LATEST

We Found Eight Attack Vectors Inside AWS Bedrock. Here's What Attackers Can Do with Them

We Found Eight Attack Vectors Inside AWS Bedrock. Here's What Attackers Can Do with Them

Amazon's platform for making AI-powered apps is called AWS Bedrock This article explores attacker bedrock updateguardrail. . It gives developers access to.

Trivy Vulnerability Scanner Breached To Inject Credential-Stealing Scripts

Trivy Vulnerability Scanner Breached To Inject Credential-Stealing Scripts

CYBER ATTACKZerowl

This March, the Trivy ecosystem had its second big security breach. The first was a supply-chain attack that made the official GitHub Action used to run.

Over 511,000 End-of-Life Microsoft IIS Servers Exposed Online

Over 511,000 End-of-Life Microsoft IIS Servers Exposed Online

CYBER ATTACKZerowl

Researchers have found a huge global security risk that comes from using old Microsoft Internet Information Services (IIS) servers This article explores.

New CanisterWorm Steals npm Tokens and Spreads Through Compromised Publisher Accounts

New CanisterWorm Steals npm Tokens and Spreads Through Compromised Publisher Accounts

CYBER ATTACKZerowl

CanisterWorm is a self-propagating malware campaign that is bringing a new wave of supply chain attacks to the npm ecosystem. The threat, which is.

Microsoft Warns IRS Phishing Hits 29,000 Users, Deploys RMM Malware

Microsoft Warns IRS Phishing Hits 29,000 Users, Deploys RMM Malware

Microsoft has warned that new campaigns are taking advantage of the upcoming tax season in the U.S This article explores malware email campaigns. . to.

LAPSUS$ Hackers Claim Breach of AstraZeneca’s Internal Systems

LAPSUS$ Hackers Claim Breach of AstraZeneca’s Internal Systems

CYBER ATTACKZerowl

The supposed AstraZeneca data breach shows that the LAPSUS$ hacking group is back in action. They are now quietly selling claims of deep access to source.

Hackers Exploit Quest KACE SMA Flaw to Steal Credentials

Hackers Exploit Quest KACE SMA Flaw to Steal Credentials

CYBER ATTACKZerowl

According to new research, hackers are actively using a serious flaw in Quest KACE Systems Management Appliance (SMA) to get into systems without.

Crunchyroll Breach: Hackers Claim 100GB of User Data Stolen

Crunchyroll Breach: Hackers Claim 100GB of User Data Stolen

CYBER ATTACKZerowl

After a breach involving its outsourcing partner, Telus, a threat actor is said to have stolen about 100 GB of private user data from Crunchyroll, the.

Copyright-Themed Lures Deliver Multi-Stage PureLog Stealer in New Credential Theft Campaign

Copyright-Themed Lures Deliver Multi-Stage PureLog Stealer in New Credential Theft Campaign

CYBER ATTACKZerowl

A new malware campaign is going after businesses in the healthcare, government, education, and hospitality sectors This article explores purelog stealer.

CISA Warns of Craft CMS Code Injection Vulnerability Exploited in Attacks

CISA Warns of Craft CMS Code Injection Vulnerability Exploited in Attacks

CYBER ATTACKZerowl

The Known Exploited Vulnerabilities catalog now includes a serious flaw in Craft CMS (CVE-2025-32432) that has been confirmed to be actively used in the.

Top 5 this week

Page 50 of 211