LATEST

ZerOwl — Find Vulnerabilities Before Hackers Do
CISA Warns of SonicWall SMA1000 Vulnerabilities Exploited in Attacks to Deploy Ransomware

CISA Warns of SonicWall SMA1000 Vulnerabilities Exploited in Attacks to Deploy Ransomware

CYBER ATTACKZerowl

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) warned that two SonicWall SMA1000 vulnerabilities, CVE-2026-15409 and CVE-2026-15410, are.

CISA Warns of Actively Exploited Metabase Flaw Enabling Admin Account Takeover

CISA Warns of Actively Exploited Metabase Flaw Enabling Admin Account Takeover

CYBER ATTACKZerowl

A critical SQL injection flaw in Metabase, identified as CVE-2026-72898, can enable unauthenticated remote attackers to compromise vulnerable instances.

Chrome Fingerprint Spoofing Makes Kimwolf HTTP/2 Floods Harder to Separate From Real Users

Chrome Fingerprint Spoofing Makes Kimwolf HTTP/2 Floods Harder to Separate From Real Users

CYBER ATTACKZerowl

A newly discovered version of the Kimwolf botnet has introduced sophisticated techniques to evade detection by mimicking legitimate Chrome browsing.

China-linked Hackers Using AI Agents to Attack Taiwan Government Websites

China-linked Hackers Using AI Agents to Attack Taiwan Government Websites

CYBER ATTACKZerowl

China-linked cybercriminals have launched what experts call a groundbreaking fully autonomous cyberattack on a foreign government, using open-source.

CAV3RN Uses Google Apps Script as C2 Relay to Hide Malware Traffic Behind Google Infrastructure

CAV3RN Uses Google Apps Script as C2 Relay to Hide Malware Traffic Behind Google Infrastructure

CYBER ATTACKZerowl

CAV3RN is a modular espionage framework that becomes harder to detect on networks This article explores listed cav3rn associated. . Its latest.

CAV3RN Hides Cyberespionage C2 Behind Google Apps Script and Lets DNS Pick the Route

CAV3RN Hides Cyberespionage C2 Behind Google Apps Script and Lets DNS Pick the Route

CYBER ATTACKZerowl

Project CAV3RN has expanded its cyberespionage toolkit with a new command-and-control (C2) system that conceals traffic through Google Apps Script This.

Blacklight Toolkit Finds Codex, Claude Code, and Cursor Artifacts Exposing Tokens and Session Data

Blacklight Toolkit Finds Codex, Claude Code, and Cursor Artifacts Exposing Tokens and Session Data

CYBER ATTACKZerowl

SpecterOps has released Blacklight, an open-source toolkit designed to identify and detect local artifacts from AI coding agents such as Codex, Claude.

Attackers Exploit VMware vCenter Vulnerability to Gain Persistent Remote Access

Attackers Exploit VMware vCenter Vulnerability to Gain Persistent Remote Access

Cybercriminals are now actively exploiting a newly patched vulnerability in Broadcom's VMware vCenter software, as revealed by recent research conducted.

Armored Likho Abuses GitHub as Backup C2 Channel for Audio Surveillance Malware

Armored Likho Abuses GitHub as Backup C2 Channel for Audio Surveillance Malware

CYBER ATTACKZerowl

Discover how Armored Likho, also known as Eagle Werewolf, has initiated a new cyberespionage campaign targeting individuals and organizations in Russia.

Top 5 this week

Page 22 of 271