Cybersecurity

WhatsApp boosts security with passkeys, full password option

Meta announced new account security features for WhatsApp, including support for multiple passkeys per account.The company stated that more than one billion people now...

GitLab Flaw Actively Exploited After Disclosure

A critical GitLab vulnerability (CVE-2026-19478, CVSS 9.4) enables unauthenticated attackers to modify or delete public projects via GraphQL injection.Exploitation has been observed within days...

ToxicPanda 2.0 Android malware targets 349 banks across 16 countries

ToxicPanda 2.0 now supports 167 remote commands and targets over 140 banking and cryptocurrency apps across 16 countries.The malware abuses Android accessibility services to...

CISA Adds 4 Actively Exploited Flaws to KEV Catalog

CISA added four critical vulnerabilities to its Known Exploited Vulnerabilities catalog, including flaws in Apple macOS, Microsoft SharePoint, VMware vCenter, and Microsoft IKE.The Apple...

Critical MLflow and FUXA flaws exploited in wild

Two critical vulnerabilities in MLflow (CVE-2026-64849, CVSS 9.3) and FUXA (CVE-2026-25895, CVSS 9.5) are under active exploitation.Attackers are exploiting the MLflow flaw to reach...

City Forum campaign steals data via Salesforce, ServiceNow guest access

A single server (158.220.87.87) has been systematically extracting data from Salesforce and ServiceNow customer portals for over a year, using a purpose-built Go program.Named...

StubMaker: 16 typosquat RubyGems packages steal data

Cybersecurity researchers have discovered a new typosquatting campaign, tracked as StubMaker, targeting RubyGems users with a Windows-based information stealer.The 16 malicious gem packages were...

SharePoint CVE-2026-55040 exploited after PoC release

Threat actors are actively exploiting a critical Microsoft SharePoint vulnerability (CVE-2026-55040, CVSS 9.1) after a proof-of-concept code was released by Rapid7.The flaw allows unauthenticated...

Latest news

SEC proposes first blockchain-era transfer agent rule update

The SEC proposed the first major update to transfer agent rules since the 1980s, directly addressing blockchain recordkeeping and...

Strategy CEO defends $80K Bitcoin buy after $60K sale

Strategy CEO Phong Le defended buying Bitcoin near $80,000 after selling in the $60,000 range, calling it the "right...

Hyperliquid Strategies boosts equity facility to $2.5B

Hyperliquid Strategies increased its equity facility with Chardan Capital Markets from $1 billion to $2.5 billion.The Nasdaq-listed company previously...