The threat actor known as Dropping Elephant has re-emerged with a significantly upgraded malware operation, leveraging a China-themed … Dropping Elephant Resurfaces With Advanced In-Memory RAT CampaignRead more
CyberSecurity
CISA Warns of Active Exploitation of Critical UniFi OS Vulnerability
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent warning after adding multiple Ubiquiti … CISA Warns of Active Exploitation of Critical UniFi OS VulnerabilityRead more
Google Blocks Unrestricted Gemini API Keys After Billing Abuse Surge
Google is tightening Gemini API security after a surge in abuse cases where exposed API keys … Google Blocks Unrestricted Gemini API Keys After Billing Abuse SurgeRead more
24 Billion Credentials Exposed in Massive Data Leak Shaking Global Security
A staggering data leak involving 24 billion records has exposed one of the largest credential datasets … 24 Billion Credentials Exposed in Massive Data Leak Shaking Global SecurityRead more
AI Surveillance and Biometric Systems Expand Government Monitoring Worldwide
A rapid expansion of AI surveillance and biometric tracking technologies is transforming how governments monitor populations … AI Surveillance and Biometric Systems Expand Government Monitoring WorldwideRead more
Salesforce OAuth Attack Exploits Klue Integration to Steal CRM Data
A stealthy new Salesforce OAuth attack is exposing a critical weakness in how enterprises rely on … Salesforce OAuth Attack Exploits Klue Integration to Steal CRM DataRead more
LiteLLM RCE Vulnerability Actively Exploited in the Wild
A critical LiteLLM RCE vulnerability is now being actively exploited, exposing AI infrastructure to full system … LiteLLM RCE Vulnerability Actively Exploited in the WildRead more
FFmpeg Zero-Day Flaws Enable One-Packet Remote Code Execution
A major security discovery has shaken the foundation of modern media infrastructure. Researchers have uncovered 21 … FFmpeg Zero-Day Flaws Enable One-Packet Remote Code ExecutionRead more
How This Claude Code Flaw Exposes Critical SaaS Tokens
Autonomous AI development tools are introducing architectural vulnerabilities directly to developer workstations. Security researchers at Mitiga … How This Claude Code Flaw Exposes Critical SaaS TokensRead more
How New EDRChoker Tool Silences Critical Security Agents
Modern Endpoint Detection and Response (EDR) agents rely heavily on constant, low-latency communication with cloud management … How New EDRChoker Tool Silences Critical Security AgentsRead more