code Vulnerabilities Enable RCE and API Key TheftSecurity researchers have uncovered multiple high-risk vulnerabilities in Claude Code, the AI-powered coding assistant from Anthropic. The flaws could allow attackers to achieve remote code execution (RCE) and steal API credentials when developers open untrusted…










