CYBER ATTACK

ZerOwl — Find Vulnerabilities Before Hackers Do
Splunk Enterprise for Windows Vulnerability Let Attackers Hijack DLLs and Gain SYSTEM Access

Splunk Enterprise for Windows Vulnerability Let Attackers Hijack DLLs and Gain SYSTEM Access

CYBER ATTACKZerowl

Splunk Enterprise for Vulnerabilities in Windows Splunk has revealed a high-severity flaw in Splunk Enterprise for Windows that enables a local user with.

Google Issues Emergency Chrome Security Update to Address High-Severity PDFium and V8 Flaws

Google Issues Emergency Chrome Security Update to Address High-Severity PDFium and V8 Flaws

CYBER ATTACKZerowl

Google Problems Chrome Security Update Emergency Several vulnerabilities, including high-severity issues affecting the browser's core engines, will be.

Cybercriminals Leverage Emoji Code To Evade Traditional Security Measures

Cybercriminals Leverage Emoji Code To Evade Traditional Security Measures

CYBER ATTACKZerowl

Cybercriminals are constantly coming up with new ways to get around established security measures, and one of the newest ones is hiding malicious code.

Cache Deception Vulnerability Found in SvelteKit and Vercel Combo Exposes User Data to Attackers

Cache Deception Vulnerability Found in SvelteKit and Vercel Combo Exposes User Data to Attackers

CYBER ATTACKZerowl

Discover how SvelteKit apps running on Vercel are vulnerable to a severe cache deception flaw known as SvelteSpill, which enables hackers to steal session.

C2 Servers Used By DigitStealer Maliciously Target macOS Devices

C2 Servers Used By DigitStealer Maliciously Target macOS Devices

CYBER ATTACKZerowl

By gathering credentials for account takeovers, financial fraud, and underground market sales, information thieves such as DigitStealer contribute to the.

Advanced Malware Gets Around Air-Gapped Security By Using External Drives

Advanced Malware Gets Around Air-Gapped Security By Using External Drives

CYBER ATTACKZerowl

Malware that can evade security measures, like air-gapped environments, is becoming a bigger threat in the rapidly changing field of cybersecurity This.

Active Attacks Put Corporate Networks at Risk by Exploiting Critical Ivanti EPMM Zero-Day

Active Attacks Put Corporate Networks at Risk by Exploiting Critical Ivanti EPMM Zero-Day

CYBER ATTACKZerowl

Organizations utilizing Ivanti Endpoint Manager Mobile (EPMM), a popular mobile device management (MDM) platform, are being actively targeted by two.

Selective Thread Emulation and Fuzzing Expose DoS Flaws in Socomec DIRIS M-70 IIoT Device

Selective Thread Emulation and Fuzzing Expose DoS Flaws in Socomec DIRIS M-70 IIoT Device

CYBER ATTACKZerowl

Six serious denial-of-service flaws have been found by security researchers in the Socomec DIRIS M-70 industrial gateway, which is used for energy.

Chinas Dual Vulnerability Databases Show a Different Disclosure Timeline Beyond CVE

Chinas Dual Vulnerability Databases Show a Different Disclosure Timeline Beyond CVE

CYBER ATTACKZerowl

The global threat landscape has become more complex as a result of China's unique vulnerability disclosure ecosystem This article explores vulnerabilities.

PromptSpy – First Known Android AI Malware Uses Google’s Gemini for Decision-making

PromptSpy – First Known Android AI Malware Uses Google’s Gemini for Decision-making

CYBER ATTACKZerowl

Google's Gemini is the first known family of Android malware to use a generative AI model as a weapon in its active execution flow This article explores.

Adidas Data Breach: 815,000 Supposedly Stolen Records

Adidas Data Breach: 815,000 Supposedly Stolen Records

CYBER ATTACKZerowl

Following the hacker collective Lapsus$'s public claim to have obtained 815,000 rows of private data from the company's extranet, sportswear giant Adidas.

Threat Actors Using Fake Google Forms Site to Harvest Google Logins

Threat Actors Using Fake Google Forms Site to Harvest Google Logins

CYBER ATTACKZerowl

Job seekers are being targeted by a new phishing campaign that uses phony Google Forms websites to steal login information. The campaign deceives victims.

CISA Issues a Honeywell Warning Vulnerabilities in CCTV Products Cause Account Takeovers

CISA Issues a Honeywell Warning Vulnerabilities in CCTV Products Cause Account Takeovers

CYBER ATTACKZerowl

On February 17, 2026, a critical advisory warning was released under advisory ICSA-26-048-04 about a serious vulnerability affecting Honeywell CCTV.

Microsoft Defender Unveils Centralized Script Library with Copilot Analysis for Enhanced Live Response

Microsoft Defender Unveils Centralized Script Library with Copilot Analysis for Enhanced Live Response

CYBER ATTACKZerowl

Microsoft Defender Centralized Script Library: To completely change the way security analysts handle the scripts and tools they use during live response.

Microsoft Defender Launches Centralized Script Library with Copilot-Powered Analysis

Microsoft Defender Launches Centralized Script Library with Copilot-Powered Analysis

CYBER ATTACKZerowl

A revolutionary update to Microsoft's Defender platform has been released, bringing centralized library management for live response operations. This.

Fake CAPTCHA ClickFix Attack Triggers Enterprise Malware Outbreak

Fake CAPTCHA ClickFix Attack Triggers Enterprise Malware Outbreak

CYBER ATTACKZerowl

An entire corporate network can be covertly exposed by a single employee action, according to a recent incident response investigation. After learning.

Crypto Scams Sweep Asia, Blending Malvertising and Pig Butchering Tactics

Crypto Scams Sweep Asia, Blending Malvertising and Pig Butchering Tactics

CYBER ATTACKZerowl

Discover how Researchers studying cybersecurity are alerting people to a massive cryptocurrency scam that is sweeping through Asia, especially Japan, and.

AI Dev Tool Cline’s npm Token Hijacked by Hackers for 8 Hours

AI Dev Tool Cline’s npm Token Hijacked by Hackers for 8 Hours

CYBER ATTACKZerowl

The Cline CLI npm package was briefly but alarmingly accessible to attackers through a compromised publish token, exposing developers who installed it.

Advanced Crypto Mining Malware Proliferates via Air-Gapped Systems and External Drives

Advanced Crypto Mining Malware Proliferates via Air-Gapped Systems and External Drives

CYBER ATTACKZerowl

A sophisticated cryptocurrency mining campaign has surfaced that can compromise even air-gapped environments by using external storage devices to target.

Researchers Uncover New SysUpdate Malware Variant Targeting Linux Systems

Researchers Uncover New SysUpdate Malware Variant Targeting Linux Systems

CYBER ATTACKZerowl

During a digital forensics and incident response (DFIR) engagement, LevelBlue researchers discovered a new SysUpdate malware variant that targets Linux.

Hackers Abuse nslookup.exe to Stage Payloads via DNS in ClickFix Attacks

Hackers Abuse nslookup.exe to Stage Payloads via DNS in ClickFix Attacks

CYBER ATTACKZerowl

The "ClickFix" social engineering technique has been improved by cybercriminals, who now use covert exploitation of nslookup.exe to deliver payloads.

Attackers Use Counterfeit Wallets and Backdoors in Cryptocurrency Theft Operations

Attackers Use Counterfeit Wallets and Backdoors in Cryptocurrency Theft Operations

CYBER ATTACKZerowl

An ongoing campaign of financial theft and cyber-espionage targeting developers in the Web3, cryptocurrency, and artificial intelligence sectors has been.

OpenAI Launches EVMbench for Blockchain Vulnerability Detection and Exploitation

OpenAI Launches EVMbench for Blockchain Vulnerability Detection and Exploitation

CYBER ATTACKZerowl

EVMbench, a new benchmark developed by OpenAI and Paradigm, is intended to assess AI agents' abilities to identify, address, and even take advantage of.

Hackers Launch Sophisticated Multi-Stage Phishing Campaign Targeting Booking.com Partners and Travelers

Hackers Launch Sophisticated Multi-Stage Phishing Campaign Targeting Booking.com Partners and Travelers

CYBER ATTACKZerowl

A well-planned, two-step phishing campaign is being used by a recently discovered cybercrime operation to target travelers and hotel employees. According.

Hackers Can Leverage Grok and Copilot for Stealthy Malware Communication and Control

Hackers Can Leverage Grok and Copilot for Stealthy Malware Communication and Control

CYBER ATTACKZerowl

Copilot and Grok for Malware Communication An innovative attack method that turns popular AI assistants—more especially, Microsoft Copilot and Grok from.

“Foxveil” Malware Evades Detection By Leveraging Cloudflare, Netlify, and Discord

“Foxveil” Malware Evades Detection By Leveraging Cloudflare, Netlify, and Discord

CYBER ATTACKZerowl

Researchers at Cato CTRL have discovered "Foxveil," a new malware loader that has been in use since August 2025 and conceals payloads on reputable.

ClawHavoc Uses 1,184 Malevolent Skills to Destroy OpenClaws ClawHub

ClawHavoc Uses 1,184 Malevolent Skills to Destroy OpenClaws ClawHub

CYBER ATTACKZerowl

ClawHub, the official skill marketplace for OpenClaw, an open-source AI agent formerly known as ClawdBot and Moltbot, has been compromised by a massive.

Top 5 this week

Page 40 of 61