Aggregator
Attackers Abuse Google AppSheet, Netlify, and Telegram in Facebook Phishing Campaign
A sophisticated cybercriminal operation dubbed “AccountDumpling” has compromised approximately 30,000 Facebook accounts worldwide. Discovered by Guardio Labs, this Vietnamese-linked campaign abuses Google’s AppSheet platform to bypass traditional email security filters. By routing fully authenticated phishing lures through legitimate channels, the attackers successfully harvest credentials and identity documents. These stolen Facebook Business accounts are subsequently monetized […]
The post Attackers Abuse Google AppSheet, Netlify, and Telegram in Facebook Phishing Campaign appeared first on Cyber Security News.
CVE-2026-43824 | argoproj Argo CD up to 3.2.10/3.3.8 ServerSideDiff improper removal of sensitive information before storage or transfer (GHSA-3v3m-wc6v-x4x3 / EUVD-2026-26726)
CVE-2026-39807 | mtrudel bandit up to 1.10.x on Untrusted TCP Connection lib/bandit/pipeline.ex Elixir.bandit.Pipeline:determine_scheme reliance on untrusted inputs in a security decision (GHSA-375f-4r2h-f99j / EUVD-2026-26714)
CVE-2026-7638 | appcheap App Builder Plugin up to 5.6.0 on WordPress upload_avatar user_id authorization (EUVD-2026-26732)
CVE-2026-7209 | quantumcloud Simple Link Directory Plugin up to 8.9.2 on WordPress Shortcode title_font_size cross site scripting (EUVD-2026-26729)
CVE-2026-6378 | ckp267 MaxiBlocks Builder Plugin up to 2.1.9 on WordPress REST API Endpoint style-card sc_styles cross site scripting (EUVD-2026-26728)
CVE-2026-39805 | mtrudel bandit up to 1.10.x HTTP Request lib/bandit/headers.ex Elixir.bandit.Headers:get_content_length request smuggling (GHSA-c67r-gc9j-2qf7 / EUVD-2026-26712)
CVE-2026-42788 | mtrudel bandit up to 1.10.x frame.ex Elixir.bandit.HTTP/2.Frame:deserialize allocation of resources (GHSA-q6v9-r226-v65f / EUVD-2026-26716)
CVE-2026-42786 | mtrudel bandit up to 1.10.x connection.ex Elixir.Bandit.WebSocket.Connection allocation of resources (GHSA-pf94-94m9-536p / EUVD-2026-26715)
CVE-2026-39804 | mtrudel bandit up to 1.10.x permessage_deflate.ex Elixir.Bandit.WebSocket.PerMessageDeflate allocation of resources (GHSA-frh3-6pv6-rc8j / EUVD-2026-26711)
Хакеры достали даже бундестаг. Политиков заставляют удалять WhatsApp и учиться пользоваться Wire
RBI Cybersecurity Compliance Checklist for Fintech Organizations
The financial services ecosystem in India is undergoing rapid digital transformation, and fintech organizations sit at the center of this evolution. With increasing cyber threats targeting digital payments, lending platforms, and financial data, regulatory oversight has intensified. The Reserve Bank of India mandates a strong RBI cybersecurity framework that fintechs must follow to ensure resilience, […]
The post RBI Cybersecurity Compliance Checklist for Fintech Organizations appeared first on Kratikal Blogs.
The post RBI Cybersecurity Compliance Checklist for Fintech Organizations appeared first on Security Boulevard.