LATEST

ZerOwl — Find Vulnerabilities Before Hackers Do
Critical TP-Link Router Flaw Lets Unauthenticated Attackers Execute Code Remotely

Critical TP-Link Router Flaw Lets Unauthenticated Attackers Execute Code Remotely

CYBER ATTACKZerowl

A newly disclosed vulnerability in TP-Link's TL-WR940N router allows unauthenticated attackers to execute remote code, putting millions of home and.

Critical N-able N-central Flaws Actively Exploited to Gain God-Mode Access to MSP Networks

Critical N-able N-central Flaws Actively Exploited to Gain God-Mode Access to MSP Networks

CYBER ATTACKZerowl

N-able has identified an active exploit targeting its N-central RMM platform, which provides unauthenticated administrative access to console MSPs.

Coldcard Vulnerability Drains 1,196 Bitcoin Addresses, Stealing $70.2 Million

Coldcard Vulnerability Drains 1,196 Bitcoin Addresses, Stealing $70.2 Million

CYBER ATTACKZerowl

A firmware entropy flaw in Coinkite's Coldcard hardware wallet enabled an attacker to drain 1,196 Bitcoin addresses of approximately $70 million worth of.

CMMC Phase II Paused: But Defense Contractors Can’t Pause Security

CMMC Phase II Paused: But Defense Contractors Can’t Pause Security

CYBER ATTACKZerowl

The pause in Phase II of the Cybersecurity Maturity Model Certification (CMMC) program has caused a ripple effect throughout the Defense Industrial Base.

Bank of Baroda Confirms Data Breach After Employee Email Account Compromise

Bank of Baroda Confirms Data Breach After Employee Email Account Compromise

CYBER ATTACKZerowl

Bank of Baroda (BoB), India’s largest state-owned lender, has confirmed a cybersecurity incident following weeks of speculation over a massive data leak.

AsyncAPI Supply-Chain Attack Targets Developer Tokens, Cloud Keys and CI/CD Secrets

AsyncAPI Supply-Chain Attack Targets Developer Tokens, Cloud Keys and CI/CD Secrets

CYBER ATTACKZerowl

The malicious versions were released on July 14, 2026, involving approximately 90 minutes This article explores malicious versions released. . Affected.

Android RAT Survives Reboots Using Watchdog Services and Boot Receivers

Android RAT Survives Reboots Using Watchdog Services and Boot Receivers

CYBER ATTACKZerowl

Android users are now vulnerable to a new remote-access threat disguised as Bahrain’s BH Alert service This article explores source k7 security. . K7.

⚡ Weekly Recap: Rogue AI Models, $88M Bitcoin Theft, Water-System Attacks and Dangling DNS Hijacks

⚡ Weekly Recap: Rogue AI Models, $88M Bitcoin Theft, Water-System Attacks and Dangling DNS Hijacks

This week was plagued by breaches of trust This article explores login flows compromised. . Publicly accessible systems, package feeds, hotel networks.

Top 5 this week

Page 50 of 272