CYBER ATTACK

ZerOwl — Find Vulnerabilities Before Hackers Do
GitLab Security Update – Patch for XSS and API DoS Vulnerabilities

GitLab Security Update – Patch for XSS and API DoS Vulnerabilities

CYBER ATTACKZerowl

GitLab Security Update Fixes XSS and API DoS Holes GitLab has put out important security updates for its Community Edition (CE) and Enterprise Edition.

Critical Palo Alto Networks Cortex XDR Broker Vulnerability Allows Attackers to Access and Modify Sensitive Data

Critical Palo Alto Networks Cortex XDR Broker Vulnerability Allows Attackers to Access and Modify Sensitive Data

CYBER ATTACKZerowl

Palo Alto Networks has put out a security advisory to let customers know about a new flaw that affects its Cortex XDR Broker Virtual Machine (VM) This.

ClickFix Social Engineering Delivers MacSync Infostealer On Macs

ClickFix Social Engineering Delivers MacSync Infostealer On Macs

CYBER ATTACKZerowl

The ClickFix social engineering method has become a popular way to spread malware in the last few months, especially among macOS users This article.

Chrome Security Update – Patch for 29 Vulnerabilities that Allow Remote Code Execution

Chrome Security Update – Patch for 29 Vulnerabilities that Allow Remote Code Execution

CYBER ATTACKZerowl

Patch for 29 Chrome security holes Google has officially released Chrome version 146 to the stable channel This article explores patch 29 chrome. . This.

CastleRAT Exploits Deno Runtime To Bypass Enterprise Security

CastleRAT Exploits Deno Runtime To Bypass Enterprise Security

CYBER ATTACKZerowl

ThreatDown Research recently found the first documented use of the Deno JavaScript runtime in a CastleRAT attack, which is a big deal in the world of.

UNC6426 Turns NPM Supply‑Chain Breach Into Full AWS Admin Access

UNC6426 Turns NPM Supply‑Chain Breach Into Full AWS Admin Access

CYBER ATTACKZerowl

In 2025, Mandiant found out that the threat group UNC6426 had launched a complex attack that used a hacked NPM package to take complete control of a.

Stryker Corporation Hit by Cyberattack as Hackers Claim System Breach and Device Wipe

Stryker Corporation Hit by Cyberattack as Hackers Claim System Breach and Device Wipe

CYBER ATTACKZerowl

On March 11, 2026, Stryker, a global medical technology company, was hit by a major cyberattack that forced its entire IT infrastructure to shut down This.

Google Completes Acquisition of Wiz in Historic $32 Billion Deal

Google Completes Acquisition of Wiz in Historic $32 Billion Deal

CYBER ATTACKZerowl

Google has officially closed its $32 billion all-cash purchase of Wiz, an Israeli cloud and AI security platform This article explores acquisition.

Google Chrome Security Update Fixes 29 Vulnerabilities, Including Remote Code Execution Flaws

Google Chrome Security Update Fixes 29 Vulnerabilities, Including Remote Code Execution Flaws

CYBER ATTACKZerowl

Discover how Google has released an important security update for its Chrome browser that fixes 29 security holes that could let hackers run harmful code.

Microsoft Releases Cumulative Updates for Windows 11 25H2/24H2 and 23H2

Microsoft Releases Cumulative Updates for Windows 11 25H2/24H2 and 23H2

CYBER ATTACKZerowl

Microsoft's Cumulative Updates Microsoft has released its latest round of cumulative updates for Windows 11 users in March 2026 This article explores.

Instagram Down: New Outage Causes Widespread Disruption in Posting and DM Functionality

Instagram Down: New Outage Causes Widespread Disruption in Posting and DM Functionality

CYBER ATTACKZerowl

Discover how Instagram is down Today, Meta's Instagram platform has had a major service outage that has left thousands of users around the world unable to.

How to Scale Early Threat Detection in Your SOC without Extra Staff

How to Scale Early Threat Detection in Your SOC without Extra Staff

CYBER ATTACKZerowl

Scaling Up Early Threat Detection in Your SOC Early detection isn't just a good idea; it's the main thing that keeps a small incident from turning into a.

Gogs Vulnerability Lets Attackers Quietly Overwrite Big File Storage Objects

Gogs Vulnerability Lets Attackers Quietly Overwrite Big File Storage Objects

CYBER ATTACKZerowl

Gogs Vulnerability Overwrites Large File Storage Objects A serious security hole has been found in a well-known open-source Git service that people host.

Vietnam-Based Fraud Network Powers Large-Scale Account Signup Abuse

Vietnam-Based Fraud Network Powers Large-Scale Account Signup Abuse

CYBER ATTACKZerowl

Okta Threat Intelligence and researchers from the University of Cyprus have found that a lot of fake account registrations are coming from a big.

Red Alert App Trojan Targets Israeli Users, Steals Sensitive Data Through SMS

Red Alert App Trojan Targets Israeli Users, Steals Sensitive Data Through SMS

CYBER ATTACKZerowl

A recent targeted cyberattack is using the trusted Red Alert rocket warning app to spread spyware to Israeli users. On March 1, 2026, the Acronis Threat.

Microsoft .NET 0-Day Vulnerability Enables Denial-of-Service Attacks

Microsoft .NET 0-Day Vulnerability Enables Denial-of-Service Attacks

CYBER ATTACKZerowl

Microsoft .NET 0-Day Flaw A new .NET Framework security flaw, CVE-2026-26127, has been made public, and an emergency update has been released to fix it.

Instagram Suffers Global Outage, Users Unable to Post or Send Messages

Instagram Suffers Global Outage, Users Unable to Post or Send Messages

CYBER ATTACKZerowl

On March 11, 2026, Instagram went down all over the world, making it impossible for thousands of users to use basic features like posting, loading feeds.

Critical Microsoft Office Vulnerability Enables Remote Code Execution Attacks

Critical Microsoft Office Vulnerability Enables Remote Code Execution Attacks

CYBER ATTACKZerowl

Discover how Microsoft has revealed a serious security hole in Microsoft Office that could let hackers run harmful code on affected computers. The flaw.

BlackSanta EDR Killer Malware Attacks HR Workflows in a Multi-Layered Way

BlackSanta EDR Killer Malware Attacks HR Workflows in a Multi-Layered Way

CYBER ATTACKZerowl

Threat actors are now targeting human resources (HR) departments with a complicated malware attack in a scary new campaign. BlackSanta is the name of the.

Zoom Workplace for Windows Vulnerabilities Allow Privilege Escalation

Zoom Workplace for Windows Vulnerabilities Allow Privilege Escalation

CYBER ATTACKZerowl

On March 10, 2026, Zoom put out four security bulletins that revealed several weaknesses in its Windows-based client suite This article explores zoom.

ScamAgent- AI Agent Built by Researchers that Run Fully Autonomous Scam Calls

ScamAgent- AI Agent Built by Researchers that Run Fully Autonomous Scam Calls

CYBER ATTACKZerowl

Sanket Badhe, a researcher at Rutgers University, created ScamAgent, an autonomous, multi-turn AI framework that shows how large language models (LLMs).

SAP Security Update – Patch for Multiple Vulnerabilities that Enable Remote Code Execution

SAP Security Update – Patch for Multiple Vulnerabilities that Enable Remote Code Execution

CYBER ATTACKZerowl

On its March 2026 Patch Day, SAP released 15 new security notes that fixed a number of flaws in its products, including two critical-rated ones that could.

SAP Releases Security Update to Patch Multiple Remote Code Execution Vulnerabilities

SAP Releases Security Update to Patch Multiple Remote Code Execution Vulnerabilities

CYBER ATTACKZerowl

The release covers a wide range of core platforms, including SAP NetWeaver, S/4HANA, Business One, Business Warehouse, and a number of industry and client.

OpenAI to Acquire Promptfoo to Fix Vulnerabilities in AI Systems

OpenAI to Acquire Promptfoo to Fix Vulnerabilities in AI Systems

CYBER ATTACKZerowl

OpenAI Acquire Promptfoo OpenAI has announced its acquisition of Promptfoo, an artificial intelligence security platform designed to help enterprises find.

OpenAI Acquires Promptfoo to Strengthen AI Security and Fix System Vulnerabilities

OpenAI Acquires Promptfoo to Strengthen AI Security and Fix System Vulnerabilities

CYBER ATTACKZerowl

OpenAI has said that it wants to buy Promptfoo, an AI security testing platform that finds and fixes problems in large language model (LLM) applications.

Microsoft Patch Tuesday March 2026 – 78 Vulnerabilities Fixed, Including One 0-day

Microsoft Patch Tuesday March 2026 – 78 Vulnerabilities Fixed, Including One 0-day

CYBER ATTACKZerowl

On March 10, 2026, Microsoft released its Patch Tuesday security update for March 2026 This article explores vulnerability cve 2026. . It fixed 78.

Malformed ZIP Files Allow Attackers to Bypass Antivirus and EDR Detection

Malformed ZIP Files Allow Attackers to Bypass Antivirus and EDR Detection

CYBER ATTACKZerowl

A new vulnerability that enables attackers to conceal malicious files inside specially constructed ZIP archives and potentially get around antivirus and.

Top 5 this week

Page 33 of 61