June 4, 2026 Hackers are actively exploiting a critical remote code execution (RCE) vulnerability in the Everest Forms Pro WordPress plugin, allowing unauthenticated attackers to inject and execute arbitrary PHP …
Hackers Abusing Microsoft Teams and Google Drive to Deploy Remote Access Malware
June 4, 2026 Hackers are increasingly abusing trusted enterprise platforms such as Microsoft Teams and Google Drive to deploy stealthy remote access malware, with a newly observed campaign leveraging social …
Cisco Unified Communications Manager Vulnerability Exposed Along With PoC Exploit Code
June 4, 2026 Cisco has disclosed a critical server-side request forgery (SSRF) vulnerability in its Unified Communications Manager (Unified CM) and Unified CM Session Management Edition (SME). Tracked as CVE-2026-20230, …
CISA Warns of Android Framework Integer Overflow Vulnerability Exploited in Attacks
June 4, 2026 The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a newly identified Android Framework vulnerability, tracked as CVE-2025-48595, to its Known Exploited Vulnerabilities (KEV) catalog, warning …
Hackers Use Fake Chrome Web Store Copyright Notices to Steal Google Credentials
June 4, 2026 A new phishing campaign is targeting Chrome extension developers using fake copyright removal notices that look like official messages from the Chrome Web Store. The scam tricks …
Acer Working to Patch Wave 7 Router 0-day Vulnerability
June 4, 2026 Acer is preparing a firmware update to address a critical zero-day vulnerability affecting its Wave 7 routers, following disclosure by independent security researcher Gergo Pap. The issue …
Bots Surpass Humans in Global Web Traffic for the First Time in Internet History
June 4, 2026 For the first time ever, automated bots have officially overtaken human users in global internet traffic, and the shift is accelerating faster than even industry leaders predicted. …
Microsoft Unveils Always-On AI Agent Scout to Integrate With Teams, Outlook, and More
June 4, 2026 Microsoft has officially introduced Microsoft Scout, its first-ever “Autopilot” AI agent, a persistent, always-on autonomous assistant designed to operate continuously across Microsoft 365 apps without waiting to …
New Google Gemini Vulnerability Exploited via Prompt Injections from WhatsApp, Slack, and SMS
June 3, 2026 A new class of indirect prompt injection (IPI) attacks targets Google Gemini’s voice assistant, allowing attackers to silently hijack the AI through malicious payloads delivered via everyday …
Hackers Using AI Tools to Automate Active Directory Attacks and EDR Evasion
June 3, 2026 A threat actor used AI-assisted tools to automate Active Directory discovery and test endpoint detection and response (EDR) evasion techniques, highlighting the rise of AI-supported post-exploitation frameworks. …
