June 4, 2026 Cisco has disclosed a critical server-side request forgery (SSRF) vulnerability in its Unified Communications Manager (Unified CM) and Unified CM Session Management Edition (SME). Tracked as CVE-2026-20230, …
CISA Warns of Android Framework Integer Overflow Vulnerability Exploited in Attacks
June 4, 2026 The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a newly identified Android Framework vulnerability, tracked as CVE-2025-48595, to its Known Exploited Vulnerabilities (KEV) catalog, warning …
Hackers Use Fake Chrome Web Store Copyright Notices to Steal Google Credentials
June 4, 2026 A new phishing campaign is targeting Chrome extension developers using fake copyright removal notices that look like official messages from the Chrome Web Store. The scam tricks …
Acer Working to Patch Wave 7 Router 0-day Vulnerability
June 4, 2026 Acer is preparing a firmware update to address a critical zero-day vulnerability affecting its Wave 7 routers, following disclosure by independent security researcher Gergo Pap. The issue …
Bots Surpass Humans in Global Web Traffic for the First Time in Internet History
June 4, 2026 For the first time ever, automated bots have officially overtaken human users in global internet traffic, and the shift is accelerating faster than even industry leaders predicted. …
Microsoft Unveils Always-On AI Agent Scout to Integrate With Teams, Outlook, and More
June 4, 2026 Microsoft has officially introduced Microsoft Scout, its first-ever “Autopilot” AI agent, a persistent, always-on autonomous assistant designed to operate continuously across Microsoft 365 apps without waiting to …
New Google Gemini Vulnerability Exploited via Prompt Injections from WhatsApp, Slack, and SMS
June 3, 2026 A new class of indirect prompt injection (IPI) attacks targets Google Gemini’s voice assistant, allowing attackers to silently hijack the AI through malicious payloads delivered via everyday …
Hackers Using AI Tools to Automate Active Directory Attacks and EDR Evasion
June 3, 2026 A threat actor used AI-assisted tools to automate Active Directory discovery and test endpoint detection and response (EDR) evasion techniques, highlighting the rise of AI-supported post-exploitation frameworks. …
Critical Apache ActiveMQ Vulnerability Allows Malicious Security Header Injections
June 3, 2026 A critical vulnerability in Apache ActiveMQ has been disclosed, allowing attackers to inject malicious HTTP security headers through improperly handled message properties, potentially leading to cross-site scripting …
Hackers Use YouTube and SEO Poisoning to Spread WeedHack Minecraft Malware
June 3, 2026 Hackers are hiding dangerous malware inside what look like popular Minecraft mods and game clients, using YouTube videos and search engine tricks to pull unsuspecting players into …
