Aggregator
Most Cybersecurity Staff Don’t Know How Fast They Could Stop a Cyber-Attack on AI Systems
Libyan Oil Refinery Hit in Long-Running Espionage Campaign Using AsyncRAT
A Libyan oil refinery, a telecoms organization, and a state institution fell victim to a coordinated espionage campaign between November 2025 and February 2026. The attacks delivered AsyncRAT, a publicly available remote access Trojan with a documented history of use by state-sponsored threat groups, raising immediate concerns about the security of Libya’s critical infrastructure. AsyncRAT […]
The post Libyan Oil Refinery Hit in Long-Running Espionage Campaign Using AsyncRAT appeared first on Cyber Security News.
US sentences Nigerian national to 7 years in $6 million email fraud scheme
Akira
You must login to view this content
Akira
You must login to view this content
CVE-2026-32845 | jkuhlmann cgltf up to 1.15.0 glTF/GLB cgltf_validate size integer overflow
CVE-2026-4404 | GoHarbor up to 2.15.0 Web UI hard-coded credentials (ID 1937)
CVE-2024-51225 | PHPGurukul Vehicle Record Management System 1.0 /admin/add-brand.php brandname cross site scripting
CVE-2026-33488 | WWBN AVideo up to 26.0 generateKeys.json.php createKeys inadequate encryption
CVE-2024-51226 | PHPGurukul Vehicle Record Management System 1.0 search-vehicle.php Search cross site scripting
CVE-2024-51223 | PHPGurukul Vehicle Record Management System 1.0 /admin/profile.php Mobile Number cross site scripting
CVE-2024-51222 | PHPGurukul Vehicle Record Management System 1.0 /admin/profile.php Name cross site scripting
CVE-2024-51224 | PHPGurukul Vehicle Record Management System 1.0 /admin/edit-vehicle.php cross site scripting
CVE-2026-33492 | WWBN AVideo up to 26.0 _session_start PHPSESSID session fixiation
CVE-2026-33493 | WWBN AVideo up to 26.0 POST Parameter objects/import.json.php realpath fileURI path traversal
Threat Actors Claim Expanded BMW Breach With IDOR Exploit, Employee and Customer PII, and Data From Mazda, Toyota, Audi, Ford, and 32 Additional Automakers
Телевизор «уснул» и не просыпается? Возможно, его просто захватил новый вирус
Tycoon2FA Phishing Service Resumes Activity Post-Takedown
MacOS Stealer MioLab Adds ClickFix Delivery, Wallet Theft and Team API Tools
A sophisticated macOS infostealer known as MioLab — also tracked as Nova — has emerged as one of the most advanced Malware-as-a-Service (MaaS) platforms targeting Apple users. Advertised on Russian-speaking underground forums, MioLab marks a shift in the threat landscape, proving macOS is no longer a low-risk target. As Apple’s market share grows among software […]
The post MacOS Stealer MioLab Adds ClickFix Delivery, Wallet Theft and Team API Tools appeared first on Cyber Security News.