VideoLAN, the organization behind the popular VLC Media Player, has disclosed multiple critical vulnerabilities that could allow attackers to execute arbitrary code remotely. These vulnerabilities affect both the desktop and …
ComfyUI Users Targeted by Malicious Code Designed to Steal Login Credentials
The research team has recently reported a concerning incident involving the popular Stable Diffusion user interface, ComfyUI. This event has sent shockwaves through the AI community, highlighting the potential dangers …
Chinese Hackers Compromised 20K FortiGate Systems worldwide
At the beginning of 2024, there were reports of Chinese threat actors targeting FortiGate systems with COATHANGER malware. However, it has been discovered that the Chinese cyber espionage campaign had …
Critical Microsoft Outlook Zero-Click RCE Flaw Executes as Email is Opened
A critical zero-click remote code execution (RCE) vulnerability has been discovered in Microsoft Outlook. This vulnerability, designated as CVE-2024-30103, enables attackers to run arbitrary code by sending a specially designed …
Patch Tuesday, June 2024 “Recall” Edition
Microsoft today released updates to fix more than 50 security vulnerabilities in Windows and related software, a relatively light Patch Tuesday this month for Windows users. The software giant also …
Researchers Detailed ValleyRAT Password Stealing Techniques
Hackers use RATs to get unauthorized access and full control of the victim’s computer and all its functionalities and enable other malicious abilities. They allow the threat actors to control …
Canada & U.K. To Launch Investigation over 23andMe Hack
Privacy regulators in Canada and the United Kingdom have initiated a collaborative inquiry into the genetic testing firm 23andMe in response to a major data breach, marking a significant step …
Popular Biometric Terminal Vulnerable To QR Code SQL Injection
A popular hybrid biometric terminal manufactured by ZKTeco has been found to have several critical vulnerabilities, including a significant flaw that allows for SQL injection via QR codes. This discovery …
APT Hackers Abusing Google & OneDrive To Host Malicious Scripts
Threat actors are leveraging cloud storage services like Google Drive, OneDrive, and Dropbox to distribute malware and steal user information by uploading malicious files such as scripts, RAT (Remote Access …
UNC5537 Hackers Hijacking Snowflake Customer Instances
Threat actors penetrate the networks with the aim of obtaining unauthorized access to personal and corporate details, bank accounts, and organizational resources for purposes of identity theft, fraud, and data …



