Cybersecurity experts have identified a malicious QR code reader app on Google Play that is delivering the notorious Anatsa banking malware. This discovery underscores the persistent threat posed by malicious …
ChatGPT for MacOS Store All The Conversation in Plain Text
Significant security concerns have been raised regarding the OpenAI ChatGPT app on macOS. The app reportedly stores user conversations in plain text in a non-protected location, sparking a debate about …
MSI Installer Vulnerability Let Attackers Escalate Privileges with Windows Systems
A critical local privilege escalation vulnerability has been discovered in MSI Center versions 2.0.36.0 and earlier, allowing low-privileged users to escalate their privileges on Windows systems. This security flaw, tracked …
International Operation Takes Down 593 Malicious Cobalt Strike Servers
Law enforcement agencies from around the world have successfully shut down 593 rogue servers running unauthorized versions of Cobalt Strike, a tool often misused by cybercriminals. The operation, codenamed “Operation …
The Not-So-Secret Network Access Broker x999xx
Most accomplished cybercriminals go out of their way to separate their real names from their hacker handles. But among certain old-school Russian hackers it is not uncommon to find major …
Free Malware Research with ANY.RUN Sandbox: Now Windows 10 Access for All Users
In a significant move to enhance cybersecurity analysis for all its users, ANY.RUN has announced that Windows 10 is now available to everyone, including Community plan users. This update marks …
Proton Launched a New end-to-end encrypted Document Editor to Take On Google Docs
Proton, the privacy-focused technology company, has unveiled a groundbreaking addition to its suite of secure services: This new offering aims to challenge industry giants like Google Docs and Microsoft 365 …
Hackers Breaking Passkeys Using AitM Phishing Attacks
Hackers abuse phishing attacks as they are highly effective and low-cost methods for deceiving users into revealing sensitive information. Despite the recent surge in passkey adoption by large tech firms, …
Multiple Flaws In Rockwell Automation Panel Let Attackers Execute Remote Code
Two vulnerabilities in Rockwell Automation PanelView Plus have been discovered. Unauthenticated attackers could exploit them remotely to perform remote code execution (RCE) and denial-of-service attacks. Rockwell Automation, Inc. is an …
Hackers Exploiting HTTP File Server Remote Code Execution Vulnerability in Wild
Hackers are actively exploiting a remote code execution vulnerability in the HTTP File Server (HFS) program. The vulnerability, identified as CVE-2024-23692, was disclosed in May 2024 and has since been …





