CYBER ATTACK

Firefox 149 Released With a Patch for 37 Security Holes That Let Attackers Attack Remotely

Firefox 149 Released With a Patch for 37 Security Holes That Let Attackers Attack Remotely

CYBER ATTACKZerowl

Discover how On March 24, 2026, Mozilla released Firefox 149, which included one of the biggest security warnings in the browser's recent history. The.

GoHarbor Vulnerability Allows Attackers to Fully Compromise Container Registry

GoHarbor Vulnerability Allows Attackers to Fully Compromise Container Registry

CYBER ATTACKZerowl

A serious security hole in GoHarbor's popular Harbor container registry is putting businesses at high risk of supply chain attacks. The flaw is known as.

Firefox 149.0 Released With Free Built-In VPN and 50GB Monthly Data

Firefox 149.0 Released With Free Built-In VPN and 50GB Monthly Data

CYBER ATTACKZerowl

The stable channel now has Firefox 149.0 from Mozilla This article explores stable channel firefox. . The update adds a lot of privacy-first features.

F5 NGINX Flaw Allows Code Execution via Malicious MP4 Files

F5 NGINX Flaw Allows Code Execution via Malicious MP4 Files

CYBER ATTACKZerowl

F5 has found a serious security hole in NGINX that could let attackers run any code they want or stop services by using a specially made MP4 file This.

Cloud-based Phishing Resumes After Tycoon2FA Disruption

Cloud-based Phishing Resumes After Tycoon2FA Disruption

CYBER ATTACKZerowl

On March 4, 2026, Europol and its partners around the world said that Tycoon2FA, a major phishing-as-a-service platform, had been technically shut down.

Passkey Architecture In Google Authenticator Poses New Cyberattack Threats

Passkey Architecture In Google Authenticator Poses New Cyberattack Threats

CYBER ATTACKZerowl

Google Authenticator's widely used passwordless architecture creates a hybrid model that combines hardware security with cloud-based key management This.

TeamPCP hackers broke into the LiteLLM PyPI package, which has been downloaded 95 million times.

TeamPCP hackers broke into the LiteLLM PyPI package, which has been downloaded 95 million times.

CYBER ATTACKZerowl

The Python Package Index (PyPI) was hacked, and a popular open-source Python library was affected This article explores python used compromised.

Hackers Exploit Magento Flaw for Remote Code Execution and Account Takeover

Hackers Exploit Magento Flaw for Remote Code Execution and Account Takeover

CYBER ATTACKZerowl

Hackers are taking advantage of a serious security hole in Magento and Adobe Commerce known as "PolyShell." The flaw lets attackers who aren't logged in.

Google Authenticator’s Hidden Passkey Architecture Could Open New Passwordless Attack Paths

Google Authenticator’s Hidden Passkey Architecture Could Open New Passwordless Attack Paths

CYBER ATTACKZerowl

Google's passkey system doesn't work like a regular hardware authenticator that only works with one device This article explores google passkey doesn.

Five harmful npm packages are aimed at crypto developers and steal wallet keys through Telegram.

Five harmful npm packages are aimed at crypto developers and steal wallet keys through Telegram.

CYBER ATTACKZerowl

Five bad packages were found that stole private wallet keys and sent them straight to a Telegram bot This article explores threat bad packages. . The.

The FCC banned consumer routers made outside the US because they could pose security risks.

The FCC banned consumer routers made outside the US because they could pose security risks.

CYBER ATTACKZerowl

The Federal Communications Commission (FCC) made a big change to its Covered List, which means that new consumer-grade network routers made in other.

TeamPCP Unleashes Iran‑Targeted CanisterWorm Kubernetes Wiper

TeamPCP Unleashes Iran‑Targeted CanisterWorm Kubernetes Wiper

CYBER ATTACKZerowl

The threat group TeamPCP has released a very dangerous version of the CanisterWorm malware that is specifically designed to destroy Iranian systems while.

New Kali Linux 2026.1 Comes With 8 Hacking Tools

New Kali Linux 2026.1 Comes With 8 Hacking Tools

CYBER ATTACKZerowl

Discover how The popular penetration testing distribution Kali Linux 2026.1 has been officially released. This is the first big update of the year. This.

Attackers can change rankings to get to #1 with the ClawHub vulnerability.

Attackers can change rankings to get to #1 with the ClawHub vulnerability.

CYBER ATTACKZerowl

Taking away trust in the quickly growing OpenClaw ecosystem, Researchers at Silverfort have found a serious flaw in the ClawHub skills marketplace that.

Kali Linux 2026.1 Released Featuring 8 New Security Tools

Kali Linux 2026.1 Released Featuring 8 New Security Tools

CYBER ATTACKZerowl

The first big update of the year for Offensive Security's popular penetration testing distribution, Kali Linux 2026.1, is now available This article.

The FCC wont let foreign companies sell new consumer routers because of security concerns.

The FCC wont let foreign companies sell new consumer routers because of security concerns.

CYBER ATTACKZerowl

The U.S This article explores foreign routers. . Federal Communications Commission (FCC) has made a big move to protect the country's technology supply.

TeamPCP Hackers Behind Trivy & KICS Breaches Now Target LiteLLM Package

TeamPCP Hackers Behind Trivy & KICS Breaches Now Target LiteLLM Package

CYBER ATTACKZerowl

TeamPCP, a group that has been linked to high-impact supply chain attacks in the past, has hacked the popular Python library litellm on PyPI. This affects.

HackerOne Data Breach: Employee Data Stolen in Navia-Linked Hack

HackerOne Data Breach: Employee Data Stolen in Navia-Linked Hack

CYBER ATTACKZerowl

HackerOne, a well-known platform for coordinating vulnerabilities and bug bounties, has confirmed that a data breach has affected its employees after a.

Hackers Use Google Forms Job Offers to Spread PureHVNC Malware

Hackers Use Google Forms Job Offers to Spread PureHVNC Malware

CYBER ATTACKZerowl

Threat researchers have found a new malware campaign that uses Google Forms to spread the PureHVNC Remote Access Trojan (RAT). Instead of using fake.

Azure AI Foundry Strengthens Cybersecurity With New Safeguards For Generative AI Models

Azure AI Foundry Strengthens Cybersecurity With New Safeguards For Generative AI Models

CYBER ATTACKZerowl

Because generative AI models can be used so quickly, companies need to find a balance between innovation and strong security. To solve this problem.

Aqua Security’s Trivy Scanner Hit by Supply Chain Attack

Aqua Security’s Trivy Scanner Hit by Supply Chain Attack

CYBER ATTACKZerowl

Aqua Security has revealed a complex supply chain attack that put its popular open-source Trivy vulnerability scanner at risk, showing that modern CI/CD.

Aqua Security’s Trivy Scanner Compromised in Supply Chain Attack

Aqua Security’s Trivy Scanner Compromised in Supply Chain Attack

CYBER ATTACKZerowl

A complex supply chain attack that targets Aqua Security's Trivy, a popular open-source vulnerability scanner This article explores aqua security trivy.

Fake invitations fuel the SILENTCONNECT campaign that sends out the ScreenConnect RAT.

Fake invitations fuel the SILENTCONNECT campaign that sends out the ScreenConnect RAT.

CYBER ATTACKZerowl

Elastic Security Labs has found a new bad campaign that uses an undocumented loader called SILENTCONNECT to send out the ScreenConnect Remote Monitoring.

Weaknesses in Dell Wyse Management Allows for full system compromise

Weaknesses in Dell Wyse Management Allows for full system compromise

CYBER ATTACKZerowl

A recent security study showed that linking together what seem like small logic flaws in Dell Wyse Management Suite (WMS) On-Premises can lead to a full.

After a problem with their infrastructure, Tycoon2FA operators start phishing for cloud accounts again.

After a problem with their infrastructure, Tycoon2FA operators start phishing for cloud accounts again.

CYBER ATTACKZerowl

Discover how Cybercriminals behind Tycoon2FA, a phishing-as-a-service (PhaaS) platform, have started going after cloud accounts again with almost full.

As TeamPCP sends out an Iran-focused Kubernetes Wiper, CanisterWorm becomes destructive.

As TeamPCP sends out an Iran-focused Kubernetes Wiper, CanisterWorm becomes destructive.

CYBER ATTACKZerowl

TeamPCP, a group of hackers, has gone from stealing credentials or installing backdoors to something much worse with a new payload This article explores.

Threat actors are constantly attacking MS-SQL servers to install ICE Cloud Scanner.

Threat actors are constantly attacking MS-SQL servers to install ICE Cloud Scanner.

CYBER ATTACKZerowl

A persistent threat actor called Larva-26002 has been going after Microsoft SQL (MS-SQL) servers that aren't well managed This article explores ransomware.

In a new multi-stage malware campaign, Google Forms job lures deliver PureHVNC.

In a new multi-stage malware campaign, Google Forms job lures deliver PureHVNC.

CYBER ATTACKZerowl

Attackers have found a new way to spread malware by using Google Forms, which is one of the most trusted tools people use every day This article explores.

Top 5 this week

Page 9 of 44