Latest News

Vulnerabilities

CVE: Claude Chrome Extension Flaw

A flaw in the Claude Chrome extension allows malicious extensions to trigger predefined AI actions, potentially abusing access to connected services like Gmail and Salesforce.

Vulnerabilities

SonicWall Zero-Day Vulnerabilities Exploited

Attackers are exploiting two zero-day vulnerabilities, CVE-2026-15409 and CVE-2026-15410, in SonicWall SMA1000 appliances, with the goal of ransomware attacks.

Vulnerabilities

Windows 10 KB5099539 Update Released

Microsoft releases Windows 10 KB5099539 extended security update, fixing 570 vulnerabilities, including two exploited and one publicly disclosed zero-day flaws.

Threats

Election Security Concerns Raised at DNI Nominee Hearing

Democratic senators pressed Jay Clayton, President Trump's pick for director of national intelligence, on election security and integrity, but left unsatisfied with his answers.

Threats

Gemini CLI Abused for Hacking and Malware

A Russian-speaking threat actor used Google's Gemini CLI AI tool to operate a small-scale botnet and deploy malware, with the AI agent responding to prompts and proposing operational improvements.

Threats

Chrome Sync Feature Abused by Stalkers

Cyberstalkers are exploiting Google Chrome's sync feature to spy on device owners' browsing history and gain access to stored passwords, according to researchers at Certo Software.

Vulnerabilities

Windows Bind Link Attacks Evade EDR Tools

Researchers at Bitdefender demonstrate three attack techniques using Windows' bind links to evade endpoint detection and response products, highlighting a security problem that relies heavily on paths.

Vulnerabilities

AI-Generated Code Security Risks

AI-generated code poses significant security risks, with 45% of code produced by AI tools being insecure, according to Veracode's 2025 GenAI Code Security report.

← Prev 1 56789 103 Next →