A new large-scale campaign is actively targeting Feiniu (fnOS) NAS devices, exploiting undisclosed vulnerabilities to compromise … Netdragon Botnet Hijacks Feiniu NAS DevicesRead more
Latest News
DShield Captures Self-Propagating SSH Worm Exploiting Default Credentials
A new SSH worm combining credential stuffing with cryptographically verified commands has been captured by DShield … DShield Captures Self-Propagating SSH Worm Exploiting Default CredentialsRead more
DragonForce Ransomware: Cartel-Like Operations Target 363 Companies
Since its emergence in December 2023, DragonForce has quickly risen to prominence as a sophisticated Ransomware-as-a-Service … DragonForce Ransomware: Cartel-Like Operations Target 363 CompaniesRead more
ORB Networks: How Compromised IoT Devices Mask Cyberattacks
Operational Relay Box (ORB) networks have emerged as one of the most sophisticated tools used by … ORB Networks: How Compromised IoT Devices Mask CyberattacksRead more
287 Chrome Extensions Steal Browsing Data From 37.4M Users
A massive privacy breach has come to light: 287 Chrome extensions have been found exfiltrating browsing … 287 Chrome Extensions Steal Browsing Data From 37.4M UsersRead more
Digital Squatting Attacks: How Lookalike Domains Steal Credentials
In 2025 alone, more than 6,200 adversarial domain name cases were recorded, contributing to a 68% … Digital Squatting Attacks: How Lookalike Domains Steal CredentialsRead more
Desktop Window Manager 0-Day CVE-2026-21519 Enables Privilege Escalation
Microsoft has released urgent security updates for a critical zero-day vulnerability in the Desktop Window Manager … Desktop Window Manager 0-Day CVE-2026-21519 Enables Privilege EscalationRead more
Microsoft Word 0-day Vulnerability CVE-2026-21514 Actively Exploited in the Wild
A critical zero-day vulnerability in Microsoft Word, tracked as CVE-2026-21514, has been actively exploited in the … Microsoft Word 0-day Vulnerability CVE-2026-21514 Actively Exploited in the WildRead more
Legacy IRC Botnet SSHStalker Automates SSH Attacks to Compromise Linux Hosts
A new Linux botnet campaign, dubbed SSHStalker, has been uncovered exploiting weak SSH credentials to compromise … Legacy IRC Botnet SSHStalker Automates SSH Attacks to Compromise Linux HostsRead more
Urgent: Fiber v2 UUID Flaw Enables Session Hijacks & CSRF
A critical vulnerability has been discovered in Fiber v2, a widely used Go web framework, that … Urgent: Fiber v2 UUID Flaw Enables Session Hijacks & CSRFRead more