Topic: cybersecurity advisory

  • CISA warns ‘Copy Fail’ bug exploited to root Linux systems

    CISA warns ‘Copy Fail’ bug exploited to root Linux systems

    CISA has issued an urgent alert about active exploitation of the "Copy Fail" vulnerability (CVE-2023-xxx) in Linux systems, which grants root-level access, after security researchers publicly disclosed the bug and released a proof-of-concept exploit. The flaw allows unauthenticated privilege esca...

    Read More »
  • Iranian Hackers Target US Water and Energy Systems

    Iranian Hackers Target US Water and Energy Systems

    Iranian state-linked hackers are actively targeting U.S. critical infrastructure, specifically energy and water utilities, by compromising industrial control systems like programmable logic controllers (PLCs). The campaign, attributed to the IRGC-linked group CyberAv3ngers, has already caused dis...

    Read More »
  • Vercel Cloud Platform Breached in Security Hack

    Vercel Cloud Platform Breached in Security Hack

    A security breach at Vercel originated from a compromised third-party AI tool, specifically exploiting its Google Workspace OAuth application. This vulnerability is part of a larger, widespread attack that could affect hundreds of users across multiple organizations. The security community is sha...

    Read More »
  • Cisco FMC Flaw Exploited Before Patch (CVE-2026-20131)

    Cisco FMC Flaw Exploited Before Patch (CVE-2026-20131)

    The Interlock ransomware gang exploited a critical zero-day vulnerability (CVE-2026-20131) in Cisco's Secure Firewall Management Center for over a month before a patch was released, using it for arbitrary code execution and privilege escalation. Amazon's threat intelligence, using a honeypot, unc...

    Read More »
  • Russian Hackers Breach Officials' Encrypted Messaging Apps

    Russian Hackers Breach Officials' Encrypted Messaging Apps

    Russian state-backed hackers are targeting diplomats and officials by exploiting security features on Signal and WhatsApp, using social engineering to trick users into revealing login or device-linking codes. The campaign does not breach the apps' core encryption but compromises individual accoun...

    Read More »
  • Ivanti EPMM "sleeper" webshells pose hidden threat

    Ivanti EPMM "sleeper" webshells pose hidden threat

    A critical vulnerability (CVE-2026-1281) in Ivanti's EPMM platform is being actively exploited, with attackers implanting hidden, dormant backdoors that are difficult to detect. The exploitation campaign, linked to initial access brokers, has already compromised several high-profile organizations...

    Read More »
  • Cisco Patches 48 Firewall Flaws, Warns of Active SD-WAN Attacks

    Cisco Patches 48 Firewall Flaws, Warns of Active SD-WAN Attacks

    Cisco has issued critical patches for two actively exploited vulnerabilities in its Catalyst SD-WAN Manager, which could allow attackers to gain elevated system privileges. The company also fixed 48 flaws in its firewall products, including two maximum-severity issues: an authentication bypass an...

    Read More »
  • CISA orders feds to patch exploited Ivanti zero-day in 4 days

    CISA orders feds to patch exploited Ivanti zero-day in 4 days

    CISA has issued an urgent directive requiring federal agencies to patch a high-severity Ivanti zero-day vulnerability (CVE-2026-6973) within four days, as it is being actively exploited in attacks against Ivanti Endpoint Manager Mobile (EPMM) versions 12.8.0.0 and earlier. The vulnerability allow...

    Read More »
  • Discord Data Breach Exposed in Third-Party Hack

    Discord Data Breach Exposed in Third-Party Hack

    Discord experienced a security breach through a third-party customer service provider, exposing sensitive user data in a ransomware attack. Compromised information includes user names, email addresses, partial billing details, support messages, and some government ID images, but passwords and ful...

    Read More »
  • New Phishing Attack Deploys RATs Using UpCrypter Evasion

    New Phishing Attack Deploys RATs Using UpCrypter Evasion

    A global phishing campaign uses personalized emails and fake websites to distribute malicious downloads, employing the UpCrypter loader to deploy remote access trojans for prolonged unauthorized access. The attack involves HTML attachments redirecting to deceptive sites, with variations like voic...

    Read More »