CYBER ATTACK

ZerOwl — Find Vulnerabilities Before Hackers Do
Fake Xeno Roblox Executor Delivers Java RAT Through Discord and Gaming Forums

Fake Xeno Roblox Executor Delivers Java RAT Through Discord and Gaming Forums

CYBER ATTACKZerowl

A malware attack is targeting Roblox players with a deceptive version of the Xeno script executor tool This article explores theft stage malware. . The.

Critical Gitea Vulnerability Exposes Configuration Files, Tokens and Server Secrets

Critical Gitea Vulnerability Exposes Configuration Files, Tokens and Server Secrets

CYBER ATTACKZerowl

A significant vulnerability in Gitea, identified as CVE-2026-59774, enables unauthenticated remote attackers to read arbitrary files on affected servers.

CISA Warns of N-able N-central Authentication Bypass Vulnerability Exploited in Attacks

CISA Warns of N-able N-central Authentication Bypass Vulnerability Exploited in Attacks

CYBER ATTACKZerowl

CISA has issued a warning that cybercriminals are actively exploiting a critical authentication bypass flaw in N-able's N-central system. This.

Chinese-Speaking Operator Runs DarkSword iOS Exploit Kit Across 180 Web Properties

Chinese-Speaking Operator Runs DarkSword iOS Exploit Kit Across 180 Web Properties

CYBER ATTACKZerowl

A Chinese threat operator has spread a DarkSword iOS exploit kit across 180 websites, based on infrastructure scanning data. The operation involves.

Access Broker Steals Kerberos Secrets to Gain Permanent Control of Enterprise Domains

Access Broker Steals Kerberos Secrets to Gain Permanent Control of Enterprise Domains

CYBER ATTACKZerowl

A compromised server linked to a Russia-nexus threat actor has revealed a massive initial access operation targeting organizations worldwide This article.

Thermo Fisher Flaw Lets Attackers Secretly Alter DNA Analysis Data

Thermo Fisher Flaw Lets Attackers Secretly Alter DNA Analysis Data

CYBER ATTACKZerowl

Discover how Thermo Fisher Scientific has released security patches for a high-severity vulnerability impacting Applied Biosystems’ DNA-analysis.

Telegram App Reportedly Vanished from Apple’s App Store Worldwide

Telegram App Reportedly Vanished from Apple’s App Store Worldwide

CYBER ATTACKZerowl

Telegram briefly vanished from Apple's App Store across several countries late Monday, causing confusion and speculation on social media before the app.

Researchers Link Chinese Cyber Vendor to PLA’s RedRelay Covert Attack Network

Researchers Link Chinese Cyber Vendor to PLA’s RedRelay Covert Attack Network

CYBER ATTACKZerowl

Researchers have linked Guangdong Chanming Technology Co., Ltd., a little-known Chinese cybersecurity vendor, to RedRelay, an alleged covert relay network.

New BINDCLOAK Backdoor Steals Windows Tokens and Loads Malware Directly Into Memory

New BINDCLOAK Backdoor Steals Windows Tokens and Loads Malware Directly Into Memory

CYBER ATTACKZerowl

Security researchers have identified BINDCLOAK, a new modular Windows backdoor linked to an East Asia-connected threat actor targeting government.

Malware Can Steal Your Google Synced Passkey Without Asking for Your Password or Fingerprint

Malware Can Steal Your Google Synced Passkey Without Asking for Your Password or Fingerprint

CYBER ATTACKZerowl

Research has found that malware already on a hacked Windows PC can steal Google’s synced passkeys and access the account without the victim having to.

Fake Wi-Fi Repair Prompts Trick Travelers Into Running Midnight Blizzard Malware

Fake Wi-Fi Repair Prompts Trick Travelers Into Running Midnight Blizzard Malware

CYBER ATTACKZerowl

The CaptiveCrunch campaign has been underway since May 2026. The attackers manipulate DNS and web traffic on captive portals used by networks with hotel.

Fake AI Developer Tools Deliver Infostealers to Steal Credentials and Cloud API Keys

Fake AI Developer Tools Deliver Infostealers to Steal Credentials and Cloud API Keys

CYBER ATTACKZerowl

Complex supply-chain attack delivers malicious packages to Alibaba Group developers posing as internal tools. The operation lasted more than three months.

DPRK NullReceiver Malware Hides C2 IPs in Zero-Value Ethereum Transactions

DPRK NullReceiver Malware Hides C2 IPs in Zero-Value Ethereum Transactions

CYBER ATTACKZerowl

Researchers have discovered a new npm malware technique linked to the DPRK that conceals command-and-control (C2) infrastructure within generic Ethereum.

cPanel & WHM Flaw Lets Authenticated Users Execute Database Commands With Admin Privileges

cPanel & WHM Flaw Lets Authenticated Users Execute Database Commands With Admin Privileges

CYBER ATTACKZerowl

A publicly available vulnerability has been disclosed in cPanel & WHM This article explores cpanel credentials exploited. . This vulnerability allows.

Check Point bug allows attackers to bypass authentication, take over security management system entirely

Check Point bug allows attackers to bypass authentication, take over security management system entirely

CYBER ATTACKZerowl

Security updates have been released by Check Point to fix a high severity authentication-bypass vulnerability affecting Security Management Server and.

TP-Link TL-WR940N Vulnerability Enables Remote Code Execution Attacks

TP-Link TL-WR940N Vulnerability Enables Remote Code Execution Attacks

CYBER ATTACKZerowl

TP-Link has issued a security alert concerning a high-severity vulnerability affecting its TL-WR940N V6 wireless router This article explores connection.

Public PoC Released for Critical Rails Active Storage RCE Vulnerability

Public PoC Released for Critical Rails Active Storage RCE Vulnerability

CYBER ATTACKZerowl

A significant vulnerability in Ruby on Rails has sparked new worries about cloud data breaches, especially for companies that host customer platforms on.

DNA Test Software Vulnerability Allows Attackers to Alter Analysis Data

DNA Test Software Vulnerability Allows Attackers to Alter Analysis Data

CYBER ATTACKZerowl

Discover how Thermo Fisher Scientific has disclosed a high-severity security flaw impacting several Applied Biosystems Human Identification software.

Weekly Cybersecurity Newsletter — Top 50 Cybersecurity Stories of the Week (July 27–August 1, 2026)

Weekly Cybersecurity Newsletter — Top 50 Cybersecurity Stories of the Week (July 27–August 1, 2026)

CYBER ATTACKZerowl

Welcome to this edition of the ZeroOwl weekly cybersecurity newsletter — your cybersecurity bulletin covering the 50 most important stories from July 27.

OpenAI CEO Sam Altman Claims AI Has Reached the Singularity

OpenAI CEO Sam Altman Claims AI Has Reached the Singularity

CYBER ATTACKZerowl

OpenAI’s CEO, Sam Altman, announced that artificial intelligence has reached the long-discussed singularity stage, where AI systems begin improving.

Hugging Face Diffusers Vulnerabilities Enable Remote Code Execution Through Malicious AI Models

Hugging Face Diffusers Vulnerabilities Enable Remote Code Execution Through Malicious AI Models

CYBER ATTACKZerowl

A set of high-severity vulnerabilities in Hugging Face’s diffusers library enables malicious model repositories to silently execute arbitrary code on any.

Hackers Exploit VeloCloud Orchestrator Command Injection Vulnerability in the Wild

Hackers Exploit VeloCloud Orchestrator Command Injection Vulnerability in the Wild

CYBER ATTACKZerowl

Security researchers have issued a warning about a critical command injection vulnerability being actively exploited in on-premises VeloCloud Orchestrator.

Dysphoria’s Hybrid Blockchain and Relay Architecture Makes Botnet Takedowns Harder

Dysphoria’s Hybrid Blockchain and Relay Architecture Makes Botnet Takedowns Harder

CYBER ATTACKZerowl

Since the first quarter of 2026, researchers at XLab have been monitoring an IoT botnet family known as Dysphoria This article explores detected fbot.

Critical TP-Link Router Flaw Lets Unauthenticated Attackers Execute Code Remotely

Critical TP-Link Router Flaw Lets Unauthenticated Attackers Execute Code Remotely

CYBER ATTACKZerowl

A newly disclosed vulnerability in TP-Link's TL-WR940N router allows unauthenticated attackers to execute remote code, putting millions of home and.

Critical N-able N-central Flaws Actively Exploited to Gain God-Mode Access to MSP Networks

Critical N-able N-central Flaws Actively Exploited to Gain God-Mode Access to MSP Networks

CYBER ATTACKZerowl

N-able has identified an active exploit targeting its N-central RMM platform, which provides unauthenticated administrative access to console MSPs.

Coldcard Vulnerability Drains 1,196 Bitcoin Addresses, Stealing $70.2 Million

Coldcard Vulnerability Drains 1,196 Bitcoin Addresses, Stealing $70.2 Million

CYBER ATTACKZerowl

A firmware entropy flaw in Coinkite's Coldcard hardware wallet enabled an attacker to drain 1,196 Bitcoin addresses of approximately $70 million worth of.

CMMC Phase II Paused: But Defense Contractors Can’t Pause Security

CMMC Phase II Paused: But Defense Contractors Can’t Pause Security

CYBER ATTACKZerowl

The pause in Phase II of the Cybersecurity Maturity Model Certification (CMMC) program has caused a ripple effect throughout the Defense Industrial Base.

Top 5 this week

Page 13 of 61