CYBER ATTACK

Important NVIDIA Security Holes Allow RCE and DoS attacks

Important NVIDIA Security Holes Allow RCE and DoS attacks

CYBER ATTACKZerowl

NVIDIA has put out its March 2026 security bulletins, which warn of several security holes in its AI and infrastructure products This article explores.

Important Ivanti EPMM Security Flaws Let remote code run

Important Ivanti EPMM Security Flaws Let remote code run

CYBER ATTACKZerowl

Two serious zero-day flaws in Ivanti Endpoint Manager Mobile (EPMM) let people run code remotely without having to log in. The flaws are in parts that run.

Linux Ransomware Pay2Key Targets Servers, Virtualization Hosts

Linux Ransomware Pay2Key Targets Servers, Virtualization Hosts

CYBER ATTACKZerowl

In the wild, the Pay2Key I2 variant was first seen in late August 2025 This article explores systems ransomware. . The malware shows that there is a.

Synology DSM Vulnerability Allows Remote Command Execution by Attackers

Synology DSM Vulnerability Allows Remote Command Execution by Attackers

CYBER ATTACKZerowl

Synology has put out an important security update to fix a serious flaw in its DiskStation Manager (DSM) software This article explores synology important.

Microsoft Releases Guidance to Detect and Defend Against Trivy Supply Chain Attack

Microsoft Releases Guidance to Detect and Defend Against Trivy Supply Chain Attack

CYBER ATTACKZerowl

A complicated supply chain attack that targets Aqua Security's well-known vulnerability scanner, Trivy This article explores trivy affected tools. . The.

LeakBase Hacker Forum Admin Arrested by Russian Authorities

LeakBase Hacker Forum Admin Arrested by Russian Authorities

CYBER ATTACKZerowl

The Russian police have arrested the person they think is the head of LeakBase This article explores cybercrime possible takedown. . The forum was a big.

IDrive for Windows Vulnerability Allows Privilege Escalation Attacks

IDrive for Windows Vulnerability Allows Privilege Escalation Attacks

CYBER ATTACKZerowl

A new security flaw in the IDrive Cloud Backup Client for Windows is causing a lot of worry This article explores security flaw idrive. . The flaw, which.

Fake security alerts for VS Code on GitHub were used to spread malware in a large phishing campaign.

Fake security alerts for VS Code on GitHub were used to spread malware in a large phishing campaign.

CYBER ATTACKZerowl

A big phishing campaign is going after software developers on GitHub This article explores vs code official. . People post fake security alerts for Visual.

Studies Show That Infostealer Infections Can Cause Dark Web Leaks in Less Than 48 Hours

Studies Show That Infostealer Infections Can Cause Dark Web Leaks in Less Than 48 Hours

CYBER ATTACKZerowl

Discover how Infostealer malware works much faster. On a Tuesday afternoon, an employee might download pirated software. By Thursday morning, the dark web.

A flaw in the Cisco Secure Firewall lets remote code run as root.

A flaw in the Cisco Secure Firewall lets remote code run as root.

CYBER ATTACKZerowl

Cisco has released important security updates to fix a serious flaw in its Secure Firewall Management Center (FMC) software that could let hackers take.

Node.js fixes a lot of security holes. Causing DoS attacks and crashes

Node.js fixes a lot of security holes. Causing DoS attacks and crashes

CYBER ATTACKZerowl

The Long-Term Support (LTS) branch was updated to version 20.20.2 on March 24, 2026 This article explores vulnerability affects node. . It fixes seven.

AI-Powered OpenClaw Trap Lures Developers with GitHub Repos That Have Been Hacked

AI-Powered OpenClaw Trap Lures Developers with GitHub Repos That Have Been Hacked

CYBER ATTACKZerowl

Netskope Threat Labs has found a huge malware campaign called "TroyDen's Lure Factory." The campaign spreads a custom LuaJIT info-stealer through more.

Linux Ransomware Pay2Key Attacking Servers, Virtualization Platforms, and Cloud Environments

Linux Ransomware Pay2Key Attacking Servers, Virtualization Platforms, and Cloud Environments

CYBER ATTACKZerowl

Iranian hackers are behind Pay2Key, which has made a Linux version that is actively going after servers, virtualization hosts, and cloud workloads in.

Mirai-Based Botnets Become a Huge Threat for DDoS and Proxy Abuse

Mirai-Based Botnets Become a Huge Threat for DDoS and Proxy Abuse

CYBER ATTACKZerowl

In the past year, threats from botnets have grown quickly on the internet This article explores threats botnets grown. . A lot of the activity can be.

Linux Ransomware Pay2Key is attacking organizations like Ervers, virtualization hosts, and cloud workloads.

Linux Ransomware Pay2Key is attacking organizations like Ervers, virtualization hosts, and cloud workloads.

CYBER ATTACKZerowl

Discover how Iranian hackers have created a Linux version of Pay2Key that is actively going after servers, virtualization hosts, and cloud workloads in.

SmartApeSG ClickFix Campaign Delivers Remcos, NetSupport RAT, StealC and Sectop RAT

SmartApeSG ClickFix Campaign Delivers Remcos, NetSupport RAT, StealC and Sectop RAT

CYBER ATTACKZerowl

Using a social engineering method called ClickFix, SmartApeSG has been seen pushing several types of malware This article explores load malicious dll.

macOS Threats Are the Biggest Security Gap in 2026: How SOC Teams Close It

macOS Threats Are the Biggest Security Gap in 2026: How SOC Teams Close It

CYBER ATTACKZerowl

macOS is now a normal part of business life, especially for engineering, product, and leadership teams. If a high-access employee's Mac is hacked, it.

Firefox 149.0 is out now, and it comes with a free built-in VPN that has a monthly data limit of 50 GB.

Firefox 149.0 is out now, and it comes with a free built-in VPN that has a monthly data limit of 50 GB.

CYBER ATTACKZerowl

On March 24, 2026, Mozilla officially released Firefox 149.0 to the Release channel This article explores firefox 149 available. . The update is mostly.

Node.js Patches Multiple Vulnerabilities That Enable DoS Attacks and Process Crashes

Node.js Patches Multiple Vulnerabilities That Enable DoS Attacks and Process Crashes

CYBER ATTACKZerowl

Discover how On March 24, 2026, the Node.js project released a very important security update for the Long-Term Support (LTS) branch. This update made.

New Research Maps How Infostealer Infections Turn Into Dark Web Exposure in 48 Hours

New Research Maps How Infostealer Infections Turn Into Dark Web Exposure in 48 Hours

CYBER ATTACKZerowl

One careless download by one worker can give criminals direct access to a whole company's network in less than two days This article explores ransomware.

How Elite SOCs and MSSPs Escalate 30% Fewer Alerts with Better Threat Intelligence

How Elite SOCs and MSSPs Escalate 30% Fewer Alerts with Better Threat Intelligence

CYBER ATTACKZerowl

In a mature SOC, escalation should feel more like a knife than a shovel This article explores escalations gives tier. . When escalation rates go above.

F5 NGINX Plus and Open Source Vulnerability Allow Attackers to Execute Code Using MP4 file

F5 NGINX Plus and Open Source Vulnerability Allow Attackers to Execute Code Using MP4 file

CYBER ATTACKZerowl

A serious security hole has been found that affects both NGinX Open Source and NGINX Plus This article explores underneath ngx_http_mp4_. . There is no.

AI-Assisted OpenClaw Trap Campaign Uses Trojanized GitHub Repositories to Attack Developers and Gamers

AI-Assisted OpenClaw Trap Campaign Uses Trojanized GitHub Repositories to Attack Developers and Gamers

CYBER ATTACKZerowl

A new malware campaign has been quietly spreading through fake GitHub repositories. Tracked internally as TroyDen's Lure Factory, the campaign uses a.

Russian Initial Access Broker Sentenced to Prison for Enabling Ransomware Attacks on U.S. Firms

Russian Initial Access Broker Sentenced to Prison for Enabling Ransomware Attacks on U.S. Firms

CYBER ATTACKZerowl

Aleksei Volkov, a 26-year-old Russian citizen, has been sentenced to 81 months in federal prison for being an Initial Access Broker (IAB). His illegal.

OpenAI to Shut Down Sora Video Platform, Pivots to Enterprise and Developer Tools

OpenAI to Shut Down Sora Video Platform, Pivots to Enterprise and Developer Tools

CYBER ATTACKZerowl

OpenAI is shutting down its Sora video creation platform This article explores openai shutting sora. . On Tuesday, CEO Sam Altman told everyone in the.

Multiple TP-Link Vulnerabilities Allow Attackers to Execute Arbitrary Commands on System

Multiple TP-Link Vulnerabilities Allow Attackers to Execute Arbitrary Commands on System

CYBER ATTACKZerowl

TP-Link has sent out an important security notice about several serious security holes This article explores nx600 routers users. . The Archer NX200.

Microsoft Entra ID Introduces Feature to Eliminate MFA Limitations

Microsoft Entra ID Introduces Feature to Eliminate MFA Limitations

CYBER ATTACKZerowl

Discover how Microsoft has said that its new External Multi-Factor Authentication (MFA) feature in Microsoft Entra ID is now available to everyone. The.

Top 5 this week

Page 8 of 44