Category: Exploits
SEO-Poisoned Sites Abuse ScreenConnect to Drop AsyncRAT
Kaspersky has identified a large-scale campaign using fake software download sites and ScreenConnect to deliver the AsyncRAT remote access trojan to unsuspecting…
Cisco Confirms Active Exploitation of Unified CM SSRF Flaw
Cisco has formally acknowledged that attackers are actively exploiting CVE-2026-20230, a server-side request forgery vulnerability in Unified Communications Manager patched in early…
CitrixBleed-Style NetScaler Flaw Exploited Within 24 Hours of Disclosure
A newly disclosed memory-disclosure vulnerability in NetScaler ADC and Gateway drew active exploitation attempts less than a day after Citrix released patches…
SimpleHelp Auth Bypass Exploited to Drop TaskWeaver and Djinn Stealer
Attackers are actively exploiting a maximum-severity authentication bypass in SimpleHelp to deliver two newly identified malware families, with the infostealer component targeting…
Scattered Spider Suspect, 19, Extradited from Finland to Face U.S. Charges
Peter Stokes, a dual U.S.-Estonian citizen, has been extradited from Finland and appeared in a Chicago federal court on charges of conspiracy,…
ChocoPoC RAT Targets Security Researchers via Trojanized GitHub PoCs
A Python-based remote access trojan named ChocoPoC is being distributed through weaponized proof-of-concept exploit repositories on GitHub, targeting cybersecurity researchers who test…
Scattered Spider Suspect Extradited to US After Finnish Arrest
A 19-year-old dual US-Estonian citizen faces federal charges tied to a luxury retailer breach and an $8 million ransom demand, after being…
Alleged Scattered Spider Member Extradited to US After Finland Arrest
Peter Stokes, a 19-year-old dual US-Estonian citizen, has been extradited to the United States to face fraud, conspiracy, and computer intrusion charges…
BlueHammer Flaw in Microsoft Defender Now Linked to Ransomware Campaigns
CISA has updated its Known Exploited Vulnerabilities catalog to confirm that CVE-2026-33825, a privilege escalation flaw in Microsoft Defender, is being actively…
Azure CLI Password Spray Campaign Hits 78+ Microsoft Accounts in 81M Attempts
A large-scale, automated password spray attack targeting Microsoft's Azure CLI compromised at least 78 accounts across a two-week window, researchers at Huntress…
81 Million Login Attempts Hit Azure CLI in Massive Password Spray Campaign
Huntress tracked over 81 million credential spray attempts against Microsoft 365 environments between June 12 and 21, with attackers abusing the OAuth…
Langflow RCE Flaw Exploited to Drop Monero Miner on AI Endpoints
Attackers are actively exploiting a critical unauthenticated remote code execution vulnerability in Langflow to deploy Monero cryptocurrency mining malware on exposed AI…