News
Dell BIOS Flaw Lets Attackers Recover Passwords From SPI Flash
2+ day, 13+ hour ago (401+ words) A newly disclosed critical flaw in how Dell stores BIOS administrator and user passwords allows full recovery of plaintext credentials from a flash dump in milliseconds. Tracked as CVE-2026-40639 (DSA-2026-197), the issue stems from a broken XOR encryption scheme rather…...
New Trojan Turns Visual Studio Projects Into a Software Supply Chain Attack Vector
2+ day, 14+ hour ago (466+ words) A multi-stage Trojan is turning ordinary software development workflows into a supply chain attack vector by weaponizing Visual Studio project files. Documented by Doctor Web researchers, first detected in Q4 2025, and note that it has since undergone continuous upgrades, now combining…...
281 Google Play VPN Apps Expose Sensitive Information Through Cleartext Data Transmission
3+ day, 6+ hour ago (370+ words) A new disclosure of widespread security and privacy failures across popular Android VPN applications, revealing that dozens of apps transmit sensitive data in plaintext and fail to deliver the fundamental protections users expect. Researchers from the University of Michigan and…...
OpenClaw Vulnerabilities Let Attackers Turn WhatsApp Messages Into Host-Level Code Execution
3+ day, 1+ hour ago (270+ words) Security researchers have disclosed three high-severity vulnerabilities in OpenClaw, the popular open-source AI coding assistant with over 381,000 GitHub stars, that allow attackers to achieve full remote code execution using nothing more than a cleverly worded WhatsApp message. The flaws bypass…...
Multiple U-Boot FIT Signature Vulnerabilities Enable Code Execution and DoS Attacks
3+ day, 12+ hour ago (543+ words) A newly disclosed six vulnerabilities in U-Boot, one of the most widely deployed bootloaders in embedded systems, routers, IoT devices, and Baseboard Management Controllers (BMCs) used in data center servers. The flaws reside in the FIT (Flattened Image Tree) Signature…...
AI Gateway Compromise Turns Amazon Bedrock Infrastructure Into Cryptomining Resource
3+ day, 11+ hour ago (311+ words) A compromised AI gateway connected to Amazon Bedrock was found communicating with cryptomining infrastructure, exposing how generative AI infrastructure is emerging as a new frontier in the enterprise attack surface. This central role often grants them privileged IAM permissions, making…...
Wireshark 4.6.7 Fixes 12 Security Flaws Causing Crashes and Infinite Loops
3+ day, 7+ hour ago (459+ words) Wireshark has released version 4.6.7, addressing 12 security vulnerabilities that could lead to application crashes, information disclosure, and resource exhaustion via maliciously crafted network traffic or capture files. Because the tool processes untrusted packet data and capture files, flaws in its protocol…...
Hackers Abuse CitrixBleed 2 to Steal Session Tokens and Bypass MFA Protections
3+ day, 9+ hour ago (378+ words) They progressed through privilege escalation, rogue administrator account creation, remote management tool deployment, and, in one confirmed case, the deployment of the DragonForce ransomware. The activity is assessed with high confidence to involve an Initial Access Broker, or possibly a…...
Hackers Turn TON Blockchain Into a Resilient C2 Directory for Node.js Backdoor
3+ day, 9+ hour ago (386+ words) The attack uses malicious Windows shortcut files, PowerShell, a legitimate Node.js runtime, and the TON blockchain to maintain a flexible command-and-control (C2) system. The infection starts with spam emails carrying booking-related themes. Victims receive a Google Share link that redirects…...
Odyssey Infostealer Targets macOS Keychain and Cryptocurrency Wallets in Global Attacks
3+ day, 11+ hour ago (389+ words) A new wave of Odyssey infostealer activity is targeting macOS users across more than 100 countries, stealing browser credentials, cryptocurrency wallets, cloud configuration files, and messaging app data. Researchers warn that Odyssey is built to collect a broad range of high-value…...