Hackers target US firms in FastJson RCE zero-day attacks
…The project has 25,600 stars and 6,400 forks on GitHub, and is especially prevalent in Chinese enterprise software and projects built on Alibaba's platform. CVE-2026-16723 was discovered…
…The project has 25,600 stars and 6,400 forks on GitHub, and is especially prevalent in Chinese enterprise software and projects built on Alibaba's platform. CVE-2026-16723 was discovered…
…Bishop Fox later demonstrated that the vulnerabilities could be chained to achieve remote code execution with elevated privileges and released a free detection script to help defenders discover vulnerable instances in their…
…Telegram Mini Apps abused for crypto scams, Android malware delivery Bluekit phishing kit adopts browser-in-the-middle for login theft FBI disrupts massive AI-powered phishing service using a million URLs…
…in Tenda router firmware grants admin access Microsoft patches RoguePlanet Defender zero-day vulnerability Microsoft Defender 'RoguePlanet' zero-day grants SYSTEM privileges Path traversal flaw in AI dev platform Langflow exploited in…
…In roughly one-third of the investigated cases, the attackers also attempted to abuse Web Proxy Auto-Discovery (WPAD) by responding to Windows' automatic WPAD lookup with a malicious proxy auto-configuration…
…Yesterday, SearchLight Cyber researcher Adam Kues published a follow-up report diving deep into the process of discovering wp2shell and developing a working exploit chain, which involved using AI tools. Test every…
…This incident was discovered after a threat actor using the "ZeroBytes" handle claimed the attack and listed a stolen database for sale on August 12 on the PwnForums hacking forum. "The in…
Chinese hackers use new Atlas RAT malware in European cyberattacks By Bill Toulas June 3, 2026 05:45 PM A Chinese-speaking cybercrime group has expanded its targeting to the European space…
…Finding Signal in the Noise IT teams struggle to keep up with evolving cyberthreats across client environments. Limited resources and fragmented tools create alert overload and noise hiding threats. Discover how unifying…
…The campaign was discovered by XLab threat intelligence researchers at Chinese cybersecurity company Qianxin, who confirmed impact on more than 700 domains, including university portals, AI/SaaS companies, media outlets, fintech firms…