ContextCrush Flaw Exposes AI Development Tools to Attacks Information Security Magazine 3 months ago Critical flaw "ContextCrush" in Context7 MCP Server could allow malicious instructions into AI tools
Coruna Exploit Kit Targets Older iPhones in Multi-Stage Campaigns Information Security Magazine 3 months ago Exploit kit "Coruna" targets iPhones running iOS 13.0 to 17.2.1, focusing on financial data theft
Zero-Click FreeScout Bug Enables Remote Code Execution Information Security Magazine 3 months ago Ox Security warns that Mail2Shell could enable threat actors to hijack FreeScout systems without user interaction
Cisco Issues Patches for 48 Vulnerabilities in Enterprise Networking Products Information Security Magazine 3 months ago Two of the 48 Cisco vulnerabilities, affecting Secure Firewall Management Center, are maximum-severity flaws
Europol Operation Seizes LeakBase Data Breach Site Information Security Magazine 3 months ago A global operation has resulted in the takedown of popular cybercrime forum LeakBase
Coalition of Western Countries Launches 6G Cybersecurity Guidelines Information Security Magazine 3 months ago A coalition of seven Western nations has launched guidelines to help integrate security-by-design principles into future 6G standards
Global Takedown Neutralizes Tycoon2FA Phishing Service Information Security Magazine 3 months ago Law enforcers and industry partners have taken down notorious phishing-as-a-service platform Tycoon2FA
Surge in Attacks on Surveillance Cameras Linked to Iranian Hackers Information Security Magazine 3 months ago Increased attempts to compromise surveillance cameras linked to Iran during Middle East conflict
Multi-Stage "BadPaw" Malware Campaign Targets Ukraine Information Security Magazine 3 months ago Malware campaign uses Ukrainian email service for credibility, deploying "BadPaw" to execute attacks
Calls for Global Digital Estate Standard as Posthumous Deepfake Fraud Risk Grows Information Security Magazine 3 months ago The OpenID Foundation warns that fragmented policies on posthumous digital accounts could open the door for fraudsters to exploit AI deepfakes
Israel: RedAlert Spyware Campaign Exploits Wartime Panic With Trojanized App Information Security Magazine 3 months ago Espionage campaign exploits Israel-Iran conflict, distributing a trojanized Red Alert app via SMS
AI and Deepfakes Supercharge Sophisticated Cyber-Attacks, Says Cloudflare Information Security Magazine 3 months ago Cloudflare Threat Report warns that AI tools enable attackers who lacked required skills to generate effective attacks rapidly and at scale
Leaked Database Sheds Light on Iranian Crypto Sanctions Evasion Information Security Magazine 3 months ago Ariomex database reveals potential sanctions evasion and capital transfers tied to Iranian actors
Half of US CISOs Work the Equivalent of a Six-Day Week Information Security Magazine 3 months ago Seemplicity finds US security leaders work 11 or more extra hours per week
Huge “Shadow Layer” of Organizations Hit by Supply Chain Attacks Information Security Magazine 3 months ago Black Kite reveals 26,000 unnamed corporate victims linked to 136 third-party breaches
Iranian Cyber Threat Actor Targets Iraqi Government Officials in AI-Powered Campaign Information Security Magazine 3 months ago Zscaler ThreatLabz assessed with medium to high confidence that an Iranian adversary targeted Iraq’s Ministry of Foreign Affairs in a new cyber-attack
Chrome Unveils Plan For Quantum-Safe HTTPS Certificates Information Security Magazine 3 months 1 week ago Google Chrome initiates quantum-resistant measures via Merkle Tree Certificates to secure HTTPS
Expect Iran to Launch Cyber-Attacks Globally, Warns Google Head of Threat Intel Information Security Magazine 3 months 1 week ago John Hultquist suggests “aggressive” Iranian cyber attackers will target the US and its Gulf allies with plausibly deniable ransomware attacks, hacktivist campaigns and more
Hybrid Middle East Conflict Triggers Surge in Global Cyber Activity Information Security Magazine 3 months 1 week ago Military strikes in the Middle East escalate cyber ops, raising spillover risks globally for firms
ClawJacked Bug Enables Covert AI Agent Hijacking Information Security Magazine 3 months 1 week ago Oasis Security reveals how a new ClawJacked vulnerability could allow attackers to silently take over a victim’s OpenClaw agent