LATEST

ZerOwl — Find Vulnerabilities Before Hackers Do
Fake N26 Support Calls Deploy Copybara Android RAT to Control Banking Apps

Fake N26 Support Calls Deploy Copybara Android RAT to Control Banking Apps

CYBER ATTACKZerowl

Discover how A sophisticated fraud operation targeting N26 users in Italy combines voice phishing with live phishing and remote access trojans to steal.

Dysphoria Maps 155 Router Ports to Turn Infected Devices Into C2 Proxies

Dysphoria Maps 155 Router Ports to Turn Infected Devices Into C2 Proxies

CYBER ATTACKZerowl

Since the first quarter of 2026, cybersecurity researchers at XLAB have been monitoring an increasing botnet family known as Dysphoria. The group’s most.

DPRK Hackers Use EtherHiding Smart Contracts as Resilient Malware Command Channels

DPRK Hackers Use EtherHiding Smart Contracts as Resilient Malware Command Channels

CYBER ATTACKZerowl

DPRK-linked threat actors are exploiting Ethereum smart contracts as a resilient command-and-control (C2) infrastructure in a sophisticated macOS malware.

Digitally Signed CastleLoader Installers Strip Mark-of-the-Web and Inject Payloads Into Memory

Digitally Signed CastleLoader Installers Strip Mark-of-the-Web and Inject Payloads Into Memory

CYBER ATTACKZerowl

Arctic Wolf Labs has discovered new CastleLoader campaigns employing digitally signed installers, Mark-of-the-Web (MotW) removal, and in-memory shellcode.

Cybercriminals Weaponize Published Data Leaks for Personalized Blackmail Emails

Cybercriminals Weaponize Published Data Leaks for Personalized Blackmail Emails

CYBER ATTACKZerowl

Cybercriminals are leveraging stolen email addresses from data breaches linked to the ShinyHunters hacking group to create more believable sextortion.

Critical TeamCity Flaw Lets Unauthenticated Attackers Execute Commands Remotely

Critical TeamCity Flaw Lets Unauthenticated Attackers Execute Commands Remotely

CYBER ATTACKZerowl

A significant remote code execution vulnerability exists in JetBrains TeamCity On-Premises, allowing unauthenticated compromise of servers This article.

Critical SolarWinds Flaw Lets Attackers Bypass Web Help Desk SAML Login

Critical SolarWinds Flaw Lets Attackers Bypass Web Help Desk SAML Login

CYBER ATTACKZerowl

SolarWinds has addressed a significant security flaw in its Web Help Desk platform, which could permit attackers to circumvent SAML-based authentication.

Critical PHP Vulnerabilities Enable SQL Injection, Stack Overflow, and Memory Corruption

Critical PHP Vulnerabilities Enable SQL Injection, Stack Overflow, and Memory Corruption

CYBER ATTACKZerowl

The PHP development team has identified three critical security vulnerabilities impacting core extensions, with patches released in versions 8.2.33.

Critical Four libssh2 Flaws Let Malicious SSH Servers Corrupt Client Memory

Critical Four libssh2 Flaws Let Malicious SSH Servers Corrupt Client Memory

CYBER ATTACKZerowl

A newly disclosed four high-severity vulnerabilities in libssh2, the widely used SSH library embedded in countless client applications, tools, and DevOps.

Top 5 this week

Page 59 of 272