CYBER ATTACK

ZerOwl — Find Vulnerabilities Before Hackers Do
New DPRK Interview Campaign Leverages Fake Fonts to Deploy Malware

New DPRK Interview Campaign Leverages Fake Fonts to Deploy Malware

CYBER ATTACKZerowl

Software developers are the target of a sophisticated supply chain attack by North Korea's Lazarus Group under the "Fake Font" campaign This article explores

A New Cybersecurity Framework to Safeguard Embedded Systems Is Released by MITRE

A New Cybersecurity Framework to Safeguard Embedded Systems Is Released by MITRE

CYBER ATTACKZerowl

To aid in the security of embedded systems utilized in vital infrastructure and defense technologies throughout the United States, a new Embedded Systems

Hackers from Lazarus are actively targeting European drone manufacturers.

Hackers from Lazarus are actively targeting European drone manufacturers.

CYBER ATTACKZerowl

A new wave of targeted attacks against European drone manufacturers and defense contractors has been initiated by Lazarus, a sophisticated hacking group

A New Instagram Vulnerability Makes Private Posts Visible to Anyone

A New Instagram Vulnerability Makes Private Posts Visible to Anyone

CYBER ATTACKZerowl

Instagram's mobile web interface had a server-side authorization flaw that made it possible for totally unauthenticated users to view private account posts

As PoC is released, more than 800K GNU InetUtils telnetd instances are vulnerable to RCE attacks.

As PoC is released, more than 800K GNU InetUtils telnetd instances are vulnerable to RCE attacks.

CYBER ATTACKZerowl

About 800,000 exposed instances of GNU InetUtils telnetd are susceptible to remote code execution attacks, making it a serious security risk.

Critical Zero-Day Vulnerabilities in NetSupport Manager Turn on Remote Code Execution

Critical Zero-Day Vulnerabilities in NetSupport Manager Turn on Remote Code Execution

CYBER ATTACKZerowl

Two serious authentication bypass vulnerabilities (CVE-2025-34164 and CVE-2025-34165) in NetSupport Manager, a reputable remote access tool used by many

Threat Actors Weaponize LNK Files To Deploy MoonPeak Malware On Windows

Threat Actors Weaponize LNK Files To Deploy MoonPeak Malware On Windows

CYBER ATTACKZerowl

Threat actors associated with the Democratic People's Republic of Korea (DPRK) used LNK shortcut files as a weapon to spread MoonPeak malware, a XenoRAT

‘SyncFuture’ Campaign Weaponizing Legitimate Enterprise Security Software to Deploy Malware

‘SyncFuture’ Campaign Weaponizing Legitimate Enterprise Security Software to Deploy Malware

CYBER ATTACKZerowl

Threat researchers discovered a concerning espionage operation in December 2025 that used sophisticated phishing campaigns to target Indian citizens This

Sandworm APT Group Targeting Poland’s Power Grid with DynoWiper Malware

Sandworm APT Group Targeting Poland’s Power Grid with DynoWiper Malware

CYBER ATTACKZerowl

Poland received concerning news in late December 2025 when its energy infrastructure was the target of what security experts refer to as the biggest

New Phishing Attack Leverages Vercel Hosting Platform to Deliver a Remote Access Tool

New Phishing Attack Leverages Vercel Hosting Platform to Deliver a Remote Access Tool

CYBER ATTACKZerowl

Between November 2025 and January 2026, a sophisticated phishing campaign distributed remote access tools to unwary victims by taking advantage of Vercel's

Microsoft Releases Out-of-Band Update KB5078127 to Fix Windows 11 File System and Outlook Freezes

Microsoft Releases Out-of-Band Update KB5078127 to Fix Windows 11 File System and Outlook Freezes

CYBER ATTACKZerowl

KB5078127 is an out-of-band (OOB) cumulative update that fixes serious file system compatibility problems for Windows 11 users This article explores

Microsoft Issues Out-of-Band Update KB5078127 to Fix Windows 11 File System and Outlook Freezes

Microsoft Issues Out-of-Band Update KB5078127 to Fix Windows 11 File System and Outlook Freezes

CYBER ATTACKZerowl

After January's monthly security updates, Microsoft released emergency out-of-band (OOB) security patches KB5078127 and KB5078132 to fix critical file

Critical Python PLY Library Vulnerability Enables Remote Code Execution

Critical Python PLY Library Vulnerability Enables Remote Code Execution

CYBER ATTACKZerowl

The Python PLY (Python Lex-Yacc) library has been found to have a serious security flaw that permits remote code execution (RCE) via an undocumented

CISA Releases Secure Connectivity Principles Checklist for OT Network Connectivity

CISA Releases Secure Connectivity Principles Checklist for OT Network Connectivity

CYBER ATTACKZerowl

In partnership with international cybersecurity partners such as the National Cyber Security Centre (NCSC) of the United Kingdom, the Australian Cyber

Backdoor Flaw Hits 20,000 WordPress Sites, Enables Stealthy Admin User Creation

Backdoor Flaw Hits 20,000 WordPress Sites, Enables Stealthy Admin User Creation

CYBER ATTACKZerowl

Over 20,000 active installations of the LA-Studio Element Kit for Elementor WordPress plugin are vulnerable to unauthenticated attacks due to a critical

Attackers Targeting Construction Firms Exploiting Mjobtime App Vulnerability Using MSSQL and IIS POST Request

Attackers Targeting Construction Firms Exploiting Mjobtime App Vulnerability Using MSSQL and IIS POST Request

CYBER ATTACKZerowl

By exploiting flaws in the business software that operates on their job sites, attackers are increasingly focusing on construction companies.

Systems are vulnerable to crashes and data corruption due to an Apache Hadoop vulnerability.

Systems are vulnerable to crashes and data corruption due to an Apache Hadoop vulnerability.

CYBER ATTACKZerowl

A serious flaw in the HDFS native client of Apache Hadoop, a popular distributed storage and processing framework, could allow hackers to cause system

Vulnerabilities in Apache Hadoop Expose Systems Possible Data Corruption or Crashes

Vulnerabilities in Apache Hadoop Expose Systems Possible Data Corruption or Crashes

CYBER ATTACKZerowl

Through maliciously constructed URI inputs, a moderate-severity vulnerability in the Hadoop Distributed File System (HDFS) native client could enable

6.5M Instagram and 48M Gmail were exposed online due to an unprotected database.

6.5M Instagram and 48M Gmail were exposed online due to an unprotected database.

CYBER ATTACKZerowl

An enormous database with 149 million stolen login credentials was found to be publicly accessible online without encryption or password protection This

Microsoft is looking into Windows 11, version 25H2 boot failure issues after the January update.

Microsoft is looking into Windows 11, version 25H2 boot failure issues after the January update.

CYBER ATTACKZerowl

Following reports that the January 2026 security update for Windows 11 is causing critical boot failures on physical devices, Microsoft has initiated an urgent investigation into the serio

A Critical VMware vCenter RCE Vulnerability Is Actively Exploited, CISA Warns

A Critical VMware vCenter RCE Vulnerability Is Actively Exploited, CISA Warns

CYBER ATTACKZerowl

A critical remote code execution (RCE) vulnerability in Broadcom VMware vCenter Server has been added to the Cybersecurity and Infrastructure Security Agency's (CISA) Known Exploited Vulne

telnetd Vulnerability Actively Exploited Following Public Proof-of-Concept Release

telnetd Vulnerability Actively Exploited Following Public Proof-of-Concept Release

CYBER ATTACKZerowl

A serious GNU authentication bypass vulnerability Threat actors are actively using the InetUtils telnetd service after a proof-of-concept exploit was made public on January 20, 2026 This a

Microsoft Introduces Winapp CLI to Streamline and Modernize the Development of Windows Applications

Microsoft Introduces Winapp CLI to Streamline and Modernize the Development of Windows Applications

CYBER ATTACKZerowl

The Windows App Development CLI (winapp), a new open-source command-line tool intended to streamline the Windows application development lifecycle across various frameworks and toolchains,

Google Unveils the Much-Awaited @gmail.com Feature for Address Change

Google Unveils the Much-Awaited @gmail.com Feature for Address Change

CYBER ATTACKZerowl

A much-anticipated feature that enables users to modify their Gmail address without losing their account information or access to Google services has started to roll out This article explo

Fix Critical Vulnerabilities in Go 1.25.6 and 1.24.12 to Reduce the Risk of DoS and Memory Exhaustion

Fix Critical Vulnerabilities in Go 1.25.6 and 1.24.12 to Reduce the Risk of DoS and Memory Exhaustion

CYBER ATTACKZerowl

Go 1.25.6 and 1.24.12 are emergency point releases that the Go programming language team released to fix six serious security vulnerabilities This article explores release go1. . These upd

New AWS Console Supply Chain Attack Lets Attackers Hijack AWS GitHub Repositories

New AWS Console Supply Chain Attack Lets Attackers Hijack AWS GitHub Repositories

CYBER ATTACKZerowl

Key AWS-owned GitHub repositories, including the popular AWS JavaScript SDK that powers the AWS Console itself, were taken over by unauthenticated attackers due to a crucial misconfigurati

NSA Issues Implementation Guidelines for Zero Trust

NSA Issues Implementation Guidelines for Zero Trust

CYBER ATTACKZerowl

The first two publications in the National Security Agency's Zero Trust Implementation Guidelines series, which offer helpful advice to assist organizations in implementing Zero Trust secu

Top 5 this week

Page 58 of 61