CYBER ATTACK

ZerOwl — Find Vulnerabilities Before Hackers Do
Malicious Bing Ads Spread False Azure Support Scams

Malicious Bing Ads Spread False Azure Support Scams

CYBER ATTACKZerowl

Malicious Bing search ads have been used in a recent tech support scam campaign to trick American users into visiting phony Microsoft Azure support pages.

Microsoft February 2026 Patch Tuesday Fixes 54 Vulnerabilities, Including 6 Zero-Days

Microsoft February 2026 Patch Tuesday Fixes 54 Vulnerabilities, Including 6 Zero-Days

CYBER ATTACKZerowl

With great urgency, Microsoft released its February 2026 Patch Tuesday, which addressed 54 security vulnerabilities in Windows, Office, Exchange, Azure.

VoidLink Linux C2 Showcases LLM-Generated Malware Capabilities

VoidLink Linux C2 Showcases LLM-Generated Malware Capabilities

CYBER ATTACKZerowl

A robust Linux command-and-control (C2) framework called VoidLink creates implant binaries for enterprise and cloud attacks. The implant, known as.

Threat hunting is essential to SOC maturity, but it frequently overlooks actual attacks.

Threat hunting is essential to SOC maturity, but it frequently overlooks actual attacks.

CYBER ATTACKZerowl

Threat Hunting Is Essential for SOC Sandbox-derived threat intelligence is becoming more and more popular among high-performing SOC teams as a way to make.

Attackers Can Get Around LDAP Authentication with the FortiOS Authentication Bypass Vulnerability

Attackers Can Get Around LDAP Authentication with the FortiOS Authentication Bypass Vulnerability

CYBER ATTACKZerowl

Vulnerability in FortiOS Authentication Bypass A high-severity authentication bypass vulnerability in FortiOS, identified by Fortinet as CVE-2026-22153.

North American users are affected by a Microsoft 365 Admin Center outage.

North American users are affected by a Microsoft 365 Admin Center outage.

CYBER ATTACKZerowl

Discover how Microsoft 365 Admin Center Outage According to the company's service health dashboard, Microsoft 365 administrators in North America are.

Top 10 Best DDOS Protection Solutions in 2026

Top 10 Best DDOS Protection Solutions in 2026

CYBER ATTACKZerowl

DDoS defense strategies Hyper-connectivity and, regrettably, hyper-volumetric cyber threats characterize the digital environment of 2026 This article.

Threat Actors Publish Malicious dYdX Packages to npm and PyPI Repositories

Threat Actors Publish Malicious dYdX Packages to npm and PyPI Repositories

CYBER ATTACKZerowl

Threat actors released malicious versions of dYdX client packages to npm and PyPI ecosystems as part of a supply chain attack, according to cybersecurity.

SAP Security Patch Day – Critical SAP CRM and SAP S/4HANA Code Injection Vulnerabilities Fixed

SAP Security Patch Day – Critical SAP CRM and SAP S/4HANA Code Injection Vulnerabilities Fixed

CYBER ATTACKZerowl

SAP Security Patch Day Fixes for SAP CRM and SAP S/4HANA SAP's February 2026 Security Patch Day brought fixes that SAP encourages users to prioritize in.

Prometei Botnet Targets Windows Servers to Gain Remote Access and Deploy Malware

Prometei Botnet Targets Windows Servers to Gain Remote Access and Deploy Malware

CYBER ATTACKZerowl

Prometei, a Russian-affiliated botnet that has been active since 2016, was discovered by eSentire's Threat Response Unit (TRU) attacking a Windows server.

Ivanti Endpoint Manager Vulnerability Lets Remote Attacker Leak Arbitrary Data

Ivanti Endpoint Manager Vulnerability Lets Remote Attacker Leak Arbitrary Data

CYBER ATTACKZerowl

Multiple vulnerabilities in Ivanti Endpoint Manager For its Endpoint Manager (EPM) platform, Ivanti has published important security updates that fix two.

Hackers Weaponizing 7-Zip Downloads to Turn Your Home Computers into Proxy Nodes

Hackers Weaponizing 7-Zip Downloads to Turn Your Home Computers into Proxy Nodes

CYBER ATTACKZerowl

A fraudulent campaign that uses a fake version of the popular 7-Zip file archiving program to covertly turn home computers into residential proxy nodes.

A Critical Gogs Vulnerability Allows 2FA Bypass and Remote Command Execution

A Critical Gogs Vulnerability Allows 2FA Bypass and Remote Command Execution

CYBER ATTACKZerowl

Attackers can execute commands remotely and circumvent two-factor authentication thanks to a serious vulnerability in Gogs, a lightweight self-hosted Git.

TeamPCP Industrializes Cloud Misconfigurations Into a Self-Propagating Cybercrime Platform

TeamPCP Industrializes Cloud Misconfigurations Into a Self-Propagating Cybercrime Platform

CYBER ATTACKZerowl

In December 2025, TeamPCP—also referred to as PCPcat, ShellForce, and DeadCatx3—emerged as a highly skilled cloud-native threat actor that targeted.

ILOVEPOOP Toolkit Exploiting React2Shell Vulnerability to Deploy Malicious Payload

ILOVEPOOP Toolkit Exploiting React2Shell Vulnerability to Deploy Malicious Payload

CYBER ATTACKZerowl

The unexpected emergence of "React2Shell" (CVE-2025-55182), a serious flaw affecting Next.js and React Server Components, has had an effect on the.

The APT36 hacker group uses new tools to disrupt services by attacking Linux systems.

The APT36 hacker group uses new tools to disrupt services by attacking Linux systems.

CYBER ATTACKZerowl

Indian defense and government agencies have been functioning under a persistent digital shadow for over ten years This article explores ongoing defenses.

Windows Error Reporting Service Vulnerability Let Attackers Elevate Privileges – PoC Released

Windows Error Reporting Service Vulnerability Let Attackers Elevate Privileges – PoC Released

CYBER ATTACKZerowl

Vulnerability in Windows Error Reporting It was found that there is a serious security vulnerability in Windows Error Reporting Service that enables.

VoidLink Linux C2 Highlights LLM-Generated Malware with Multi-Cloud and Kernel-Level Stealth

VoidLink Linux C2 Highlights LLM-Generated Malware with Multi-Cloud and Kernel-Level Stealth

CYBER ATTACKZerowl

A worrying example of AI-assisted threat development is the complex Linux malware framework VoidLink, which combines kernel-level stealth mechanisms with.

Socelars Malware Attacking Windows systems to Collect sensitive data

Socelars Malware Attacking Windows systems to Collect sensitive data

CYBER ATTACKZerowl

Socelars, a cunning Trojan that steals information from Windows users, is being monitored by security researchers This article explores malware trends.

Crypto Scanner – New Tool to Find Quantum-Vulnerable Cryptography in your Codebase

Crypto Scanner – New Tool to Find Quantum-Vulnerable Cryptography in your Codebase

CYBER ATTACKZerowl

Discover Quantum Vulnerable Cryptography with a Crypto Scanner Tool A new open-source tool has surfaced to assist developers in protecting their data from.

Attackers Use Windows Shortcut Files as Weapons to Spread Worldwide Group Ransomware

Attackers Use Windows Shortcut Files as Weapons to Spread Worldwide Group Ransomware

CYBER ATTACKZerowl

The Phorpiex botnet, an established malware-as-a-service platform that has been operational for more than ten years, is making a comeback in the realm of.

Malicious LNK Files Used to Deploy Global Group Ransomware Worldwide

Malicious LNK Files Used to Deploy Global Group Ransomware Worldwide

CYBER ATTACKZerowl

Researchers studying cybersecurity have discovered a massive Phorpiex campaign that is affecting email accounts all over the world This article explores.

GuLoader Evades Detection Using Polymorphic Code and Trusted Cloud Hosting

GuLoader Evades Detection Using Polymorphic Code and Trusted Cloud Hosting

CYBER ATTACKZerowl

Since 2019, GuLoader malware has been a major downloader of RATs and stealers, continuing to afflict systems. Its extensive use of shape-shifting code and.

Fancy Bear Hackers Abuse Microsoft Zero-Day in Email Theft Campaign

Fancy Bear Hackers Abuse Microsoft Zero-Day in Email Theft Campaign

CYBER ATTACKZerowl

Fancy Bear, a group of hackers with ties to Russia, has launched Operation Neusploit, a cunning cyberattack This article explores vulnerability microsoft.

Bloody Wolf Hackers Deploy NetSupport RAT In Targeted Attacks

Bloody Wolf Hackers Deploy NetSupport RAT In Targeted Attacks

CYBER ATTACKZerowl

Bloody Wolf hackers, who use custom Java loaders to target the manufacturing, finance, and IT sectors, have launched spear-phishing attacks against.

30-Year-Old Vulnerability of Libpng Puts Millions of Systems at Risk of Code Execution Attacks

30-Year-Old Vulnerability of Libpng Puts Millions of Systems at Risk of Code Execution Attacks

CYBER ATTACKZerowl

A Vulnerability in libpng Exposes Millions of Apps A serious flaw has been discovered in libpng, the official PNG reference library that is utilized by.

Threat Actor Claims Leak of Cybercrime-Focused AI Platform WormGPT Database

Threat Actor Claims Leak of Cybercrime-Focused AI Platform WormGPT Database

CYBER ATTACKZerowl

Leak in the WormGPT Database The entire WormGPT database, a well-known artificial intelligence platform with a focus on cybercrime that has been offered.

Microsoft Teams New Option Enables Users to Flag Malicious Messages

Microsoft Teams New Option Enables Users to Flag Malicious Messages

CYBER ATTACKZerowl

Flag for Teams' Malicious Messages By enabling Defender for Office 365 Plan 1 users to directly report suspicious messages, Microsoft is greatly enhancing.

GuLoader Uses Polymorphic Code and Trusted Cloud Hosting to Evade Reputation-Based Defenses

GuLoader Uses Polymorphic Code and Trusted Cloud Hosting to Evade Reputation-Based Defenses

CYBER ATTACKZerowl

Since its inception, GuLoader, also referred to as CloudEyE, has cemented its status as a recurring threat in the cybersecurity environment. It is.

Top 5 this week

Page 47 of 61